Re: [Last-Call] [secdir] Secdir last call review of draft-ietf-dnsop-server-cookies-04

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



SYN cookies in both Linux and FreeBSD uses siphash.

* FreeBSD: https://svnweb.freebsd.org/base?view=revision&revision=253210 (since 2013)
* Linux: https://github.com/torvalds/linux/commit/fe62d05b295bde037fa324767674540907c89362#diff-14feef60c3dbcf67539f089de04546c907233cbae09e1b2dd2c2bc6d6eae4416 (since 2017)

I believe that the SYN cookies have exactly the same properties as DNS cookies.

Ondrej
--
Ondřej Surý (He/Him)
ondrej@xxxxxxx

> On 2. 12. 2020, at 22:15, Eric Rescorla <ekr@xxxxxxxx> wrote:
> 
> Well hash tables are an application with somewhat different security properties than MACs, so I don't think this is dispositive.
> 

-- 
last-call mailing list
last-call@xxxxxxxx
https://www.ietf.org/mailman/listinfo/last-call




[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux