[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: eliminate AH



Andrade Software & Networking
Andrad@Netcom.Com
X-Mailer: ELM [version 2.4 PL23]
MIME-Version: 1.0
Content-Type: text/plain; charset=US-ASCII
Content-Transfer-Encoding: 7bit
Content-Length: 944       

You may also be interested in Phil Rogaway's comments on IPSEC.
It's a couple of years old now but it is probably still relevant.
http://wwwcsif.cs.ucdavis.edu/~rogaway/papers/
draft-rogaway-ipsec-comments-00.txt

- Alex

> 
> > From: Steven Bellovin <smb@research.att.com>
> >       *) I don't like meaningless cryptography.  Almost two years
> >       ago, I posted a field-by-field analysis.  I showed that the IP
> >       header fields are either irrelevant for security purposes,
> >       changed en route (and hence not protectable), or are or should
> >       be bound to the security association, and hence need not be
> >       authenticated on a per-packet basis.
> >
> I don't remember this message, and cannot find it.  Could you please
> point us to a date (or even a month), so that I can find it in my
> archives?
> 
> 


-- 

Alex Alten
P.O. Box 11406
Pleasanton, CA  94588
USA

Andrade@Netcom.Com
(510) 417-0159   Fax/Voice



References: