Re: human failings question

2000-10-11 Thread Damien Miller
dom" numbers. Do they use hardware of software? There would be some interesting attack possibilities if they were to use LCGs with small states, but surely they'd be smarter than that ;) -d -- | ``The power of accurate observation is | Damien Miller <[EMAIL PROTECTED]> |

Re: Comcast@Home bans VPNs

2000-08-27 Thread Damien Miller
You can do this using ppp over stunnel[1], a SSL wrapper tool. -d [1] http://www.stunnel.org/ -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.mindrot.org/ | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)

Re: FBI announcement on email search 'Carnivore'

2000-07-13 Thread Damien Miller
traffic, not content). I find it difficult to believe that NAPs aren't using a switched architecture, which should make this sort of thing much more difficult (barring ARP tricks). -d -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.m

Re: FBI involves itself in Verio merger

2000-07-07 Thread Damien Miller
implicitly illegal? --d -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.mindrot.org/ | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)

Re: secret-sharing code

2000-03-31 Thread Damien Miller
keep old hardware / software around to recoved old data. A cleaned up secsplit which uses /dev/urandom for randomness can be found at http://www.mindrot.org/misc/secsplit-1.2.tar.gz -d -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.mindrot.org/ | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)

Predictable IVs

2000-02-27 Thread Damien Miller
/dev/random as the IV, but this may be overkill. Would the system be weakened if I was to use just the block number? Regards, Damien Miller -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.mindrot.org/ | Email: [EMAIL PROTECTED] (home) -

Re: IP: IETF considers building wiretapping into the Internet

1999-10-15 Thread Damien Miller
s mean they can wiretap Australian conversations > as well? "They" have been able to do this for years. Regards, Damien Miller - -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.mindrot.org/ | Email: [EMAIL PROTECTED] (home) -or-

Re: Radicchio PKI standards group for mobile phones

1999-10-03 Thread Damien Miller
ralia Post's failed KeyPOST CA did this too. I suspect part of the reason for their failure was avoidance by clued-in users. Damien - -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Email: [EMAIL PROTE

Re: IBM to built crypto-on-a-chip into all its PCs

1999-09-30 Thread Damien Miller
chip by the very same vendor. You don't see the inconsistency? Regards, Damien Miller - -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work) -BEGIN PG

Re: IBM to built crypto-on-a-chip into all its PCs

1999-09-29 Thread Damien Miller
ve compromised the system. This is doubly interesting given you choice of operating system (as mentioned in your .sig). Regards, Damien Miller - -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Emai

Re: linux-ipsec: Re: semantics of /dev/{u}random

1999-08-21 Thread Damien Miller
and number of bits credited to the KRNG are all user configurable. There is an alpha version at: http://toad.ilogic.com.au/~dmiller/files/audio-entropyd-0.0.0.tar.gz Regards, Damien Miller -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - ht

Re: Proposal (was Summary re: /dev/random)

1999-08-03 Thread Damien Miller
Regards, Damien Miller -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)

Re: linux-ipsec: Re: Summary re: /dev/random

1999-08-03 Thread Damien Miller
em - if the > randomness source starts spewing after only getting 40 bits of entropy > then it's wide open to attack, regardless of how much whitening it does on > the output. Good point - it makes sense to modify the random driver to not output until a lower bound of entropy has been collected. Regards, Damien Miller -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)

RE: Could Open Source Software Help Prevent Sabotage? (fwd)

1999-06-22 Thread Damien Miller
riginal source helps quite a bit. Regards, Damien Miller -- | "Bombay is 250ms from New York in the new world order" - Alan Cox | Damien Miller - http://www.ilogic.com.au/~dmiller | Email: [EMAIL PROTECTED] (home) -or- [EMAIL PROTECTED] (work)