Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 06 Jun 1997 12:09:35 -0700 (PDT)
From:      Simon Shapiro <Shimon@i-Connect.Net>
To:        Vadim Kolontsov <vadim@tversu.ac.ru>
Cc:        security@FreeBSD.ORG
Subject:   Re: sequence predictability (fwd)
Message-ID:  <XFMail.970606120935.Shimon@i-Connect.Net>
In-Reply-To: <19970606091536.08429@tversu.ac.ru>

next in thread | previous in thread | raw e-mail | index | archive | help

Hi Vadim Kolontsov;  On 06-Jun-97 you wrote: 
> On Thu, Jun 05, 1997 at 09:26:31AM -0400, Robert N Watson wrote:
> > 
> > Having seen this post on the ntbugtraq mailing list, I was wondering
> how
> > preditcabkle sequence numbers in FreeBSD TCP connections were..  And is
> > this an accurate measurement?
> > 
> > Thanks
> > 
> 
>   How about implementing random choosing of start TCP sequence number?
> Of course, it need crypotographicaly strong random numbers generator..
> I think it will help a lot against TCP seq.numbers predictability
> attack.

Good Idea.  /dev/rand, setup properly produces very good results.

Simon



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?XFMail.970606120935.Shimon>