[Cryptech Tech] enisa does it again

Joachim Strömbergson joachim at secworks.se
Tue Feb 17 20:17:25 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Randy Bush wrote:
> https://www.enisa.europa.eu/media/press-releases/securing-personal-data-enisa-guidelines-on-cryptographic-solutions

(Just
> 
to check - are you being ironic with the "enisa does it again"?)

The algorithms and key sizes document looks almost like an updated
version of the ECRYPT II Yearly Report on Algorithms and Key Lengths
(2012), a document that sadly has not been updated for a couple of years:

http://www.ecrypt.eu.org/documents/D.SPA.20.pdf

IMHO a really good document that among others gives a good description
of key lengths versus attacks in a way that is understandable by many.
Quite a few of the people behind the ENISA report are the same. Nigel
Smart for example.

I've pointed to the ECRYPT document several times to customers, used in
in presos and nagged Nigel and others behind it to do an updated version.

The ENISA report is not the same document. The section on key lengths is
much shorter and does not try to put key lengths in context nor compare
for example RSA keys with symmetric keys.

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQIcBAEBCAAGBQJU46HVAAoJEF3cfFQkIuyNbiQP/1EYy3EudmibynrEPMVaP4gu
zeJYgpCnZH9D3QKzzbnR3fPLC+Xw3kR5J7mgl1Cgpx409EdKioEkz+dR3B3bbjDV
/BrOj1NuFVm6lP0hBw4+/gWAiBjW9qMXGafQt306ZZM5FnnHzQda/QvLELkItNqr
VWLz/VvipfMxtWtI301t6n9YgjnrtR8QmtW6/s6qeYyyeb9A6kvXoSq91bSmdn0p
kiD9jxIGTnyNz3PwTBSnuQgBIZtXGy35RHhX+Uc52E67/TAzgERvjmGIIx+Qm3Zr
yJfer+3TQxVqUX4KmAGgKBe4JU3IN3j/2g7U7Qqa9TY5wI/8ZvSWraMQXD22aeiU
IFiqX+nWwESCjbicWD0DnT6KyBxJxXB52HqJw+xxOjr9n9fyJuT6Xz8PJAXDqKcY
kpoXm19/9pWLGimjiZXdaCQjiiwwwmVQStB9daaMTGuu6Fd2WYxQUTYa/n0ZVxru
lJGHrMRFg0j6zDlmN5WRi1URumkU+DGHRgo0XYL3FCSbpbCQfam5zMQUnNnPzmeM
mPG3k6zAMOw4L4OkUOKESGUwiNOdqyNnTZH5lycUKCHqJy0m93eaF1PhHtNOTtdu
tGqaUfvd/bq3ku+lQE1iMHZPlvGgbOJwv5RJ+gqNP7jmI1ZJQvqibGVl31kGKbSN
l30EVky77+akA5Dx0jPe
=erGF
-----END PGP SIGNATURE-----


More information about the Tech mailing list