Comparison of GnuPG & NAI/PGP features.

Simpson, Sam
Wed, 12 Jan 2000 12:20:10 +0000

All the Biham / Shamir results on SkipJack are available at: I think everyone expected SkipJack to be broken after the initial success, but it would appear that it's actually quite strong...NSA have a habit of (look at DES, DSA etc) producing algorithms that are VERY good at doing the job they were designed for, but can't be extended easily. SkipJack was meant to protect data with 80-bit keys and it does this job well - if you change the algorithm at all then you dramatically weaken it. AFAIK, there are no attacks better than brute-force on SkipJack-proper.
My main reservation is that the 80-bit key length is considered marginal at best. I can see no reason to recommend SkipJack over 3DES for example.... Regards, Sam Simpson Communications Analyst