On 01/03/2013 06:09 PM, Niels Möller wrote:
What's missing, more precisely? E.g., salsa20_crypt is both in the salsa20.h header file and in the Salsa20 section in the manual.
It may be better to refer to it as salsa20/20. Then it would be clear which variant it is.
From the code and the previous discussion in the ML I see that the 20 rounds variant is there.
Right, other variants where postponed for lack of clear use cases.
As far as I know Salsa20 isn't standardized in a protocol. However if that occurs it may be that the 20/12 variant is selected because of estream.
What name should it use, salsa20_12_crypt? I imagine there are some testvectors somewhere on the ecrypt site?
No idea.
regards, Nikos