[Ach] regarding DH params

L. Aaron Kaplan kaplan at cert.at
Wed Dec 11 15:35:18 CET 2013


Hi,

 during the last meeting on Monday we had some discussion regarding DH parameters.

I got some very valuable feedback from Florian Mendel (IAIK) (thx!):

"ich denke, dass man den IETF / IKE DH groups vertrauen kann und würde mich da auf ECRYPT II stützen/verlassen.
>> 
>> ECRYPT II Yearly Report on Algorithms and Keysizes
>> http://www.ecrypt.eu.org/documents/D.SPA.20.pdf
>> 
>> In Chapter 16 (Seiten 79-86) geht es um die IETF / IKE DH groups (RFC 3526, etc.)"
"

Translation for the english speaking readers: 

"I believe we can trust the IETF / IKE DH groups, based on ECRYPT II reports:
ECRYPT II Yearly Report on Algorithms and Keysizes
http://www.ecrypt.eu.org/documents/D.SPA.20.pdf

Chapter 16 (pages 79-86) deal with the IETF/IKE DH groups"



==>  Therefore I suggest that we document this view in the paper in the DH section.

a.



--- 
// L. Aaron Kaplan <kaplan at cert.at> - T: +43 1 5056416 78
// CERT Austria - http://www.cert.at/
// Eine Initiative der nic.at GmbH - http://www.nic.at/
// Firmenbuchnummer 172568b, LG Salzburg




-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 163 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.cert.at/pipermail/ach/attachments/20131211/93e9075b/attachment.sig>


More information about the Ach mailing list