Re: [Ipsec] Fw: I-D ACTION:draft-kelly-saag-des-implications-00.txt

Paul Hoffman <paul.hoffman@vpnc.org> Mon, 30 January 2006 22:39 UTC

Received: from localhost.cnri.reston.va.us ([127.0.0.1] helo=megatron.ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1F3hgc-0002hr-L7; Mon, 30 Jan 2006 17:39:50 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1F3hgb-0002ge-9O for ipsec@megatron.ietf.org; Mon, 30 Jan 2006 17:39:49 -0500
Received: from ietf-mx.ietf.org (ietf-mx [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id RAA20354 for <ipsec@ietf.org>; Mon, 30 Jan 2006 17:38:03 -0500 (EST)
Received: from above.proper.com ([208.184.76.39]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1F3hrF-0002KT-SP for ipsec@ietf.org; Mon, 30 Jan 2006 17:50:51 -0500
Received: from [10.20.30.249] (dsl2-63-249-108-169.cruzio.com [63.249.108.169]) (authenticated bits=0) by above.proper.com (8.12.11/8.12.9) with ESMTP id k0UMdS1i026383; Mon, 30 Jan 2006 14:39:29 -0800 (PST) (envelope-from paul.hoffman@vpnc.org)
Mime-Version: 1.0
Message-Id: <p062309c8c00445cd31c0@[10.20.30.249]>
In-Reply-To: <12803499.1138657642162.JavaMail.root@elwamui-karabash.atl.sa.earthlink.ne t>
References: <12803499.1138657642162.JavaMail.root@elwamui-karabash.atl.sa.earthlink.ne t>
Date: Mon, 30 Jan 2006 14:39:28 -0800
To: "Scott G. Kelly" <scott@hyperthought.com>, ipsec list <ipsec@ietf.org>
From: Paul Hoffman <paul.hoffman@vpnc.org>
Subject: Re: [Ipsec] Fw: I-D ACTION:draft-kelly-saag-des-implications-00.txt
Content-Type: text/plain; charset="us-ascii"; format="flowed"
X-Spam-Score: 0.0 (/)
X-Scan-Signature: d6b246023072368de71562c0ab503126
Cc:
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: IP Security <ipsec.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
Sender: ipsec-bounces@ietf.org
Errors-To: ipsec-bounces@ietf.org

At 1:47 PM -0800 1/30/06, Scott G. Kelly wrote:
>Some time ago, Russ Housley asked if someone would write a note for 
>implementers regarding the security implications of using DES. This 
>request derived from a recommendation in
>
>http://www.ietf.org/internet-drafts/draft-ietf-newtrk-decruft-experiment-03.txt.
>
>Anyway, here's the first cut at the draft. I intend to add an 
>appendix explaining why 3DES is still okay, and someone suggested 
>that maybe DESX should be discussed as well.  If you have 
>suggestions or comments, I'm all ears...

Apropos to this mailing list: maybe a bit more about user interfaces 
that have multiple choices for algorithms but that have "DES" as the 
default choice in drop-down menus being a Really Bad (and 
Unnecessary) Thing.

--Paul Hoffman, Director
--VPN Consortium

_______________________________________________
Ipsec mailing list
Ipsec@ietf.org
https://www1.ietf.org/mailman/listinfo/ipsec