[Openswan dev] Eric Rescorla: [saag] Bad day at the hash function factory

Michael Richardson mcr at sandelman.ottawa.on.ca
Sat Aug 21 13:51:04 CEST 2004


Note that HMAC-MD5 (which is two cycles of MD5, with some adjusting) is
what is used in IPsec. We have no information about whether or not
HMAC-MD5 is vulnerable.

We do know that one end point must be involved in order to generate M
and M'. It is possible for a third party to construct the second
messages.

-------------- next part --------------
An embedded message was scrubbed...
From: Eric Rescorla <ekr at rtfm.com>
Subject: [saag] Bad day at the hash function factory
Date: Wed, 18 Aug 2004 12:09:09 -0700
Size: 6266
Url: http://lists.openswan.org/pipermail/dev/attachments/20040821/0194cee5/1009.eml


More information about the Dev mailing list