Minimal Key Lengths for Symmetric Ciphers to Provide Adequate Commercial Security

I just read the PDF on the subject. It was written a while back, but most of the conclusions stand still today. However my mantra is to use always the highest available key length that your tool supports since you can never be cautious enough. Just remember how secure people felt using DES for a long time. Looking at the computing power that is at hands today, it's merely a joke to crack a DES encryption. I assume that some people on Earth are always at least ten years before the masses, so if you're looking for security today, then think ten years forward. Secure your data basing on history of computer security. Assume that scientists will find ways to scale down brute-force attacks against currently available alogithms to a 1/100th (or even 1/1000000) of their known complexity. Protocols and algorithms get compromised every day, do not make the mistake of trusting a single piece of code/logic/alg. As an old Hungarian ad said: "one lock does not lock". Smiling

Syndicate content