[11242] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: building a true RNG

daemon@ATHENA.MIT.EDU (David Wagner)
Mon Jul 29 16:12:32 2002

From: David Wagner <daw@cs.berkeley.edu>
To: dahonig@cox.net (David Honig)
Date: Mon, 29 Jul 2002 12:43:48 -0700 (PDT)
Cc: daw@cs.berkeley.edu (David Wagner),
	jsd@monmouth.com (John S. Denker),
	daw@mozart.cs.berkeley.edu (David Wagner),
	cryptography@wasabisystems.com, barney@tp.databus.com (Barney Wolff)
In-Reply-To: <3.0.5.32.20020729122038.00835260@pop.west.cox.net> from "David Honig" at Jul 29, 2002 12:20:38 PM

> DES, being extremely hardware friendly, can be (ab)used to
> make a strong one-way hash.  (E.g., raw input into both key and data maps
> 56+64 -> uniformly distributed 64 bits.)

However, when used in this way, DES is not an especially good hash function.
For instance, it is easy to find collisions, to find pre-images, and so on.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com

home help back first fref pref prev next nref lref last post