"ISAKMP" flaws?

Paul Hoffman paul.hoffman at vpnc.org
Tue Nov 15 16:06:12 EST 2005


At 2:29 PM -0500 11/15/05, Steven M. Bellovin wrote:
>I mostly agree with you, with one caveat: the complexity of a spec can
>lead to buggier implementations.

Well, then we fully agree with each other. Look at the message 
formats used in the protocols they have attacked successfully so far.

Humorously, security folks seem to have ignored this when designing 
our protocols.

--Paul Hoffman, Director
--VPN Consortium

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com



More information about the cryptography mailing list