From owner-freebsd-security@FreeBSD.ORG Fri Apr 18 13:28:23 2003 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 619AE37B401 for ; Fri, 18 Apr 2003 13:28:23 -0700 (PDT) Received: from storm.FreeBSD.org.uk (storm.FreeBSD.org.uk [194.242.157.42]) by mx1.FreeBSD.org (Postfix) with ESMTP id 708AF43F3F for ; Fri, 18 Apr 2003 13:28:22 -0700 (PDT) (envelope-from mark@grondar.org) Received: from storm.FreeBSD.org.uk (Ugrondar@localhost [127.0.0.1]) by storm.FreeBSD.org.uk (8.12.7/8.12.7) with ESMTP id h3IKS2SQ089719; Fri, 18 Apr 2003 21:28:02 +0100 (BST) (envelope-from mark@grondar.org) Received: (from Ugrondar@localhost)h3IKS2pT089718; Fri, 18 Apr 2003 21:28:02 +0100 (BST) X-Authentication-Warning: storm.FreeBSD.org.uk: Ugrondar set sender to mark@grondar.org using -f Received: from grondar.org (localhost [127.0.0.1])h3IKShQ5008767; Fri, 18 Apr 2003 21:28:43 +0100 (BST) (envelope-from mark@grondar.org) From: Mark Murray Message-Id: <200304182028.h3IKShQ5008767@grimreaper.grondar.org> To: Sean Chittenden In-Reply-To: Your message of "Fri, 11 Apr 2003 11:27:58 PDT." <20030411182758.GN79923@perrin.int.nxad.com> Date: Fri, 18 Apr 2003 21:28:43 +0100 Sender: mark@grondar.org X-Mailman-Approved-At: Fri, 18 Apr 2003 14:16:39 -0700 cc: security@freebsd.org Subject: Re: How often should an encrypted session be rekeyed? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 18 Apr 2003 20:28:23 -0000 Sean Chittenden writes: > Using OpenSSL, is there a preferred/recommended rate of rekeying an > encrypted stream of data? Does OpenSSL handle this for developers > behind the scenes? Does it even need to be rekeyed? "Depends". I recommend the O'Reilly book on OpenSSL for this and related OpenSSL programming docs. ISBN: 0-596-00270-X M -- Mark Murray iumop ap!sdn w,I idlaH