IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: des-cbc cipher



On Wed, 28 Nov 2001, RJ Atkinson wrote:

> At 17:50 28/11/01, Bill Sommerfeld wrote:
> >On this issue, it looks like we have consensus that:
> >
> >  - there should be no mention of a des-cbc algorithm in the spec.
> >
> >  - implementations should treat algorithms they don't know about the
> >same as they treat algorithms they've been told not to use.
> 
> Pardon ?
> 
> I haven't seen this thread in some while.  I really disagree with the
> first conclusion.  DES-CBC is widely deployed with SSHv2 right now,
> so it ought to be mentioned.  That way a new implementer has a good 
> chance of interoperating with the installed base. 

They will interop just fine if they follow Bill's second point and 
ignore des-cbc.

-d

-- 
| By convention there is color,       \\ Damien Miller <djm%mindrot.org@localhost>
| By convention sweetness, By convention bitterness, \\ www.mindrot.org
| But in reality there are atoms and space - Democritus (c. 400 BCE)




Home | Main Index | Thread Index | Old Index