Re: Mcrypt: Blowfish or Twofish or no fish? part 3
| From: | Evan Nemerson | Date: | Wed, 22 May 2002 21:58:59 +0000 |
| Subject: | Re: Mcrypt: Blowfish or Twofish or no fish? part 3 | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-98828@lists.php.net to get a copy of this message | ||
Ah it would be a good idea to use the hash as a checksum- especially if you
encrypt in ECB
On Wednesday 22 May 2002 01:30 am, Jimmy Lantz wrote:
> >I believe that twofish has been successfully broken, so use blowfish
> >instead. Typically, for encrypting files you will use an algorithm like
> >blowfish in cbc mode (as opposed to ebc mode) but I don't know if Mcrypt
> >supports this. Also, when creating the hash of the file, it is probably
> > best to use SHA-1 instead of MD5, as there appears to be some concern
> > with MD5 over it's compression function.
> >HTH
> >JH
>
> It helps :)
> I have been looking into Blowfish with cbc mode :)
> If I use SHA-1 it's still no way to dehash it during decryption of the
> file, so I fail to see the use of Hashing in fileencryption.
> Could someone enlighten me?
> / Jim