[13744] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Attacking networks using DHCP, DNS - probably kills DNSSEC

daemon@ATHENA.MIT.EDU (Peter Gutmann)
Tue Jul 1 09:23:35 2003

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Tue, 1 Jul 2003 21:01:40 +1200
From: pgut001@cs.auckland.ac.nz (Peter Gutmann)
To: cryptography@metzdowd.com, wsimpson@greendragon.com
Cc: cypherpunks@lne.com

William Allen Simpson <wsimpson@greendragon.com> writes:

>Would this be the DHCP working group that on at least 2 occasions when I was
>there, insisted that secure DHCP wouldn't require a secret, since DHCP isn't
>supposed to require "configuration"?

Given that their goal is zero-configuration networking, I can see that being
required to provide a shared secret would mess things up a bit for them.  It'd
be a bit like PKIX being asked to make ease-of-use a consideration in their
work, or OpenPGP to take X.509 compatibility into account.

Peter.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post