• [^] # Re: crypto

    Posté par (site web personnel) . En réponse à la dépêche OpenSSL 0.9.8 est sorti. Évalué à 7.

    Pour Mars, Serpent et Twofish : ces algos symétriques étaient les concurrents d'AES (Rijndael) lors du concours ouvert par le NIST américain.
    Ils ont été longuement testés par tous les cryptographes du monde et leur sécurité a été jugée au moins aussi bonne qu'AES (qui a gagné car il est plus rapide sur les CPU de petite puissance comme les cartes à puces).

    Mars (concu par IBM) : http://www.research.ibm.com/security/mars.html(...)

    Twofish (concu par Bruce Schneier l'auteur de Blowfish) : http://www.schneier.com/twofish.html(...)

    Serpent : http://www.cs.technion.ac.il/~biham/Reports/Serpent/(...) et aussi http://www.cl.cam.ac.uk/~rja14/serpent.html(...)

    A noter la répartition des votes lors du choix d'AES :

    The winner, Rijndael, got 86 votes at the last AES conference while Serpent got 59 votes, Twofish 31 votes, RC6 23 votes and MARS 13 votes.

    Pour faire face a ce choix d'algos par un organisme américain l'Europe a aussi lancé un concours ouvert à tous : C'est le projet NESSIE.

    Le gagnant des algos symétriques est Camellia (un algo japonais) : http://info.isl.ntt.co.jp/crypt/eng/camellia/index.html(...)

    A noter plusieurs nouvelles importantes et récentes concernant Camellia :

    1) Camellia is adopted for the first time as the ISO/IEC international standard cipher (ISO/IEC18033-3).

    2) Camellia was certified as the IETF standard cipher (Proposed Standard) of S/MIME (RFC3657).

    3) Camellia was certified as the IETF standard cipher (Proposed Standard) for XML security URIs (RFC4051).

    4) IETF began the final process for publishing the Proposed Standard RFC for adding Camellia to IPsec.


    Il semble donc que Camellia soit sur la voie de devenir au moins aussi important qu'AES puisqu'il sera dans IPSec et qu'il est le premier algo de cryptographie à être adopté comme standard international par L'ISO.