[PATCH] libmd: Use alternative MD5 implementation

Sebastian Huber sebastian.huber at embedded-brains.de
Mon Dec 17 07:46:08 UTC 2012


On 12/17/2012 05:06 AM, Ralf Corsepius wrote:
> On 12/16/2012 06:09 PM, Sebastian Huber wrote:
>> This implementation has less license restrictions.
>
> The issue with md5 is not licenses, it's security and portability.
>
> That said, your proposal to me qualifies as replacing a widely used and heavily
> tested version with one from the zoo of exotic versions that are floating around.
>
> That said, unless you can provide evidence of the version you are proposing has
> a history of being used for many years in major OSes or applications, I am very
> opposed to letting this code in.

This is not a random selection.  This code is used in PHP 5.3.0+ for example. 
I added also the RFC 2202 test cases as test libtests/md501.  Feel free to 
improve this test.

-- 
Sebastian Huber, embedded brains GmbH

Address : Dornierstr. 4, D-82178 Puchheim, Germany
Phone   : +49 89 18 94 80 741-16
Fax     : +49 89 18 94 80 741-09
E-Mail  : sebastian.huber at embedded-brains.de
PGP     : Public key available on request.

Diese Nachricht ist keine geschäftliche Mitteilung im Sinne des EHUG.





More information about the devel mailing list