Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 22 Dec 2000 23:21:54 -0800
From:      "Crist J. Clark" <cjclark@reflexnet.net>
To:        Keith Ray <aphex@nullify.org>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: IPSec + Racoon: pre-shared key length
Message-ID:  <20001222232154.I96105@149.211.6.64.reflexcom.com>
In-Reply-To: <977521215.3a43ca3fea068@nullify.org>; from aphex@nullify.org on Fri, Dec 22, 2000 at 03:40:15PM -0600
References:  <977521215.3a43ca3fea068@nullify.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Dec 22, 2000 at 03:40:15PM -0600, Keith Ray wrote:

[snip]

> 3DES uses 192-bit keys 
> for a keyspace of 2^192.

I believe ESP uses 3DES with three independent keys (as opposed to the
two key method) which is a keyspace of 168-bits...

But there is an attack of three independent keys which reduces the
effective keyspace to what one would naively expect for two
independent keys. That's a whole 'nother story tho'. ;)
-- 
Crist J. Clark                           cjclark@alum.mit.edu


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001222232154.I96105>