Twofish, Blowfish no recommended cipher anymore ?!

David Shaw dshaw@jabberwocky.com
Thu Jul 10 19:41:07 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Wed, Jul 09, 2003 at 08:27:23PM +0200, 1228EB6 wrote:
> Hi there,
> 
> when creating new keys with GnuPG 1.2.2 I saw that both Twofish and 
> Blowfish are not part of the available ciphers of those keys.
> 
> None of the 2 has been broken and newer versions of PGP support both of 
> them, so what happened ? I'd like to know if there are security 
> concerns, since I've always been a fan of both ciphers.

PGP only supports Twofish, not Blowfish.

Those two ciphers are not in the default preferences for compatibility
and conservatism reasons.  If you want to use Twofish and/or Blowfish,
you can certainly update your preferences to include them.

David
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3rc1 (GNU/Linux)
Comment: Key available at http://www.jabberwocky.com/david/keys.asc

iD8DBQE/DaV84mZch0nhy8kRAiizAKDdwTDck0JV/37c3zQmzQ3poX9hpQCfQlLi
Uq7EQYPu9iWuJxGsyV0ytGQ=
=qjSy
-----END PGP SIGNATURE-----