Great Circle Associates Firewalls
(October 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Secure Slip Dial in ??
From: lavondes @ tidtest . total . fr (Michel Lavondes)
Date: Wed, 26 Oct 94 18:54:17 GMT
To: firewalls @ greatcircle . com
In-reply-to: <9410261354 . AA01653 @ tis . com>; from "Marcus J Ranum" at Oct 26, 94 9:57 am
Reply-to: lavondes @ tidtest . total . fr

Marcus J Ranum wrote :
> 
> Robertson, Paul writes:
> [snip]
> > Also, does anyone have any info on what algorithm they use?
> 
> 	Their clock-sync algorithm is patented, but should be intuitively
> obvious. Looks like they just DES encrypt the clock modulo some granularity
> with a secret key that is stored on the card. The server performs the same
> encryption using its clock, then applies a skew based on the last time the
> card successfully authenticated, with a sliding window to allow for greater
> drift latitude over time. Just a guess, though.
> 
I don't think it's DES, since they can (and do) export it, but from what they
told me, you guessed right about the rest.
-- 
Michel Lavondes
E-Mail : lavondes @
 tidtest .
 total .
 fr
         lavondes%tidtest .
 total .
 fr @
 pegase .
 total .
 fr (if previous addr rejected)
Tel : +33-1-4135-4198
Fax : +33-1-4135-4189


References:
Indexed By Date Previous: viral email
From: quent @ Intellistor . COM (Quentin Johnson)
Next: RE: Covert Cahnnels (hopefully the clincher)
From: "Johnson-Bryden, Ian" <IJB @ saicuk . co . uk>
Indexed By Thread Previous: Re: Secure Slip Dial in ??
From: Marcus J Ranum <mjr @ tis . com>
Next: Re: Secure Slip Dial in ??
From: Brent Chapman <brent @ miles . greatcircle . com>

Google
 
Search Internet Search www.greatcircle.com