Hash algorithms and protocols
Bruce Schneier and I have just put together a first Internet Draft dealing with the state of security protocols in light of the recent attacks on the MD5 and SHA-1 hash algorithms.
Attacks on Cryptographic Hashes in Internet Protocols briefly describes hash algorithms, shows what the attacks mean, lists which types of Internet protocols might be or not be affected by the attacks, and then makes suggestions about how to move forwards. Somewhat humorously, Bruce and I disagree on that last bit, so the discussion that follows should be interesting, and hopefully useful.
Posted by lookit at March 29, 2005 12:38 PM