Re: why gpg use SHA1 instead of pref???

2007-03-26 Thread redstar
David Shaw jabberwocky.com> writes: > > New: Symmetrically Encrypted and MDC Packet(tag 18)(70 bytes) > > Ver 1 > > Encrypted data [sym alg is specified in pub-key encrypted session key] > > (plain text + MDC SHA1(20 bytes)) > > > > What I must do for using RIPEMD160 hash of

Re: why gpg use SHA1 instead of pref???

2007-03-22 Thread David Shaw
On Thu, Mar 22, 2007 at 11:12:26AM +, redstar wrote: > New: Symmetrically Encrypted and MDC Packet(tag 18)(70 bytes) > Ver 1 > Encrypted data [sym alg is specified in pub-key encrypted session key] > (plain text + MDC SHA1(20 bytes)) > > What I must do for using RIPE

why gpg use SHA1 instead of pref???

2007-03-22 Thread redstar
d Features: MDC, Keyserver no-modify Command> pref [ultimate] (1). testing key <[EMAIL PROTECTED]> S3 S2 S4 S10 S9 S8 H3 H10 H8 H9 H2 H1 Z2 Z3 Z1 Z0 [mdc] [no-ks-modify] Command> $ pgpdump foomessage.gpg Old: Public-Key Encrypted Session Key Packet(tag 1)(268 bytes)

Re: Pref

2005-06-02 Thread Johan Wevers
Kiefer, Sascha wrote: >But i think, it's not the boss of the bank that will change those >Settings but the security administrator. They have some decent >knowledge. Are they cryptographers? >And there will be a handbook where everything will >Explained in detail, Who writes that book? Some well

RE: Pref

2005-06-02 Thread Kiefer, Sascha
> "At least". Does the bank has contracted anyone with enough > knowledge of cryptography to make educated assumptions about > the strength of the different algorithms in GnuPG? Hopefully! :) But i think, it's not the boss of the bank that will change those Settings but the security administrat

Re: Pref

2005-06-02 Thread Johan Wevers
Sascha Kiefer wrote: >Well, a bank might send confidential data to there customers. >And the country of the bank - like luxembourg - enforces by law that >confidential data must be >encrypted using at least AES then the banks policy must be setup this way. "At least". Does the bank has contracte

Re: Pref

2005-06-02 Thread Sascha Kiefer
Johan Wevers schrieb: Kiefer, Sascha wrote: In the cas the public key supports only IDEA, 3DES my program will raise an error because the those algorithms are not permitted by the policy Such ideas can only come from dumb manager-like control freak system administrators, usually wi

Re: Pref

2005-06-02 Thread Johan Wevers
Kiefer, Sascha wrote: >In the cas the public key supports only > >IDEA, 3DES > >my program will raise an error because the those algorithms are not >permitted by the policy Such ideas can only come from dumb manager-like control freak system administrators, usually with insufficient knowledge to

RE: Pref

2005-06-01 Thread Kiefer, Sascha
> Yes, but this is a bad mistake to make. If an algorithm does > not appear in someones preferences, then it shouldn't be > used. For example, IDEA is an optional algorithm in OpenPGP. > If your administrator decides that everyone should use IDEA, > that will mean that some users will not be

Re: Pref

2005-06-01 Thread David Shaw
On Wed, Jun 01, 2005 at 10:00:45PM +0200, Kiefer, Sascha wrote: > > Yes, you will. > > > > However, why are you doing this? GnuPG automatically does > > this for you. > > Not really. Only if i change the pref for the key i use. > My system is similar to the PGP

RE: Pref

2005-06-01 Thread Kiefer, Sascha
> Yes, you will. > > However, why are you doing this? GnuPG automatically does > this for you. Not really. Only if i change the pref for the key i use. My system is similar to the PGP universal system which runs on a server. Let's think about SHA-1. Right now, it will be the p

Re: Pref

2005-06-01 Thread David Shaw
On Wed, Jun 01, 2005 at 10:11:06AM +0200, Kiefer, Sascha wrote: > > > 3. Will i get more than that "uid:uSascha Kiefer (test4711) > > > <[EMAIL PROTECTED]>1,:" information if i do not have a private > > > key? > > > > I'm not sure what you're asking here. > > Well, i have an automat

Re: Pref

2005-06-01 Thread Sascha Kiefer
Addionally, what does "mdc,no-ks-modify:1,p:" mean? Regards, Sascha ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

RE: Pref

2005-06-01 Thread Kiefer, Sascha
> > 3. Will i get more than that "uid:uSascha Kiefer (test4711) > > <[EMAIL PROTECTED]>1,:" information if i do not have a private > > key? > > I'm not sure what you're asking here. Well, i have an automated system where you are able to define some policies e.g. use just AES256 for

Re: Pref

2005-05-31 Thread David Shaw
On Wed, Jun 01, 2005 at 12:00:07AM +0200, Kiefer, Sascha wrote: > Hi > > I have same questions! > > 1. what is the difference between showpef and pref using the option > "--with-colons" ? No difference. > 2. S9 S8 S7 S3 S2 H2 H3 Z2 Z1: S=symmetric, H=hash, Z=co

Pref

2005-05-31 Thread Kiefer, Sascha
Hi I have same questions! 1. what is the difference between showpef and pref using the option "--with-colons" ? 2. S9 S8 S7 S3 S2 H2 H3 Z2 Z1: S=symmetric, H=hash, Z=compression? H3 means RIPEMD160 because "gpg.exe --version" tells me that the hashing algorithms that are sup