0

What are the disadvantages of using AES-256 with 240-byte key (which scrypt/bcrypt/argon2/pbkdf2 can easily output) instead of an expanded 256-bit key?

The only disadvantage I can think of is "no more hardware acceleration". This is not important for a fair comparison, are there other disadvantages?

EDIT: This is about replacing round keys.

MCCCS
  • 731
  • 1
  • 7
  • 15

0 Answers0