Re: problems with SHA-1

On Mon, 23 Jun 1997, Bruce Perens wrote:

> The problem with SHA-1 is that it is a U.S. Federal Information Processing
> Standard, and I don't trust that the U.S. government will not place export
> restrictions on it. I'm also wary of U.S. FIPS for the same reason I'm wary
> about DES - various spy agencies have to approve the standard, and one wonders
> if they know something we don't.

However, you should know, that all these things are used for items the
govt. wants to keep secure.  It wouldn't be too secure if their was a
backdoor.  Also, didn't IBM develop DES, not the govt.


