[Cryptech Tech] Use case for AES-192?

Joachim Strömbergson joachim at secworks.se
Tue Jul 22 06:37:14 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Bernd Paysan wrote:
> From a cryptanalytic point of view, this 2009 blog posting from Bruce
> Schneier is worth to read:
> 
> https://www.schneier.com/blog/archives/2009/07/another_new_aes.html
> 
> Effectively, AES has not the security margin it would neet to meet
> its promises (especially with AES-256).  The bottom line is that
> AES-128 has a sufficiently good key schedule, while AES-256 has a bad
> key schedule, and breaking it is possible with the order of 2^100
> (this is too big to allow a practicable attack).  That means: If you
> decide today, use AES-128 instead of AES-256.  AES-192 is indeed
> rarely used, people either think "let's take the biggest number" or
> "let's take the fastest operation".

Yes and a good point. The key schedule for 192 and esp 256 is weird
structurally.

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.22 (Darwin)
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=q3U5
-----END PGP SIGNATURE-----


More information about the Tech mailing list