[10005] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

(A)RC4 state leakage

daemon@ATHENA.MIT.EDU (Damien Miller)
Thu Dec 27 19:45:49 2001

Date: Fri, 28 Dec 2001 11:42:59 +1100 (EST)
From: Damien Miller <djm@mindrot.org>
To: <cryptography@wasabisystems.com>
Message-ID: <Pine.LNX.4.33.0112281140131.1232-100000@mothra.mindrot.org>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII

The common wisdom when using (A)RC4 as a PRNG seems to be to discard
the first few bytes of keystream it generates as it may be correlated
to the keying material.

Does anyone have a reference that describes this in more detail? Or
am I confused :)

-d

-- 
| By convention there is color,       \\ Damien Miller <djm@mindrot.org>
| By convention sweetness, By convention bitterness, \\ www.mindrot.org
| But in reality there are atoms and space - Democritus (c. 400 BCE)




---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com

home help back first fref pref prev next nref lref last post