On 01/03/2013 06:09 PM, Niels Möller wrote:

> What's missing, more precisely? E.g., salsa20_crypt is both in the
> salsa20.h header file and in the Salsa20 section in the manual.


It may be better to refer to it as salsa20/20. Then it would be clear
which variant it is.

> 
>> From the code and the previous discussion in the ML I
>> see that the 20 rounds variant is there.
> Right, other variants where postponed for lack of clear use cases.

As far as I know Salsa20 isn't standardized in a protocol. However if
that occurs it may be that the 20/12 variant is selected because of estream.

> What name should it use, salsa20_12_crypt? I imagine there are some
> testvectors somewhere on the ecrypt site?


No idea.

regards,
Nikos
_______________________________________________
nettle-bugs mailing list
[email protected]
http://lists.lysator.liu.se/mailman/listinfo/nettle-bugs

Reply via email to