[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Preparing a new draft...



On 20 Aug 2001 22:07:29 +0200, you wrote:

>
>On Mon, 20 Aug 2001 12:09:04 -0700, Jon Callas said:
>
<snip>
>Regarding MDC: PGP and GnuPG both implement MDC but without the use of
>the features flag.  A long time ago I agreed with Hal to use MDC with
>all algorithms having a blocksizes > 64 (i.e. Twofish and AES).  From
>our knowledge no other application did use one of those algorithms at
>that time.   IMHO, it would be good to stress it even more that the
>MDC packets should be used and that it can be expected that future
>revisions of OpenPGP will make the use of MDC mandatory.
>
PGP does not generate MDC packets, it will however interpret them.

Since MDC's are too new, not mandatory, and may cause an application which
does not implement them to fail to decode, a responsible implementor
should not generate such packets unless otherwise instructed by the user.

Remember, the User Is King, the Implementor is not!

my 2c

>Ciao,
>
>  Werner