Re: [quicwg/base-drafts] CID's should be compared in constant time (#2477)

MikkelFJ <> Sat, 16 February 2019 06:25 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id 866C7129619 for <>; Fri, 15 Feb 2019 22:25:43 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -6.383
X-Spam-Status: No, score=-6.383 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_IMAGE_ONLY_24=1.618, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (1024-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id FSe0A-Vjh2ps for <>; Fri, 15 Feb 2019 22:25:41 -0800 (PST)
Received: from ( []) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by (Postfix) with ESMTPS id BC6441295D8 for <>; Fri, 15 Feb 2019 22:25:41 -0800 (PST)
Date: Fri, 15 Feb 2019 22:25:40 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=pf2014; t=1550298341; bh=2gsZshb34T1DcXH7conpDlK/aHdDWxeoOmKh/Z1Dq88=; h=Date:From:Reply-To:To:Cc:In-Reply-To:References:Subject:List-ID: List-Archive:List-Post:List-Unsubscribe:From; b=HmxLiCPoX2nKNbAwyhA/VvAdJ0AR/FppiowzYJx8CS+Hf1PU02ZK+L8lJCyuUzuzI a5uaMzBNwyesIdZtegeGQOAa7yP4WrS1MWyaAVXV6Qek002/+WSozOcccbMDRF1RF4 fb6tZ7UaTsCUlaRomYyalwe0oRhH6CHjTZDRh1Ho=
From: MikkelFJ <>
Reply-To: quicwg/base-drafts <>
To: quicwg/base-drafts <>
Cc: Subscribed <>
Message-ID: <quicwg/base-drafts/issues/2477/>
In-Reply-To: <quicwg/base-drafts/issues/>
References: <quicwg/base-drafts/issues/>
Subject: Re: [quicwg/base-drafts] CID's should be compared in constant time (#2477)
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_5c67ace4e2ace_34b33fe3b98d45b41010d7"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: mikkelfj
X-GitHub-Recipient: quic-issues
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
Archived-At: <>
X-Mailman-Version: 2.1.29
List-Id: Notification list for GitHub issues related to the QUIC WG <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Sat, 16 Feb 2019 06:25:44 -0000

I’m not sure it is worth reqiiring. Then we should also say constant time hash tables should br salted.

Note that popular Splay trees are vulnerable to manipulation.

Disabling Reset could be a recommendation if under attack.

You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub: