Great Circle Associates Firewalls
(December 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: encryption + backup of my firewall
From: Dave Roberts <djr @ saa-cons . co . uk>
Date: Fri, 13 Dec 1996 13:44:12 +0000 (GMT)
To: Danny Cox <dannyc @ gmap . leeds . ac . uk>
Cc: Firewalls @ GreatCircle . COM
In-reply-to: <2390 . 9612131014 @ gmap . leeds . ac . uk>

On Fri, 13 Dec 1996, Danny Cox wrote:

> can anyone enlighten me about how 
> 
> a) you can decrypt at all
> b) you can split up the process between different machines?

It's not so much of a decryption, but a brute force attack on the session
key.  You get your machine to try every different variation of 0's and
1's, for a number of bits, and keep working up.  This is why a larger bit
size of key is better, as it will withstand an attack for longer.

To split it up, you tell each machine to work on a different section of
the guesses.  For example, machine 1 goes from 0 to 0xffffffff and machine
2 goes from 0x100000000 to 0x1ffffffff.  I'm sure you get the idea.

--
Dave Roberts        | "Surfing the Internet" is a sad term for sad people.
Unix Systems Admin  | Get a board, find a beach, surf some REAL waves and
SAA Consultants Ltd | get a *real* life.
Plymouth, U.K.      | -=[For PGP Key, send mail with subject of "get pgp"]=-




References:
Indexed By Date Previous: Re: Hackering, Export restrictions
From: "R. Kevin McPeake" <kmpeake @ gwr . bausch . nl>
Next: Re: Providing Reverse DNS Info Via http-gw
From: dbrown @ seismo . CSS . GOV (Dan Brown)
Indexed By Thread Previous: encryption + backup of my firewall
From: Danny Cox <dannyc @ gmap . leeds . ac . uk>
Next: Proxy Server problem....
From: "Cihan Subasi (Garanti Tic)" <CihanS @ garanti . com . tr>

Google
 
Search Internet Search www.greatcircle.com