Full Disclosure mailing list archives
Re: Time Expiry Alogorithm??
From: "Gary E. Miller" <gem () rellim com>
Date: Fri, 19 Nov 2004 10:40:54 -0800 (PST)
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Yo Gautum! On Fri, 19 Nov 2004, Gautam R. Singh wrote:
I was just wondering is there any encrytpion alogortim which expires wit h time.
IPSec, kerboros, etc. all use time as part of the auto-generated session key to prevent playback attacks. If a black hat has an intercepted message he wants to decode then he can set his clock to anything he wants to. Time is no help there, except to expand the key search space if they are looking for an unknown key. If they have the key already nothing you can do if they can reset their clock. All that time gets you is protection from replays. RGDS GARY - --------------------------------------------------------------------------- Gary E. Miller Rellim 20340 Empire Blvd, Suite E-3, Bend, OR 97701 gem () rellim com Tel:+1(541)382-8588 Fax: +1(541)382-8676 -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFBnj458KZibdeR3qURAhRrAKCmRRsEOWNYysATUTetYkc0ldoZtACeIM5h aYw7P4ACKK0dqhJhivG1lYE= =JwrG -----END PGP SIGNATURE----- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Re: Time Expiry Alogorithm??, (continued)
- Re: Time Expiry Alogorithm?? Andrew Farmer (Nov 21)
- Re: Time Expiry Alogorithm?? Georgi Guninski (Nov 22)
- Re: Time Expiry Alogorithm?? Florian Weimer (Nov 22)
- Re: Time Expiry Alogorithm?? Andrew Farmer (Nov 23)
- Re: Time Expiry Alogorithm?? Florian Weimer (Nov 23)
- Re: Time Expiry Alogorithm?? Andrew Farmer (Nov 23)
- Re: Time Expiry Alogorithm?? Florian Weimer (Nov 29)
- Re: Time Expiry Alogorithm?? Pavel Kankovsky (Nov 23)
- Re: Time Expiry Alogorithm?? Vincent Archer (Nov 22)
- Re: Time Expiry Alogorithm?? Gautam R. Singh (Nov 20)