At 19:49 1/08/99 -0700, bram wrote:
>No, block ciphers are weak against related-key attacks, which happen all
>over the place in the threat model on SRNGs.

I think this statement is overly general. Most of the AES candidates appear
to have taken this into consideration, for example. There is nothing
inherent in the concept of a block cipher which would imply that there
would be a weakness against related key attacks; however it is true that
many key scheduling algorithms have been too simplistic in the past.

Greg.

Greg Rose                                       INTERNET: [EMAIL PROTECTED]
Qualcomm Australia          VOICE:  +61-2-9181-4851   FAX: +61-2-9181-5470
Suite 410, Birkenhead Point,               http://people.qualcomm.com/ggr/ 
Drummoyne NSW 2047      232B EC8F 44C6 C853 D68F  E107 E6BF CD2F 1081 A37C

Reply via email to