Security - what is better, des-xl or des-ofb?
Moderator: Queue Moderator
- radio-link
- Posts: 245
- Joined: Sun Mar 16, 2003 8:49 am
Security - what is better, des-xl or des-ofb?
Hi!
According to http://www.tropsoft.com/strongenc/des.htm, des-ofb is less secure than des-cfb - but how does des-xl fit into this? Is xl just a sync protocol over the cfb-mode, or something totally different?
Not that it really does a matter, just being curious :-)
According to http://www.tropsoft.com/strongenc/des.htm, des-ofb is less secure than des-cfb - but how does des-xl fit into this? Is xl just a sync protocol over the cfb-mode, or something totally different?
Not that it really does a matter, just being curious :-)
regards - Ralph, dk5ras
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
-
- was grem467
- Posts: 1145
- Joined: Mon Jul 21, 2003 12:46 pm
- radio-link
- Posts: 245
- Joined: Sun Mar 16, 2003 8:49 am
Yes, this is for sure, it really sucks :)grem467 wrote:my take:
if all your radios are ASTRO, then go with OFB.. DES-XL audio quality is horrid compared to OFB
But even in Astro I can choose between DES-OFB and DES-XL, and still I have no clue about the security difference between them both. A customer was asking for this; of course I could satisfy him with some techno babble, but I prefer facts :-)
Somewhere I stumbled about the fact, that DES-XL was some kind of counter addressing system, but I can not find this source any more...and there had not been any kind of evaluation anyway...
regards - Ralph, dk5ras
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
..
in astro mode, there is no difference in audio quality between encrypted ofb and encrypted xl.
in analog, different matter... there is no OFB analog... and XL sucks
doug
in analog, different matter... there is no OFB analog... and XL sucks
doug
BRAVO MIKE JULIET ALPHA
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
If I recall correctly, there is no "security" difference between the two, its just the format in which its transmitted so to say. I believe the CFB was the orginal "accepted" digital varient where as the OFB is now basically it. Either way, the underlying DES is the same.
So in general, DES amoung all its variety's is the same.
The real difference is between DVP, DES, FAC, AES, etc.
So in general, DES amoung all its variety's is the same.
The real difference is between DVP, DES, FAC, AES, etc.
Lowband radio. The original and non-complicated wide area interoperable communications system


(Rant on)
In the end....does it really matter for run of the mill operations?
Nope.
I don't know why some people get all worked up over this stuff. Its not like you can compare this stuff with cracking old windows passwords and the such. Even DVP is secure for 99% of stuff. Really, it is.
Never know why people like Larry and the the little backwoods PD insisit on having AES-xyz and OTAR for trival things.
(rant off)
I feel better.
In the end....does it really matter for run of the mill operations?
Nope.
I don't know why some people get all worked up over this stuff. Its not like you can compare this stuff with cracking old windows passwords and the such. Even DVP is secure for 99% of stuff. Really, it is.
Never know why people like Larry and the the little backwoods PD insisit on having AES-xyz and OTAR for trival things.
(rant off)

Lowband radio. The original and non-complicated wide area interoperable communications system


- radio-link
- Posts: 245
- Joined: Sun Mar 16, 2003 8:49 am
This is like I had it in the back of my mind. Will try to work it out a little bit, and write some lines to the customer, then this case is closed for me :)mr.syntrx wrote:There is a security difference. The difference in OFB and CFB is a cryptographic difference, rather than a difference in how it is transmitted.
OFB is one of the least secure modes, and it was probably selected for P25 because it requires less processing power than other modes like CFB.
regards - Ralph, dk5ras
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
- radio-link
- Posts: 245
- Joined: Sun Mar 16, 2003 8:49 am
You are absolutely right, but what should I do when M is not able to give the answer to the customers question?!Pj wrote:(Rant on)
Never know why people like Larry and the the little backwoods PD insisit on having AES-xyz and OTAR for trival things.
(rant off) :) I feel better.
By the way, when doing some car-to-car chat, absolutely trivial, it is still fun to know that no one can listen in. Here in germany even unencrypted APCO25 is enough, almost no one is able to receive this!
regards - Ralph, dk5ras
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
--
Ralph A. Schmid http://www.bclog.de [email protected]
Tel./SMS +49-171-3631223
-
- Batboard $upporter
- Posts: 255
- Joined: Fri Mar 14, 2003 10:07 am
- What radios do you own?: XTS5000v, XTS3000v, XTS2500
Your right, it doesnt matter which one you use because non of them are really rated for the transfer of classified information. The Navy wont even let us tell a social security number over DES. Now if your talking on a STU-III with a Secret key in it its a little different. But we aint talking about that.
Rusty
(I no longer have nextel. I now have an iPhone)
(I no longer have nextel. I now have an iPhone)
-
- Registered User
- Posts: 245
- Joined: Sat Nov 20, 2004 6:15 am
I guess it depends on you sales guy..if your dealing with a MSS or Motorola paid employee's directly.
I have been fortunate, that with the PD, we delt directly with Motorola. They guy we had (25+ years with them) would tell us what we needed and didn't need...even if it meant less of a sale. I guess you could say he is one of the better sales guys.
When we were going ASTRO, he told us hey....DES-OFB is the accepted standard, but why dump our entire DVP-XL equppied units for something that properly works?
The sales guys as the local MSS however, were usually a different story...
I have been fortunate, that with the PD, we delt directly with Motorola. They guy we had (25+ years with them) would tell us what we needed and didn't need...even if it meant less of a sale. I guess you could say he is one of the better sales guys.
When we were going ASTRO, he told us hey....DES-OFB is the accepted standard, but why dump our entire DVP-XL equppied units for something that properly works?
The sales guys as the local MSS however, were usually a different story...
Lowband radio. The original and non-complicated wide area interoperable communications system


There is NO Secutity difference between OFB and CFB. They both are a 56 BIT crypto algo. OFB (Output feed back) was developed to work more efficiently in a 9.6 kilobaud transmission (apco25) as opposed to CFB (cipher feed back) whick was developed for a 12.5 kilobaud transmission (Securenet).radio-link wrote:Hi!
According to http://www.tropsoft.com/strongenc/des.htm, des-ofb is less secure than des-cfb - but how does des-xl fit into this? Is xl just a sync protocol over the cfb-mode, or something totally different?
Not that it really does a matter, just being curious
DES/CFB (or straight DES) is Cipher Feed Back. This uses the majority of its bits for sampling audio. DES/XL (or "range extension") is used to aquire better distance of the digital frames xmitted over an analog signal. Hence, "range extension". With DES/XL, the algorithm borrows "audio" bits and reallocates them to be used as "synchronization" bits. Synchronization is what is needed to keep the bit stream continuous. This is why DES/XL sounds like complete dog 5h1t. It steals audio bits to use as sync bits to extend the range of the crypto transmission. CFB uses 5 micro seconds of sync and 495 micro seconds of audio. XL sends the same 500ms frame 2x for the same audio.radio-link wrote:Yes, this is for sure, it really sucksgrem467 wrote:my take:
if all your radios are ASTRO, then go with OFB.. DES-XL audio quality is horrid compared to OFB
But even in Astro I can choose between DES-OFB and DES-XL, and still I have no clue about the security difference between them both. A customer was asking for this; of course I could satisfy him with some techno babble, but I prefer facts
Somewhere I stumbled about the fact, that DES-XL was some kind of counter addressing system, but I can not find this source any more...and there had not been any kind of evaluation anyway...
Yea, try talking to 99% of other users that give you their keys at a hamfest or something & see if you can communicate in astro mode. They're not compatible. OFB was engineered to work most efficiently in a 9.6kb signal.batdude wrote:in astro mode, there is no difference in audio quality between encrypted ofb and encrypted xl.
in analog, different matter... there is no OFB analog... and XL sucks
doug
The Grabbing Hands, Grab all they can. Everything counts in large amounts. Martin L. Gore
..
bull
flag tossed on this one:
Yea, try talking to 99% of other users that give you their keys at a hamfest or something & see if you can communicate in astro mode. They're not compatible. OFB was engineered to work most efficiently in a 9.6kb signal.
this is because 99% of the xts radios at the hamfest are nick deluca WHOREFLASHED POS's....that aren't aligned properly.
i have run des-xl many days thru my quantars....hmmmm.... never a problem with any of my other buddies tx/rx'ing in astro mode w/ des-xl
doug

Yea, try talking to 99% of other users that give you their keys at a hamfest or something & see if you can communicate in astro mode. They're not compatible. OFB was engineered to work most efficiently in a 9.6kb signal.
this is because 99% of the xts radios at the hamfest are nick deluca WHOREFLASHED POS's....that aren't aligned properly.
i have run des-xl many days thru my quantars....hmmmm.... never a problem with any of my other buddies tx/rx'ing in astro mode w/ des-xl
doug
BRAVO MIKE JULIET ALPHA
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
There is far, far more to the security of a crypto algrorithm than just key length. The Tropisoft page mentioned above clearly describes the security differences between the feedback modes.Cipher77 wrote: There is NO Secutity difference between OFB and CFB. They both are a 56 BIT crypto algo. OFB (Output feed back) was developed to work more efficiently in a 9.6 kilobaud transmission (apco25) as opposed to CFB (cipher feed back) whick was developed for a 12.5 kilobaud transmission (Securenet).
"...However, this (OFB) mode of operation is less secure than CFB mode because only the real ciphertext and DES ciphertext output is needed to find the plaintext of the most recent block. Knowledge of the key is not required."
DES was not developed by Motorola, or APCO or anyone else involved in the development of Project 25. It was designed by the US Government, who likely couldn't have cared less about what Motorola wanted to use it for.
...
i would add that perhaps the only people who need to encrypt two-way comms at a higher level than DES would be some black-op secret squirrel commando types.
notice i said TWO-WAY - not formal message traffic.
if someone cares about cracking my secure key, which is just random digits on the KVL - go ahead, i could give a rats butt about it.
now in the other thread you have this statement:
radio-link wrote:
Without being too deep in this stuff, I assume AES holds a backdoor wide open - this is OK for my AESed private WLAN, but I would not like this for critical radio comms.
COME AGAIN? There is stuff on my PC and flying thru my wi-fi that i DAMN sure don't want anyone sniffing... bank stuff.. sensitive emails...all kinds of passwords, etc.
i care a HELL of a lot more about my WAN security than i do my OFB astro comms!!!!
bottom line here is a WLAN key that is 74747474747474 (however many digits) - is simply unhackable by any run-of-the-mill hobbyist.
i feel the same way about OFB. if the NSA or russian mob is *THAT* interested in my 2way comms... i have a serioud problem....excuse me... i have to pack....midnight flight to nigeria scheduled!
doug
notice i said TWO-WAY - not formal message traffic.
if someone cares about cracking my secure key, which is just random digits on the KVL - go ahead, i could give a rats butt about it.
now in the other thread you have this statement:
radio-link wrote:
Without being too deep in this stuff, I assume AES holds a backdoor wide open - this is OK for my AESed private WLAN, but I would not like this for critical radio comms.
COME AGAIN? There is stuff on my PC and flying thru my wi-fi that i DAMN sure don't want anyone sniffing... bank stuff.. sensitive emails...all kinds of passwords, etc.
i care a HELL of a lot more about my WAN security than i do my OFB astro comms!!!!
bottom line here is a WLAN key that is 74747474747474 (however many digits) - is simply unhackable by any run-of-the-mill hobbyist.
i feel the same way about OFB. if the NSA or russian mob is *THAT* interested in my 2way comms... i have a serioud problem....excuse me... i have to pack....midnight flight to nigeria scheduled!
doug
BRAVO MIKE JULIET ALPHA
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
"You can do whatever you want, there are just consequences..."
IF SOMEONE PM'S YOU - HAVE THE COURTESY TO REPLY.
I hope you're not using WEP, and you're using WPA or something instead, then.
http://wepcrack.sourceforge.net/
http://wepcrack.sourceforge.net/
Re: ...
Fortunately, most of what happens over your WiFi (which should be encrypted on its own) also happens over SSL... protocol-layer security plus application-layer security. For the paranoid (me), you can run a VPN (you have to get through the WPA key to my access points... then you have to crack 60-second rotating AES keys... then you have to crack HTTPS... good luck!)batdude wrote:COME AGAIN? There is stuff on my PC and flying thru my wi-fi that i DAMN sure don't want anyone sniffing... bank stuff.. sensitive emails...all kinds of passwords, etc.
You're definitely not ignorant, so I'm assuming you're running WPA, not WEP. WEP is flawed due to issues with the initialization vectors. Plenty of good writeups online regarding this.batdude wrote:bottom line here is a WLAN key that is 74747474747474 (however many digits) - is simply unhackable by any run-of-the-mill hobbyist.
Besides, I think Cipher77 is simply a troll, as I know many of his facts to be absolutely wrong.
Just for the record, DES was developed by IBM in 1974 ( http://www.tropsoft.com/strongenc/des.htm )with the code name of "Lucifer" and was given to the NSA to test it's strength & to help make suggestions as to how to make the "standard" a reality. DES was initially a 128 bit cipher and the NSA had weakened it to 56 bit. This had caused alot of controversy about the NSA's true intentions. Some speculate that the cipher (at the time) was too strong for non gov.t applications. So the NSA dummied it down. Some also speculate that a "back door was put in place (definition of back door is very broad. everything from a "master key" to a reverse engineered scenario) but this has never been proven.mr.syntrx wrote:
DES was not developed by Motorola, or APCO or anyone else involved in the development of Project 25. It was designed by the US Government, who likely couldn't have cared less about what Motorola wanted to use it for.
The Grabbing Hands, Grab all they can. Everything counts in large amounts. Martin L. Gore
Re: ...
What facts of mine are wrong & can you proove that they are wrong. If not, It's just your opinion.tvsjr wrote:
Besides, I think Cipher77 is simply a troll, as I know many of his facts to be absolutely wrong.
The Grabbing Hands, Grab all they can. Everything counts in large amounts. Martin L. Gore
Re: ...
I agree with you Bat Dude. "i would add that perhaps the only people who need to encrypt two-way comms at a higher level than DES would be some black-op secret squirrel commando types."batdude wrote:i would add that perhaps the only people who need to encrypt two-way comms at a higher level than DES would be some black-op secret squirrel commando types.
notice i said TWO-WAY - not formal message traffic.
if someone cares about cracking my secure key, which is just random digits on the KVL - go ahead, i could give a rats butt about it.
now in the other thread you have this statement:
radio-link wrote:
Without being too deep in this stuff, I assume AES holds a backdoor wide open - this is OK for my AESed private WLAN, but I would not like this for critical radio comms.
COME AGAIN? There is stuff on my PC and flying thru my wi-fi that i DAMN sure don't want anyone sniffing... bank stuff.. sensitive emails...all kinds of passwords, etc.
i care a HELL of a lot more about my WAN security than i do my OFB astro comms!!!!
bottom line here is a WLAN key that is 74747474747474 (however many digits) - is simply unhackable by any run-of-the-mill hobbyist.
i feel the same way about OFB. if the NSA or russian mob is *THAT* interested in my 2way comms... i have a serioud problem....excuse me... i have to pack....midnight flight to nigeria scheduled!
doug
Added to that list is the USSS and the FBI as well as the DoD.
The Grabbing Hands, Grab all they can. Everything counts in large amounts. Martin L. Gore