Opened 15 years ago

Closed 14 years ago

Last modified 14 years ago

#15 closed clarification (fixed)

Mandate protection against CBC mode timing attack

Reported by: pasi.eronen@… Owned by:
Priority: minor Milestone: DISCUSS
Component: draft-ietf-tls-rfc4346-bis Version: 02
Severity: Keywords:
Cc:

Description

http://www1.ietf.org/mail-archive/web/tls/current/msg00881.html

Page 22: Section 6.2.3.2 under implementation note:
This section suggests but does not mandate a measure to 
protect against timing attacks. We recommend that this 
measure be mandated.

Change History (3)

comment:1 Changed 15 years ago by ekr@…

  • Milestone set to Maybe never

I disagree with this. Hardware record implementations might use different tehcnqiues.

comment:2 Changed 14 years ago by ekr@…

  • Resolution set to fixed
  • Status changed from new to closed

comment:3 Changed 14 years ago by ekr@…

Based on list discussion, closing.

Note: See TracTickets for help on using tickets.