Re: Suggested DER Prefixes

On 5/28/03 3:12 PM,

> And while you are at it, please do kindly remove
> IDEA, CAST5, MD2, MD5, and AES < 256 bits.
> The above algorithms, will, no doubt, be rendered useless,
> given any advances in the attacks.

In the soon-to-be finished bis08, IDEA is a MAY. MD2 has been removed (since
anything that used it is long-dead), and MD5 is moved to a MAY with lots of
grumbling. There's no reason to remove CAST5, and no reason to remove AES
below 256. In fact, there are those who feel safer with AES at 128 than at

> P.S. Just out of curiosity, what in the heck is "DES/SK"?
>    any references?

It is an improvement on DES from Uri Blumenthal and Steve Bellovin. Here's a
reference: <http://www.research.att.com/~smb/papers/ides.pdf>. It's a way to
get reasonable security out of DES without having to do 3DES. It's a pretty
cool idea, but it never went anywhere, for a number of reasons.