1996-03-28 - Re: HP & Export of DCE

Header Data

From: Howard Melman <melman@osf.org>
To: perry@piermont.com
Message Hash: 46e1ed53a91c6cf3359dae38febaadaf33b05a03c03dcc1baea31ea9576947b7
Message ID: <9603272129.AA03193@absolut.osf.org.osf.org>
Reply To: <199603271619.LAA08716@homeport.org>
UTC Datetime: 1996-03-28 14:18:01 UTC
Raw Date: Thu, 28 Mar 1996 22:18:01 +0800

Raw message

From: Howard Melman <melman@osf.org>
Date: Thu, 28 Mar 1996 22:18:01 +0800
To: perry@piermont.com
Subject: Re: HP & Export of DCE
In-Reply-To: <199603271619.LAA08716@homeport.org>
Message-ID: <9603272129.AA03193@absolut.osf.org.osf.org>
MIME-Version: 1.0
Content-Type: text/plain



On Wed Mar 27, 1996, Perry E. Metzger wrote:

> Adam Shostack writes:
> > I wasn't aware there were multiple things masquerading under the name
> > Secure RPC.  In any event, does the crypto in DCE stand up to the
> > LaMacchia/Odlyzko attacks?
> 
> They are attacks against Diffie-Hellman. I don't know if DCE uses D-H
> in a similar manner. The main problem was too small a (fixed) modulus.

It doesn't.  DCE uses Kerberos v5.

Howard

-- 

Howard R. Melman              ___   ___   ___            Voice: 617-621-8989
Open Software Foundation     /  /  /__   /__               Fax: 617-621-2782
11 Cambridge Center         /__/  ___/  /              mailto:melman@osf.org
Cambridge, MA  02142                             http://www.osf.org/~melman/





Thread