Anonymous (nobody@replay.com)
Fri, 17 Jul 1998 00:53:01 +0200
>>Twofish is a well-designed, conservative cipher, but it's young enough
>>that a break is still a big risk. Therefore, I'd reccomend using a
>>more-analyzed cipher like CAST-128 for now, or at least something which
>>can't be less secure than it (i.e., use CAST-OFB on zeroes to generate
>>from the XORed-together keys a CAST key and a Twofish key, then use
>>Twofish-over-CAST for encryption).
>
>While I agree that Twofish is new,
Isn't that kind of going out on a limb? :)
>I give a big yuk to CAST-128. Blowfish is basically the same, but with
>key dependent S-boxes.
OK...just saying that, if anyone feels a need to use Twofish at this
point, combine it with something old; CAST just happened to be the first
moderately old cipher that popped to mind.
>If you want to be conservative, use Triple-DES.
In some applications, there's still a big speed issue with that. I have no
idea about CAST's speed, but, if my memory serves me right,
Twofish-over-Blowfish would be 2-3 times faster than 3DES.
>
>Bruce
>**********************************************************************
>Bruce Schneier, President, Counterpane Systems Phone: 612-823-1098
>101 E Minnehaha Parkway, Minneapolis, MN 55419 Fax: 612-823-1590
> Free crypto newsletter. See: http://www.counterpane.com
The following archive was created by hippie-mail 7.98617-22 on Fri Aug 21 1998 - 17:20:29 ADT