[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: replay attacks
>> Date: Wed, 13 Sep 95 08:55:40 EDT
>> From: atkinson@itd.nrl.navy.mil (Ran Atkinson)
>> To: ipsec@ans.net
>> Subject: replay attacks
>>
>> As to adding sequence numbers to AH, there remain 16 bits of reserved
>> space in the AH header. Would it be sensible to have a 16 bit sequence
>> number there?
Ran,
How long do you want to be certain that all the packets are different, so
that you will not have to change keys to avoid a cut-and-paste attack?
-Rob-