Difference between revisions of "SHA-512/384"
From The ECRYPT Hash Function Website
Npramstaller (talk | contribs) (→Collision Attacks) |
Crechberger (talk | contribs) (→Specification) |
||
Line 1: | Line 1: | ||
== Specification == | == Specification == | ||
− | * digest size: 512 bits | + | * digest size: 512 bits, truncation to 384 bits also specified |
* max. message length: < 2<sup>128</sup> bits | * max. message length: < 2<sup>128</sup> bits | ||
* compression function: 1024-bit message block, 512-bit chaining variable | * compression function: 1024-bit message block, 512-bit chaining variable |
Revision as of 10:56, 17 March 2008
Contents
1 Specification
- digest size: 512 bits, truncation to 384 bits also specified
- max. message length: < 2128 bits
- compression function: 1024-bit message block, 512-bit chaining variable
- Specification: FIPS 180-2 Secure Hash Standard
2 Cryptanalysis
2.1 Best Known Results
2.2 Generic Attacks
2.3 Collision Attacks
Henri Gilbert, Helena Handschuh - Security Analysis of SHA-256 and Sisters
- Selected Areas in Cryptography 3006:175-193,2003
- http://springerlink.metapress.com/openurl.asp?genre=article{\&}issn=0302-9743{\&}volume=3006{\&}spage=175
BibtexAuthor : Henri Gilbert, Helena Handschuh
Title : Security Analysis of SHA-256 and Sisters
In : Selected Areas in Cryptography -
Address :
Date : 2003