cleversafe says: 3 Reasons Why Encryption is Overrated

2009-07-24 Thread Zooko Wilcox-O'Hearn
[cross-posted to tahoe-...@allmydata.org and cryptogra...@metzdowd.com] Disclosure: Cleversafe is to some degree a competitor of my Tahoe- LAFS project. On the other hand, I tend to feel positive towards them because they open-source much of their work. Our "Related Projects" page has inc

Hacker Says iPhone 3GS Encryption Is ‘Useless’ f or Businesses

2009-07-24 Thread mhey...@gmail.com
>From : the supposedly enterprise-friendly encryption included with the iPhone 3GS is so weak it can be cracked in two minutes with a few pieces of readily available freeware...“I don’t think any of us [developers] have ever seen

Re: Fast MAC algorithms?

2009-07-24 Thread Darren J Moffat
Nicolas Williams wrote: On Thu, Jul 23, 2009 at 05:34:13PM +1200, Peter Gutmann wrote: "mhey...@gmail.com" writes: 2) If you throw TCP processing in there, unless you are consistantly going to have packets on the order of at least 1000 bytes, your crypto algorithm is almost _irrelevant_. [...]

Re: Fast MAC algorithms?

2009-07-24 Thread james hughes
On Jul 24, 2009, at 1:30 PM, Peter Gutmann wrote: [I realise this isn't crypto, but it's arguably security-relevant and arguably interesting :-)]. As long as we think this is interesting, (although I respectfully disagree that there are any inherent security problems with TOE. Maybe the

Re: Fast MAC algorithms?

2009-07-24 Thread Peter Gutmann
[I realise this isn't crypto, but it's arguably security-relevant and arguably interesting :-)]. James Hughes writes: >TOEs that are implemented in a slow processor in a NIC card have been shown >many times to be ineffective compared to keeping TCP in the fastest CPU >(where it is now). The pr

Re: Fast MAC algorithms?

2009-07-24 Thread John Gilmore
> >2) If you throw TCP processing in there, unless you are consistantly going to > >have packets on the order of at least 1000 bytes, your crypto algorithm is > >almost _irrelevant_. This is my experience, too. And I would add "and lots of packets". The only crypto "overhead" that really mattered