All of lore.kernel.org
 help / color / mirror / Atom feed
* [dm-crypt] question regarding Sha1 and 512 bit key xts mode
@ 2013-12-11 16:31 anderson jackson
  2013-12-11 18:04 ` Arno Wagner
  0 siblings, 1 reply; 13+ messages in thread
From: anderson jackson @ 2013-12-11 16:31 UTC (permalink / raw)
  To: dm-crypt

In the faq it is said that the use of sha1 for the purpose used in Luks is
valid because it is not the cryptographic feature that is used but instead the
time delay for retreaving the master key. 

However is this really the case? The output of Sha1 is a 160 bit string.
A password is iterated using PBKDF2(with sha1). But can't I just use all the
possible sha1 values to decrypt the master key and validate it with the master
key checksum? Does this not effectively reduce the possible passwords for an
AES 256 bit volume to a password of 160 bit length?

Kind regards,








____________________________________________________________
South Africas premier free email service - www.webmail.co.za 

Slim now! Pay later! http://clients.wm.co.za/20086125/default.htm

^ permalink raw reply	[flat|nested] 13+ messages in thread

end of thread, other threads:[~2015-08-26 12:52 UTC | newest]

Thread overview: 13+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2013-12-11 16:31 [dm-crypt] question regarding Sha1 and 512 bit key xts mode anderson jackson
2013-12-11 18:04 ` Arno Wagner
2015-08-22  3:38   ` Heinz
2015-08-22 10:04     ` Michael Kjörling
2015-08-22 14:05       ` Arno Wagner
2015-08-26 12:29       ` Heinz
2015-08-22 13:58     ` Arno Wagner
2015-08-26 12:51       ` Heinz
2015-08-23 18:51     ` Sven Eschenberg
2015-08-23 19:38       ` Arno Wagner
2015-08-23 20:21         ` Sven Eschenberg
2015-08-24  6:18           ` Milan Broz
2015-08-24 11:54             ` Arno Wagner

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.