Re: [Sam Hartman] Openpgp comments

Lutz Donnerhacke <lutz@iks-jena.de> Wed, 20 September 2006 14:20 UTC

Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1GQ2w3-0002fN-6a for openpgp-archive@lists.ietf.org; Wed, 20 Sep 2006 10:20:23 -0400
Received: from balder-227.proper.com ([192.245.12.227]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1GQ2vz-0004vt-QW for openpgp-archive@lists.ietf.org; Wed, 20 Sep 2006 10:20:23 -0400
Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k8KDwBEk097309; Wed, 20 Sep 2006 06:58:11 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.13.5/8.13.5/Submit) id k8KDwBEo097308; Wed, 20 Sep 2006 06:58:11 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-openpgp@mail.imc.org using -f
Received: from branwen.iks-jena.de (branwen.iks-jena.de [217.17.192.90]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k8KDwAS5097301 for <ietf-openpgp@imc.org>; Wed, 20 Sep 2006 06:58:11 -0700 (MST) (envelope-from news@branwen.iks-jena.de)
Received: from branwen.iks-jena.de (localhost [127.0.0.1]) by branwen.iks-jena.de (8.13.8/8.13.1) with ESMTP id k8KDw6dB025136 for <ietf-openpgp@imc.org>; Wed, 20 Sep 2006 15:58:08 +0200
X-MSA-Host: branwen.iks-jena.de
Received: (from news@localhost) by branwen.iks-jena.de (8.13.8/8.13.1/Submit) id k8KDw6aL025135 for ietf-openpgp@imc.org; Wed, 20 Sep 2006 15:58:06 +0200
To: ietf-openpgp@imc.org
Path: not-for-mail
From: Lutz Donnerhacke <lutz@iks-jena.de>
Newsgroups: iks.lists.ietf-open-pgp
Subject: Re: [Sam Hartman] Openpgp comments
Date: Wed, 20 Sep 2006 13:58:06 +0000
Organization: IKS GmbH Jena
Lines: 9
Message-ID: <slrneh2i7e.g40.lutz@belenus.iks-jena.de>
References: <874pv24sey.fsf@wheatstone.g10code.de>
NNTP-Posting-Host: belenus.iks-jena.de
X-Trace: branwen.iks-jena.de 1158760686 25059 2001:4bd8:0:666:248:54ff:fe12:ad5f (20 Sep 2006 13:58:06 GMT)
X-Complaints-To: usenet@iks-jena.de
NNTP-Posting-Date: Wed, 20 Sep 2006 13:58:06 +0000 (UTC)
User-Agent: slrn/0.9.8.0 (Linux)
Sender: owner-ietf-openpgp@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-openpgp/mail-archive/>
List-Unsubscribe: <mailto:ietf-openpgp-request@imc.org?body=unsubscribe>
List-ID: <ietf-openpgp.imc.org>
X-Spam-Score: 1.8 (+)
X-Scan-Signature: d17f825e43c9aed4fd65b7edddddec89

* Werner Koch wrote:
> I have not heard about any plans to switch to SHA-2.  At least Germany
> is still using RIPME-MD160 out of fear that SHA-1 has been developed
> in the U.S.  I don't think that this algorithm is any better than
> SHA-1 but some people decided in the past to use an European algorithm
> (another layer 9 issue).

With respect to the (not so) recent attacks of hash functions, RIPEMD is a
better choice then just another SHA variant.