At 01:37 PM 8/15/00 -0400, Timothy Brown wrote:
>Hey, folks -
>
>Can anyone provide pointers for the layman to documents describing
>theoretical cryptosystems resistant to quantum cryptanalysis? The
>assumption is made that those systems would be implemented on quantum
>computing devices.
>
>Essentially what i'm asking is: How would cryptography evolve once a
>quantum computer is available?
>
Simple. Use bigger keys. Bigger by the work-factor that quantum
computation gives you (see Grover's algorithm). E.g., a 512-bit symmetric
block cipher should be good for a few more years, quantum computers
or not. 3-AES anyone?