Reply to post: Oh good, this again

Blueprints revealed: Oracle crams Sparc M7 and InfiniBand into cheaper 'Sonoma' chips

Michael Wojcik Silver badge

Oh good, this again

It also supports unsafe algorithms such as MD5, SHA-1, and DES, weirdly.

Clearly written by someone with a very limited understanding of cryptography, particularly as it's used in the real world.

MD5 remains suitable for many purposes. And it's still used for many purposes, including some where it's not so suitable, modulo the threat models of the participants. Accelerating it on the chip is very cheap once you're accelerating pretty much anything else, so why not?

The same goes, but even more so, for SHA-1. SHA-1 is no longer suitable for signing X.509 certificates used to validate the identity of anything of significant interest to attackers willing to devote some resources, true; but it's fine for many other things. And certificates signed using SHA-1 aren't going to suddenly disappear.

DES, in the form of EDE 3DES, is just fine for most purposes where the value of the data doesn't exceed the cost to break a 112-bit symmetric key.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon