[Pkg-openssl-devel] Bug#327739: Bug#327739: Patch to enable IDEA support

Kurt Roeckx kurt at roeckx.be
Fri Nov 1 21:37:04 UTC 2013


On Fri, Nov 01, 2013 at 09:22:56PM +0000, brian m. carlson wrote:
> tags 327739 + patch
> kthxbye
> 
> I've attached a patch to add IDEA support.  The algorithm is not
> insecure (unlike MD5 and RC4, which are still compiled in), and somebody
> might want to use it.

I don't intent to apply this patch.  There are things like AES and
Camellia that can be used instead.  The only good reason I can see
for enabling things is being able to read / talk to old things
that do support it.

Note that MD5 (and SHA-1) only has a problem with collision attacks,
as far as I know it's still considerd safe against a preimage attack.
But I would still suggest moving to SHA-2.


Kurt



More information about the Pkg-openssl-devel mailing list