[tahoe-dev] What is the 100 year crypto KDF?

Chris Palmer chris at noncombatant.org
Thu Jun 10 10:14:07 PDT 2010


Jack Lloyd writes:

> - Built-in iteration support. I don't know if it is worth using
>   necessarily, considering the inputs will all be high-entropy rather
>   than human-{chosen,memorized,postitnoted} passwords, but it _may_
>   still offer benefits.

This is why I wonder if a KDF is necessary at all. As I understand it, there
is no security need to whiten, stretch, mangle, or noodlize the output from
(e.g.) /dev/urandom. Am I wrong, or only wrong for a specific Tahoe-LAFS
scenario?



More information about the tahoe-dev mailing list