[openssl-dev] Circumstances cause CBC often to be preferred over GCM modes
Hanno Böck
hanno at hboeck.de
Tue Dec 16 17:28:03 UTC 2014
On Tue, 16 Dec 2014 17:17:01 +0000
Viktor Dukhovni <openssl-users at dukhovni.org> wrote:
> However, where do we fit ChaCha20/Poly-1305? Again, not
> hand-placement, but some extensible algorithm.
How about this simpler criterion:
AEAD always beats non-AEAD. GCM and poly1305 are both AEAD. Done with
it.
(this doesn't answer whether chacha20-poly1305 or aes-gcm should be
considered "better", but I don't know if there is a clear consensus on
that)
--
Hanno Böck
http://hboeck.de/
mail/jabber: hanno at hboeck.de
GPG: BBB51E42
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://mta.opensslfoundation.net/pipermail/openssl-dev/attachments/20141216/a45d00d5/attachment.sig>
More information about the openssl-dev
mailing list