Re: Re: RR checks to avoid DoS attacks
Bill Sommerfeld <[email protected]>
| Newsgroups | gmane.ietf.mobike |
|---|---|
| Message-ID | <[email protected]> |
> If I am hand-waving in characterizing this particular attack you > articulated as unrealistic, please make that case. Thanks. I believe that it is imprudent to assume in the design of mobike that attackers will only have access to non-disposable, non-anonymous credentials. This is unrealistic given the widespread and growing use of low cost disposable credentials for use with cellular phones, long distance service, internet access, credit/gift cards, etc.; I also believe that it will not be possible in general for an entity to tell whether its peer is using a disposable credential and treat it differently as a result. - Bill