Weaknesses in SHA-1, gnupg dev versions

Atom 'Smasher' atom at suspicious.org
Thu Sep 23 00:47:27 CEST 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On Wed, 22 Sep 2004, Thomas Schorpp wrote:

> i would like sha512 too for better protection of my passphrase(?). 
> sorry, i cant afford helping implementing crypto-algorithms in gnupg.
===============

it may or may not be any better.

- --s2k-digest-algo

of course that wil work with almost any hash other than SHA-512 ;)

hhmmm... just noticed the (1.2.4) man page on that:

        --s2k-digest-algo name
 	Use name as the digest algorithm used to mangle the passphrases.
 	The default algorithm is SHA-1.  This digest algorithm is also
 	used for conventional encryption if --digest-algo is not given.

i'm not sure what that last sentence means here, but it's not in the 1.3.6 
man page.



         ...atom

  _________________________________________
  PGP key - http://atom.smasher.org/pgp.txt
  762A 3B98 A3C3 96C9 C6B7 582A B88D 52E4 D9F5 7808
  -------------------------------------------------

 	"God save the queen
 	 and her fascist regime"
 		-- Sex Pistols
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.3.6 (FreeBSD)
Comment: What is this gibberish?
Comment: http://atom.smasher.org/links/#digital_signatures

iQEcBAEBCAAGBQJBUgEEAAoJEAx/d+cTpVciwisIAIjj/txUb2Gh2PueY6Q7qtXT
XAlf6Wf3BXTFFhANIyisP81jqHjAqn16vokUt2wjTsJvpQA10W5lKaFQOSrgY8h8
yK+9sERRNSNdO5M/3WizFwYO/HRJuYmA6l5srJ6li37s3+e100BQVc7gnQYWYcGw
ioNeDI73SWavj9On2UQXGdnEx4l8bwcpy9zm4eDoH52o2svcsxI+iairO3HTbUQd
gsZjHjYcrEDDYAFSCyd6PYfjbswplLfgmFfr+yoF03NGBQsrykGhOFeElu8/Py/p
tKACHC80S3Mf6xDVY9BVNSxhflfz4PcYpVjYLJ5PtKMJF/GcJUO1mtrfMZa2+p8=
=4pwS
-----END PGP SIGNATURE-----



More information about the Gnupg-devel mailing list