3 ms·
Take the first 32 bytes of Sha512 if the extra bytes isare too annoying. This also gives you an extra 32 bytes to use for something like .. ?
by divbit 10y ago
Take the first 32 bytes of Sha512 if the extra bytes isare too annoying. This also gives you an extra 32 bytes to use for something like .. ?
- divbit 10y agoThere is a nice clean implementation in tweetnacl - while we are at it, commits could be signed with eddsa (or xeddsa/vxeddsa, though I don't know if those have compact libraries?)
- elwell 10y agoIsn't it a bad idea to assume uniform distribution of variance over the hash?
- GauntletWizard 10y agoApparently not bad enough that SHA512/256 isn't in the SHA2 family.
- hueving 10y agoNo, one of the characteristics of a cryptographic hash function is that output should be completely unpredictable based on input. So the probability that the low order bits will change vs the high order bits should be exactly the same given any arbitrary inputs.