Re: Last Call: 'Key Change Strategies for TCP-MD5' to Informational RFC (draft-bellovin-keyroll2385)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Tue, 03 Oct 2006 01:18:52 +0200, Jefsey_Morfin <jefsey@xxxxxxxxxx>
wrote:

> I like it. Any security issue in having the same content sent twice 
> with old and then new key?

Probably not a problem for an authentication-only key.  If it were a
secrecy key, there'd be some cause for concern, though using a different
IV would mitigate it somewhat.


		--Steven M. Bellovin, http://www.cs.columbia.edu/~smb

_______________________________________________

Ietf@xxxxxxxx
https://www1.ietf.org/mailman/listinfo/ietf

[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Fedora Users]