Re: Cryptanalysis of SecurID (ACE/Server)

New Message Reply About this list Date view Thread view Subject view Author view

Perry E. Metzger (perry@piermont.com)
Thu, 01 Oct 1998 10:12:24 -0400


"John Moore" writes:
> Okay,
> How hard is it to hijack a TCP session these days? Say that it is between
> whatever client and a firewall?

It depends on the OSes being run on each. The difficulty ranges from
trivial to moderately difficult. In no instance is it impossible if
you are not using something like IPSec.

> BTW... the objections to SecureID presumably do not apply to dial-in
> sessions onto a "secure" (I recognize the non-absoluteness of this) network.

You honestly think that dial-in can't be interfered with?

Perry


New Message Reply About this list Date view Thread view Subject view Author view

 
All trademarks and copyrights are the property of their respective owners.

Other Directory Sites: SeekWonder | Directory Owners Forum

The following archive was created by hippie-mail 7.98617-22 on Sat Apr 10 1999 - 01:15:18