[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: replay attacks



>> Date: Wed, 13 Sep 95 08:55:40 EDT
>> From: atkinson@itd.nrl.navy.mil (Ran Atkinson)
>> To: ipsec@ans.net
>> Subject: replay attacks
>>
>>   As to adding sequence numbers to AH, there remain 16 bits of reserved
>> space in the AH header.  Would it be sensible to have a 16 bit sequence
>> number there?

Ran,

How long do you want to be certain that all the packets are different, so
that you will not have to change keys to avoid a cut-and-paste attack?

-Rob-