Penetration Testing mailing list archives

RE: A tool for crafting ESP packets


From: Jose Nazario <jose () biocserver BIOC cwru edu>
Date: Wed, 28 Nov 2001 22:47:23 -0500 (EST)

On Tue, 27 Nov 2001, amok wrote:

Very rudimentary example:

<IP Header>
<ESP Start>
Security Parameters Index (SPI) (32 bit)
Sequence Number (32 bit)
Encrypted Payload (Variable length)
<ESP End>

you forgot the trailer for ESP. though forgetting it and seeing if you can
disrupt/DoS a VPN with broken ESP frames would be interesting.

____________________________
jose nazario                                                 jose () cwru edu
                     PGP: 89 B0 81 DA 5B FD 7E 00  99 C3 B2 CD 48 A0 07 80
                                       PGP key ID 0xFD37F4E5 (pgp.mit.edu)


----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/


Current thread: