AW: : [DSA]: Generation of nonces
"Beck01, Wolfgang" <[email protected]> Tue, 28 Mar 2006 17:36:47 +0200
| Newsgroups | gmane.ietf.aaa |
|---|---|
| Message-ID | <[email protected]> |
Miguel wrote: > The RADIUS draft was re-issued recently, and already tried to address > this issue by providing an known algorithm for creating and verifying > nonces. This hasn't been revised by the Security ADs yet, so it is > unknown at this stage if this clears that discuss or not. But just in > case it clears it, we may need to add similar wording to the Diameter > SIP application. People didn't like that algorithm too much. The conclusion at the RADEXT meeting in Dallas was to remove the RADIUS/Diameter client nonce generation entirely. Without that mode, the security issue vanishes. The AAA server itself can check the nonce validity using the scheme proposed in RfC 2617 3.2.1 As RfC 2617 uses the challenge message not only to convey the nonce but some capability information (like supported digest algorithms), AAA client nonce generation requires additional manual configuration. Removing that mode would improve the drafts. Wolfgang -- T-Systems Next Generation IP Services and Systems +49 6151 937 2863 Am Kavalleriesand 3 64295 Darmstadt Germany