Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Encryption layers are actually pretty cheap for the vast majority of ciphers and applications.

Seems dumb not to have like 10.



Make sure you absolutely have fresh entropy for all ten of your encryption layers. Re-using secrets and randomness between different encryption algorithms can leak a lot of data!


Nothing is as cheap (and secure at the same time) as hardware-accelerated AES. Thats why its often the only encryption-layer used.


> Nothing is as cheap as hardware-accelerated AES.

Yes, and at the same time all of modern crypto is incredibly cheap and can be added as wished on almost every application without any visible extra costs.

So the answer to the GP is not that trivial one. The actual answer is about software complexity making errors more likely, and similar encryption schemes not really adding any resiliency.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: