[tcpm] draft-ietf-tcpm-tcpsecure

Sally Floyd <floyd@icir.org> Tue, 20 April 2004 23:55 UTC

Received: from optimus.ietf.org (optimus.ietf.org [132.151.1.19]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id TAA08403 for <tcpm-archive@odin.ietf.org>; Tue, 20 Apr 2004 19:55:40 -0400 (EDT)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BG51f-0001lQ-DF for tcpm-archive@odin.ietf.org; Tue, 20 Apr 2004 19:51:39 -0400
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id i3KNpd1P006774 for tcpm-archive@odin.ietf.org; Tue, 20 Apr 2004 19:51:39 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BG4vY-0007fQ-TI for tcpm-web-archive@optimus.ietf.org; Tue, 20 Apr 2004 19:45:21 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id TAA07721 for <tcpm-web-archive@ietf.org>; Tue, 20 Apr 2004 19:45:19 -0400 (EDT)
Received: from ietf-mx.ietf.org ([132.151.6.1] helo=ietf-mx) by ietf-mx with esmtp (Exim 4.32) id 1BG4vX-0005g2-4V for tcpm-web-archive@ietf.org; Tue, 20 Apr 2004 19:45:19 -0400
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1BG4ub-0005cc-00 for tcpm-web-archive@ietf.org; Tue, 20 Apr 2004 19:44:22 -0400
Received: from optimus.ietf.org ([132.151.1.19]) by ietf-mx with esmtp (Exim 4.12) id 1BG4uO-0005ZR-00 for tcpm-web-archive@ietf.org; Tue, 20 Apr 2004 19:44:08 -0400
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BG4cr-00077F-3g; Tue, 20 Apr 2004 19:26:01 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BG4RV-0002Ib-1b for tcpm@optimus.ietf.org; Tue, 20 Apr 2004 19:14:17 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id TAA06154 for <tcpm@ietf.org>; Tue, 20 Apr 2004 19:14:16 -0400 (EDT)
Received: from ietf-mx.ietf.org ([132.151.6.1] helo=ietf-mx) by ietf-mx with esmtp (Exim 4.32) id 1BG4RT-0003BL-DA for tcpm@ietf.org; Tue, 20 Apr 2004 19:14:15 -0400
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1BG4Qc-00037b-00 for tcpm@ietf.org; Tue, 20 Apr 2004 19:13:22 -0400
Received: from cougar.icir.org ([192.150.187.76]) by ietf-mx with esmtp (Exim 4.12) id 1BG4Pl-00033H-00 for tcpm@ietf.org; Tue, 20 Apr 2004 19:12:29 -0400
Received: from cougar.icir.org (localhost [127.0.0.1]) by cougar.icir.org (8.12.9p1/8.12.8) with ESMTP id i3KNCMcb008483; Tue, 20 Apr 2004 16:12:22 -0700 (PDT) (envelope-from floyd@cougar.icir.org)
Message-Id: <200404202312.i3KNCMcb008483@cougar.icir.org>
To: Randall Stewart <rrs@cisco.com>
cc: tcpm@ietf.org
From: Sally Floyd <floyd@icir.org>
Date: Tue, 20 Apr 2004 16:12:22 -0700
Subject: [tcpm] draft-ietf-tcpm-tcpsecure
Sender: tcpm-admin@ietf.org
Errors-To: tcpm-admin@ietf.org
X-BeenThere: tcpm@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=unsubscribe>
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
List-Post: <mailto:tcpm@ietf.org>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=subscribe>
X-Spam-Checker-Version: SpamAssassin 2.60 (1.212-2003-09-23-exp) on ietf-mx.ietf.org
X-Spam-Status: No, hits=0.0 required=5.0 tests=AWL autolearn=no version=2.60

Randall -

Many thanks for the draft!  I haven't read it carefully yet, but I
have been worrying about this issue for HighSpeed TCP, where the
receive window is likely to be quite large.  The large receive
window makes it even easier for an attacker to guess a valid sequence
number for a reset.

It also wasn't on my radar when I wrote the HighSpeed TCP document,
now RFC 3649, so it is not mentioned in the Security Considerations
section of that document, in terms of a security risk related to 
higher congestion windows.

Regards,
- Sally

_______________________________________________
tcpm mailing list
tcpm@ietf.org
https://www1.ietf.org/mailman/listinfo/tcpm