nanog mailing list archives

RE: OpenSSL


From: alex () yuriev com
Date: Tue, 18 Mar 2003 11:57:05 -0500 (EST)


MPLS (on its own) gives you jack-squat in terms of delay and jitter. All the
clever queuing can do it for you - but then it can for IP (because its the
same thing!).

As Eric stated in his previous message, I have not realized that his point
was that even one machine that has an ethernet connection directly to the
SSL-enabled service, the SSL timing attack is possible. Of course, such
setup is the most common way of connecting systems with SSL-enabled services
to the internet.

Alex


Current thread: