[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: pf_key comments



In message <199701031956.OAA01250@thunk.orchard.medford.ma.us>, Bill Sommerfeld writes:
> 
> my understanding is that, for best security, the IV should be
> different for each packet.

Question:

Does the IV have to be *unpredictably* different, or just different?

(The NRL code, for example, simply increments the IV after each packet).

-- 
C. Harald Koch
chk@border.com


References: