[openssl-dev] Circumstances cause CBC often to be preferred over GCM modes

Nico Williams nico at cryptonector.com
Tue Dec 16 17:57:57 UTC 2014


On Tue, Dec 16, 2014 at 12:26:32PM -0500, Salz, Rich wrote:
> > In particular there MUST NOT be any fragile hand-tuning.  All ordering needs
> > to be based on general principles.
> 
> This is not a universally-held view.

I think the key word is "fragile", not "hand-tuning".

Subtracting (in local configuration) algorithms from a keyword denoting
all known-strong algorithms is hand-tuning, but not fragile hand-tuning.

Nico
-- 


More information about the openssl-dev mailing list