Re: SNMPv3 security

Wes Hardaker <[email protected]> Fri, 08 Aug 2003 09:40:18 -0700
Newsgroups gmane.ietf.snmpv3
Organization Sparta
Message-ID <[email protected]>
>>>>> On Thu, 7 Aug 2003 11:18:34 -0700, "Randy Presuhn" <[email protected]> said:

Randy> ???  Key lifetime is under control of the user / security
Randy> administrator.  If you want to update your keys every ten
Randy> minutes, you can, though it doesn't address the more
Randy> fundamental question of the strength of the crypto algorithm

This has been discussed several times.  Just one more point that I
think Eric is trying to get across but most people are missing: Having
the key lifetime controlled by the manager means that if the box gets
disconnected from the network then the key can't be updated.  This is
important if the box contains critical data.  An attacker that can
sever the network connection (a simple DoS attack would suffice for
this) between the manager and the agent can then spend all the time
the needs to figure out the keys and access the contents of the box.
This is a big difference between other protocols (kerberos, IKE, etc)
that hold a key to a given lifetime at the box itself.  IE, after a
period of time the box itself refuses to reuse the key in question.
Eric's concern in this area is valid, IMHO, but is also nothing new.
Still, I think many people are missing this point.
-- 
Wes Hardaker
Sparta