git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: Val Henson's critique of hash-based content storage systems

From
TLTom Lord <lord@emf.net>
Date
Apr 29, 2005, 20:37 UTC
Message-ID
<200504292037.NAA28344@emf.net>
In-Reply-To
<Pine.LNX.4.61.0504291608410.32145@cag.csail.mit.edu>
  lord:
  > I would expect someone to have on hand a small number of blobs that are
  > different but have different hashes and, eventually, to drop said files
  > into a blob-based infrastructure to wreak havoc.
  cscott:
  
  This is just ridiculous.  The number of known collisions in SHA1 is 
  *exactly zero* at this point in time --- not guaranteed to stay that way, 
  of course, but generating collisions is likely to remain relatively 
  expensive for some time.

Blob-dbs and the low-level object system (trees, file-contents, and changesets) are pretty fundamental things. It is likely (and desirable) -- not guaranteed but likely (and desirable) -- that people will invest heavily in building infrastructure that operates solely at that level of abstraction. Arguably, that is already happening.

Simultaneously, it is very desirable that some mathemetican somewhere will discover two bitstrings which are different but have SHA1 checksums, and then tell everyone in the world about their discovery.

My point is simply that blob-db implementations should assume that the mathemeticians will succeed and take the small steps necessary to make sure that those bitstrings can't be used to crash a distributed blob-db infrastructure.

-t
Previous: C. Scott AnanianNext: C. Scott Ananian
Message 5 of 8 in “Val Henson's critique of hash-based content storage systems”
  1. Rob JellinghausApr 29, 2005
  2. Linus TorvaldsApr 29, 2005
  3. Tom LordApr 29, 2005
  4. C. Scott AnanianApr 29, 2005
  5. Tom LordApr 29, 2005
  6. C. Scott AnanianApr 29, 2005
  7. H. Peter AnvinApr 29, 2005
  8. Morten WelinderApr 29, 2005

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.