[Cryptography] What's a Plausible Attack On Random Number Generation?

Jerry Leichter leichter at lrw.com
Fri Nov 1 10:21:14 EDT 2013


On Nov 1, 2013, at 7:04 AM, Yaron Sheffer <yaronf.ietf at gmail.com> wrote:
> It sounds like a quick addition to DHCP - an extension that gets you 256 bits from the server, would solve 99% of the problem we have with embedded devices. It will not be sufficient for high-security environments, because an attacker might be listening on the local LAN....
Ahem.  This is *exactly* the kind of reasoning I started this thread to investigate.  (Though I certainly agree that a *single* DHCP packet containing a random bit string is easily attacked.)
                                                        -- Jerry



More information about the cryptography mailing list