From: bbense+comp.lang.ruby.Feb.26.03@... Date: 2003-02-26T23:35:27+09:00 Subject: Re: Objectify the mersenne twister in 1.8? -----BEGIN PGP SIGNED MESSAGE----- In article , gabriele renzi wrote: >il Tue, 25 Feb 2003 08:02:48 +0900, matz@ruby-lang.org (Yukihiro >Matsumoto) ha scritto:: > >>Hi, >> >>In message "Re: Objectify the mersenne twister in 1.8?" >> on 03/02/25, gabriele renzi writes: >> >>|It would even be cool to have a choice, cause (I seem to remeber) >>|that MT is not a *secure* algorithm. >> >>I didn't know MT is insecure. Do you have any reference? >> >> matz. > > >http://www.math.keio.ac.jp/~matumoto/emt.html >says: > >Caution: MT is for MonteCarlo, and is NOT SECURE for CRYPTOGRAPHY as >it is. > >That was the reason I wrote secure *this way* .. >Well, I could have explained myself better, sorry :-/ _ As a side note, it's an open question whether there is ANY prng that is secure for cryptography. All you can do is show that a given prng is not suitable for cryptography. There is some very interesting work happening in this area based on the Yarrow paper by Bruce Schneier and John Kelsey. The EGADS system provided by http://www.securesoftware.com/auditing_tools_download.htm is the most workable implementation of these ideas that I've yet found. _ Booker C. Bense -----BEGIN PGP SIGNATURE----- Version: 2.6.2 iQCVAwUBPlzOR2TWTAjn5N/lAQGBcQP9G0CG5nzffk2VlnZiLxu763ZnYc8rOYWQ DGCABab6vCOc3tLgzeTuOgggb6Y6uKGoCDG7Z9y4FoARg/CI7fqHWg+N7JJITaGJ BFtVoSQjW6VpgFDo41xPdOqewm2yfP8P/Kn9xXP93XSPknR4nQMTDDhHopOOJ8nc 6mLjE6otN50= =ey/j -----END PGP SIGNATURE-----