31 March 2016 to 1 April 2016
Intercontinental Buenos Aires
America/Buenos_Aires timezone

The Quest for the Missing Keytags

1 Apr 2016, 11:30
30m
Montserrat (Intercontinental Buenos Aires)

Montserrat

Intercontinental Buenos Aires

Buenos Aires, Argentina
Public Workshop Public Workshop: Research

Speaker

Roy Arends (ICANN)

Description

In an effort to create all possible 64K keytags for a DNSSEC signing key, an anomaly surfaced that caused 75% of the possible keytags to never appear. This effort to generate certain cryptographic keys became an adventure in itself that included beautiful discrete math, flawed functions, carefully crafted primes, multiple cryptographic libraries, and some brilliant people. The result of this effort shows that using an ancient checksum function to identify cryptographic keys is not optimal.

Summary

The presentation will go through the quest of uncovering the anomaly that caused the limitation in keytags generation.

Primary author

Roy Arends (ICANN)

Presentation materials