[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: WG Last Call: SHA-224
Paul:
At 8:21 AM -0500 3/29/04, Russ Housley wrote:
I understand that the computation expense is the same as SHA-256.
However, as you point out, there are times that a shorter hash value is
desirable.
Do we agree that the only times where it is desirable is in severely
bandwidth-restricted environments? Or am I missing some other scenario?
It is also useful is you want all of the algorithms in a cipher suite to
offer the same strength. I remember a SAAG discussion that this was called
"impedance match," but I do not particularly like that term.
Russ