Security Basics mailing list archives

Re: sshd for windows


From: "Adam Newhard" <atnewhard () microstrain com>
Date: Thu, 19 Jun 2003 08:59:17 -0400

i'll definitely agree with the 80 bit exhaustive search cannot be done part.
if you're doing an exhaustive search sequentially or even searching with
some sort of pattern (like applying the somewhat def of random key - 50% of
the bits are on, sequentially generated keys have a hamming distance greater
than half the key size, blah blah blah), it's suppose to take at least 2^40
tries if you're even remotely lucky on an 80 bit exhaustive search.  just
pray to god you're not one of the unlucky souls who generates one of the des
weak keys and you should be ok...but always be paranoid.
adam
----------------------------------------------------
Adam Newhard
Microstrain, Inc.
If vegetarians eat vegetables, watch out for humanitarians

[snip]

Of course, it supports DES (56 bit encryption)
but can be easily broken in today's desktop enviroment,

It is not _that_ easy (but still possible) to find enough desktop
computers
to mount an exhaustive search against a 56-bit key.

while the first two
needs a cluster or NSA computer system.

This kind of assertion is just plain wrong. Nowadays (in 2003), it is
widely
admitted in the crypto community that a 80 bit exhaustive search cannot be
achieved.

A+

Pascal

--------------------------------------------------------------------------
-
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.

Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.

Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
--------------------------------------------------------------------------
--





---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
     
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
          
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------


Current thread: