[Cryptech Tech] SHA-3 and Ed25519

Joachim Strömbergson joachim at secworks.se
Thu Mar 5 12:35:38 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Павел Шатов wrote:
> http://opencores.org/project,sha3
> 
> Can we use this?

Possibly. The license is Apache. The cores are fairly big compared to
other SHA-3 implementations.

But if Bernd has a core too I would love to know more about it. Bernd is
part of Cryptech and (at least I) trust him to do good stuff. That is
why I asked him specifically.


We are aware of the OpenCores project. I have spent a fair amount of
time with the project in its early years and I have tried quite a few of
the cores. There are some really good coresin OpenCores, OpenRISC with
support cores for example. But there is also a huge number of broken
cores, bad cores, half finished cores etc in there. Most times when I've
looked at OpenCores I've ended up disappointed.

There is also a general discussion we should have regarding "core"-cores
and what we should maintain. We can build something fairly fast by
bringing in cores from external sources. But if we don't maintain them,
can we and Cryptech users trust them.

In the case of the SHA-3 core we might be able to use the core on
OpenCores right now. But if/when SHA-3 becomes a vital function in our
use cases we might (I think) have the source in our repo.

If we for example decided to replace SHA-512 in the RNG with SHA-3 I
would definitely have SHA-3 as part of our code base.

Makes sense?

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQIcBAEBCAAGBQJU+E2aAAoJEF3cfFQkIuyNZOYP/A/cxLdoeZaU80+WPMa1cmYX
/Rb/1vnbtuQG953ABxDT9tEQX0iO4n7/NEfhHx7+klvhUtsmePru9k55cRD/t/Vy
i2ZnOF2PyYkZ4Jk72cUPU24v2YQWhYItyhsYzAi0RnETl96Qr98hYLGppDoEcH/L
CgHbh2078/k3+9g5le1b0mP5Zho+M8Hkus/d91QC4wB6OntCc6cY3ujAkdz/GquC
ybw3IzGkg6BtK4mXDaR6l2LOcFjN115yJkBWhPzN3qjmbu+HZTzs0mL/XUuwZe79
rWu0PURs16e5ZCzuBACDHSjRt/mm4NI3H4/gEgsdV5bNoCobbGue3b21EcoTGfB0
AUQb2n6svzqh8l58xI8ilSG8+BFMewXnBiUq7BbEumgUXKsaPOUQlj1ucvAbpgSI
PhsHhDUYw321d9CPTo5FSO22/hApbyBy+iYVRIY1BUzIzfdcAALVLTqfYR0eziJY
cC7tQpncgFXkb9sTAiH1EEHeJxN3qDnksxHqEcQha/TeW2Rrna5CFiWFeG4TEy/V
qdYrlAWGpS4VrJllfQtBUsx8YuUpIY4XU/F5aqwaNv6e3bnrkBzVodSkPIoDCE6X
ZJusSpiFb74YRr1fd4aORDMEgSbym3kx1E9ZiCY2dxriVXlYpXAqQxMCfuGctqr1
SPZbm6GojmzW3HI824pZ
=vQuo
-----END PGP SIGNATURE-----


More information about the Tech mailing list