[85637] in cryptography@c2.net mail archive
Re: AES128-CBC Question
daemon@ATHENA.MIT.EDU (Victor Duchovni)
Thu Apr 19 17:39:39 2007
Date: Thu, 19 Apr 2007 16:30:46 -0400
From: Victor Duchovni <Victor.Duchovni@MorganStanley.com>
To: Aram Perez <aramperez@mac.com>
Cc: Cryptography <cryptography@metzdowd.com>
Mail-Followup-To: Aram Perez <aramperez@mac.com>,
Cryptography <cryptography@metzdowd.com>
In-Reply-To: <A8F835E9-0111-1000-EF54-E3BE510C6815-Webmail-10009@mac.com>
On Wed, Apr 18, 2007 at 11:29:45PM -0700, Aram Perez wrote:
> Is there any danger in using AES128-CBC with a fixed IV of all zeros? This is being proposed for a standard "because that's how SD cards implemented it".
>
Is the same key ever used to encrypt multiple streams?
This is a protocol question, not an algorithm question, so you need a
security review of the protocol (which you have not described).
--
/"\ ASCII RIBBON NOTICE: If received in error,
\ / CAMPAIGN Victor Duchovni please destroy and notify
X AGAINST IT Security, sender. Sender does not waive
/ \ HTML MAIL Morgan Stanley confidentiality or privilege,
and use is prohibited.
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com