All of lore.kernel.org
 help / color / mirror / Atom feed
* [dm-crypt] Argon2id security margin estimate and LUKS2 usage
@ 2018-08-20 13:33 procmem
  2018-08-20 18:46 ` Arno Wagner
                   ` (2 more replies)
  0 siblings, 3 replies; 7+ messages in thread
From: procmem @ 2018-08-20 13:33 UTC (permalink / raw)
  To: dm-crypt, gmazyland, Patrick Schleizer, whonix-devel

Hi Milan, Whonix (privacy distro) maintainer here. We are researching
the best password advice to give to our users and while diceware is a
great improvement over the status quo, the recommendation by
cryptographers in light of quantum computing is to choose pass phrases
with a length equivalent to 256 bits because Grovers will halve the bit
length. This requires phrases to be 20 words long for 256 bits which is
excessive IMO and the reason we are looking at key-stretching for
shorter ones instead.

* What is the time/sec margin added to a password with Argon2id's best
parameters?

* Have Argon's parameters been tweaked in the LUKS implementation, to
account for the 2 public attacks? [0]

* Are more cryptanalytic attacks expected against it in the future or is
it extremely unlikely for progress against to be made? (For example
modern hashes like BLAKE2 or block ciphers like AES are pretty robust
with no notable attacks for some time)

* Can you please give an example of cryptsetup re-encrypt command that
upgrades an existing LUKS1 system to one that uses Argon with its max
settings?


CC/d our ML so users can benefit from your reply.


[0] https://en.wikipedia.org/wiki/Argon2#Cryptanalysis

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2018-09-03 21:08 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2018-08-20 13:33 [dm-crypt] Argon2id security margin estimate and LUKS2 usage procmem
2018-08-20 18:46 ` Arno Wagner
2018-08-20 23:19 ` procmem
2018-08-21  2:41   ` Arno Wagner
2018-09-03 10:48 ` Milan Broz
2018-09-03 14:35   ` procmem
2018-09-03 21:08     ` Arno Wagner

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.