[70399] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Cisco's Statement about IPR Claimed in draft-ietf-tcpm-tcpsecure

daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Thu May 13 13:52:31 2004

From: "Steven M. Bellovin" <smb@research.att.com>
To: Todd Vierling <tv@duh.org>
Cc: nanog@merit.edu
In-Reply-To: Your message of "Wed, 12 May 2004 21:51:53 EDT."
             <Pine.NEB.4.58.0405122134560.9034@server.duh.org> 
Date: Thu, 13 May 2004 13:48:27 -0400
Errors-To: owner-nanog-outgoing@merit.edu


In message <Pine.NEB.4.58.0405122134560.9034@server.duh.org>, Todd Vierling wri
tes:
>
>On Tue, 11 May 2004, David Krause wrote:
>
>: http://www.ietf.org/ietf/IPR/cisco-ipr-draft-ietf-tcpm-tcpsecure.txt
>
>The same document that fully ignores that port number randomness will
>severely limit the risk of susceptibility to such an attack? 

How many zombies would it take to search the port number space 
exhaustively?

		--Steve Bellovin, http://www.research.att.com/~smb



home help back first fref pref prev next nref lref last post