[85637] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: AES128-CBC Question

daemon@ATHENA.MIT.EDU (Victor Duchovni)
Thu Apr 19 17:39:39 2007

Date: Thu, 19 Apr 2007 16:30:46 -0400
From: Victor Duchovni <Victor.Duchovni@MorganStanley.com>
To: Aram Perez <aramperez@mac.com>
Cc: Cryptography <cryptography@metzdowd.com>
Mail-Followup-To: Aram Perez <aramperez@mac.com>,
	Cryptography <cryptography@metzdowd.com>
In-Reply-To: <A8F835E9-0111-1000-EF54-E3BE510C6815-Webmail-10009@mac.com>

On Wed, Apr 18, 2007 at 11:29:45PM -0700, Aram Perez wrote:

> Is there any danger in using AES128-CBC with a fixed IV of all zeros? This is being proposed for a standard "because that's how SD cards implemented it".
> 

Is the same key ever used to encrypt multiple streams?

This is a protocol question, not an algorithm question, so you need a
security review of the protocol (which you have not described).

-- 

 /"\ ASCII RIBBON                  NOTICE: If received in error,
 \ / CAMPAIGN     Victor Duchovni  please destroy and notify
  X AGAINST       IT Security,     sender. Sender does not waive
 / \ HTML MAIL    Morgan Stanley   confidentiality or privilege,
                                   and use is prohibited.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post