[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: IVs, summary of discussion



Perry,

	Yes, OFB is so trivially susceptible to manipulation, and the
TCP checksum admits such trivial invariant transformations, that the
combination of the two is (should be?) unacceptable.  However, one
could define an IPSP mode operation that combined encryption and
integrity checking, so that the decoupling was not an "accepted" mode.
Still, my earlier comments, and those of Steve Bellovin, about why OFB
doesn't seem to matter here, are more to the point.

Steve


Follow-Ups: References: