Post #2471796
2026-04-20 18:45 UTC
@filippo@abyssdomain.expert Unfortunately CNSA 2.0 also asks for SHA-512 over SHA-256, and that's in fact a major hassle and is wasting time, because we're looking at making the container ecosystem add support for that. Your point of the birthday problem and their target of 256bit security at least explains that (in a way that NSA's own documentation doesn't), but it's still a pity we're wasting time on this.
Replies (1)
-
@filippo@abyssdomain.expert 2026-04-20 20:05
@neverpanic@chaos.social oh yeah I agree CNSA 2.0 is a whole waste of time, but at least it’s a waste of time with a name and a rationale.