why to choose s15,s13,s10,s4 and s0 in LFSR,how does it work if we choose others

## It will work well if we choose others

huaxin19 wrote: why to choose s15,s13,s10,s4 and s0 in LFSR,how does it work if we choose others

I think it will work well if we choose other minimal polynomials. The only requirement is the polynomials should produce m-sequences. If we can redesign the cipher, we may shoose a polynomial with three terms. So we will save half of the running time in the LFSR part.

