diff options
author | Damien Bergamini <damien@cvs.openbsd.org> | 2009-04-14 17:43:27 +0000 |
---|---|---|
committer | Damien Bergamini <damien@cvs.openbsd.org> | 2009-04-14 17:43:27 +0000 |
commit | ed3a64d9765d596b326e1d8ef28e5c975a742929 (patch) | |
tree | 96381b33f3194395cb8246e526df6db7cd502e3a /usr.sbin/cron | |
parent | a4bc840dcf978b5e5bef7142406a29f963e43080 (diff) |
do not cache the computed TTAK unless MIC has been verified.
this prevents an attacker from changing the TTAK (DoS attack) by
sending a frame with a large TSC but with a bad ICV and/or MIC.
now an attacker can only invalidate the cached TTAK.
Diffstat (limited to 'usr.sbin/cron')
0 files changed, 0 insertions, 0 deletions