Firewall Wizards mailing list archives

Re: Possibility of replay attacks in manually keyed IPsec?


From: Chris Cappuccio <chris () empnet com>
Date: Sun, 5 Dec 1999 23:34:23 -0800 (PST)

On Sat, 4 Dec 1999, Stefan Norberg wrote:

 | Mikael,
 | IPSec does NOT use fixed encryption keys. 

Yes it can, this is called manual management, manual techniques, and
manual cryptographic key management throughout the RFC which you mention.

 | RFC2401 provides an excellent overview of the IPSec protocols.
 | 

Furthermore, the RFC states that IPSec implementations are required to
implement both manual and automatic key exchange.

--
"One World, one Web, one Program" - Microsoft promotional ad 
"Ein Volk, ein Reich, ein Fuhrer" - Adolf Hitler 



Current thread: