Firewall Wizards mailing list archives

Re: CERT vulnerability note VU# 539363 (fwd)


From: daw () mozart cs berkeley edu (David Wagner)
Date: 18 Oct 2002 20:07:55 GMT

Mike Frantzen  wrote:
The problem with a hashed state table is that hash tables are very easy
to attack.

This is only true if you use an unkeyed hash function.
If you use a keyed hash function, with the key chosen randomly
on boot and kept secret, this is no longer true.
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: