On Sat, Dec 21, 2002 at 07:40:34PM +0100, Thomas Shaddack wrote:
|
| http://www.speakfreely.org/ is a nice, open-source cross-platfor VoIP
| software. Supports encryption by DES, Blowfish, and IDEA.
|
| Had anyone knowledgeable ever looked at its code? How secure this
| implementation is? Is better to use Blowfish or IDEA? Where are the
| potential holes there?
Use Blowfish, you avoid worrying about if you have to worry about
patent issues. There are probably buffer overflows, and other
problems with the code. But its probably no worse than other VOIP
code, and is clearly more secure than code which doesn't encrypt.
Adam
--
"It is seldom that liberty of any kind is lost all at once."
-Hume