republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Passphrase strength, is this right?
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Stealth »
« Sudo for Windows  
AuthorAll Replies


nwrickert
sand groper
Premium,MVM
join:2004-09-04
Geneva, IL
·AT&T U-Verse
·AT&T Midwest

reply to Jack Morgan
Re: Passphrase strength, is this right?

Your computation is correct, assuming a dictionary attack. If the words are chosen randomly from the dictionary, your 5 word phrase corresponds to around 63 bits of entropy. If your choice of words is non-random, the amount of entropy could be considerably less.

The 5 million tries per second might be slow. Depending on what you are protecting, an attacker might be willing to use considerably more compute power. If your encryption needs to be long lasting, then you need to protect against future computer speeds, not just todays speeds.

If the encryption is for something like WPA, then some information about the key is given out in the observable transmissions, which can be used to speed up cracking the encryption.
--
Never underestimate the ability of a large organization to screw up
Forums » Up and Running » Security » SecurityStealth »
« Sudo for Windows  


Sunday, 06-Dec 13:27:23 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [147] Avast Antivirus Has Gone Mad
· [138] The Bandwidth Hog Does Not Exist
· [128] Comcast Makes NBC Universal Acquisition Official
· [105] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [85] FCC Ponders Moving From PSTN To IP Voice
· [82] Latest Consumer Reports Survey Not Kind To AT&T
· [81] New Bill Aims To Limit ETFs
· [75] Sprint Defuses GPS Privacy Media Bomb
Most people now reading
· Wife might have to work in.... Iowa for a few months!!! [General Questions]
· Windows 7 boot manager editing questions [Microsoft Help]
· False positive in Avast! or is it real? [Security]
· Problems with rlslog.net? [TekSavvy]
· Is there any true cure for, or way to prevent, a hangover? [General Questions]
· He freakin' went there. [World of Warcraft]
· [DNS] Google's public DNS... performance increases? [Comcast HSI]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· UPS - What do you people think happened? [General Questions]
· Evading throttling with uTP / uTorrent 1.9a [TekSavvy]