-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On Monday, February 3, 2003, at 02:17 AM, Richard McKay wrote: > Mike Beede wrote the following: > >> SSH on OS X offers 256-bit AES. I found that in around two minutes. >> Thanks for playing. > > It does make it considerably harder to crack with 256 but my point is > still > valid that the powers that be can still (if they really want to and > spend > enough time) decode anything the private individual can encode. They > will > never release an encoding system to the public that they are not > capable of > taking apart... Sigh. AES (Rijndael) was selected through a public submission and review process supervised by NIST. The "powers that be" did not make any changes to the algorithms. The AES is a part of the best representation of the publicly available knowledge on symmetric ciphers. Do the "powers that be" have stronger ciphers? Probably. Can the "powers that be" "decode" AES-encrypted information? Highly *unlikely*. It's been shown that while the government crypto world in the past had more knowledge than the public crypto world, the public world has done a good job of developing new techniques for both cryptography and cryptanalysis. At this point I would not be willing to say that the government world knows significantly more than the public world in cryptanalysis. To put this in perspective, I am also pretty paranoid. Paranoia is a good thing. But it helps to know what to be paranoid about and knowing the abilities of the "powers that be". Just trying to inject a little reality into the discussion, not trying to turn this into a crypto discussion (which I almost did half a dozen times :) - -- wes / wgriffin at jtan.com / 000f1a2f -----BEGIN PGP SIGNATURE----- Version: PGP 8.0 iQEVAwUBPj5jky4xMyMADxovAQJVlAf/et7N+clIzW2qtpc71RQbrQ29N4d31r3z ae8mSnV7WzFB7Iai53FzbAt4Trj71wq1dvj95T+M3sbw5ce9YqUFZV+Fu7SPzKyM 4v6iUHKXOYcRPR5uEOlEonj4A6wYjByfY4XfAPGl0GHkWnC2Aj8pkfnDh68ndt0p nl/sUK3S2EdeZheMxJgr0Kcy/BzKsntV2v4S5ZUstgu4w3l6RqhpL/qu4DxQLQ/n k+Aa3m//iKfpu+sg3R9DezVKG6D8t3QuLNJ8vVXyHZ8coQbZ9s0l4v2mdrrrua08 GsP2/3gDaeBE3disdQiGkBdAe1NRCZv1/Zf64FTTr7pO4ltKYFPLTQ== =+8MJ -----END PGP SIGNATURE-----