[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: PGP Keyserver Synchronization Protocol

In <19990623095541.F30893@frodo.isil.d.shuttle.de>, on 06/23/99 
   at 09:55 AM, Werner Koch <wk@isil.d.shuttle.de> said:

>Tony Mione <mione@hardees.Rutgers.EDU> writes:

>> Any reason for MD5? I understand the SHA-1 is longer. However, it is
>> thought to be a stronger hash the MD5 at this time. 

>Yes it is longer and therefore increasing the amount of bytes to
>exchange.  I can't see a reason for a cryptographic strong hash algorithm
>here - it is merely used as a checksum.  MD5 is good enough for this.

Actually MD5 seems too large for this but I don't know a good replacement
that would be smaller than MD5 but still large enough to be collision

William H. Geiger III  http://www.openpgp.net
Geiger Consulting    Cooking With Warp 4.0

Author of E-Secure - PGP Front End for MR/2 Ice
PGP & MR/2 the only way for secure e-mail.
OS/2 PGP 5.0 at: http://www.openpgp.net/pgp.html
Talk About PGP on IRC EFNet Channel: #pgp Nick: whgiii

Hi Jeff!! :)