From owner-freebsd-security@FreeBSD.ORG Fri Apr 11 11:28:19 2003 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8485A37B401 for ; Fri, 11 Apr 2003 11:28:19 -0700 (PDT) Received: from perrin.int.nxad.com (internal.ext.nxad.com [69.1.70.251]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2DDC943FBD for ; Fri, 11 Apr 2003 11:28:19 -0700 (PDT) (envelope-from sean@perrin.int.nxad.com) Received: by perrin.int.nxad.com (Postfix, from userid 1001) id 8E6F72106B; Fri, 11 Apr 2003 11:27:58 -0700 (PDT) Date: Fri, 11 Apr 2003 11:27:58 -0700 From: Sean Chittenden To: security@freebsd.org Message-ID: <20030411182758.GN79923@perrin.int.nxad.com> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="m0XfRaZG5aslkcJX" Content-Disposition: inline User-Agent: Mutt/1.4i X-PGP-Key: finger seanc@FreeBSD.org X-PGP-Fingerprint: 3849 3760 1AFE 7B17 11A0 83A6 DD99 E31F BC84 B341 X-Web-Homepage: http://sean.chittenden.org/ Subject: How often should an encrypted session be rekeyed? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 11 Apr 2003 18:28:19 -0000 --m0XfRaZG5aslkcJX Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Using OpenSSL, is there a preferred/recommended rate of rekeying an encrypted stream of data? Does OpenSSL handle this for developers behind the scenes? Does it even need to be rekeyed? Thanks in advance. -sc --=20 Sean Chittenden --m0XfRaZG5aslkcJX Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Comment: Sean Chittenden iD8DBQE+lwkt3ZnjH7yEs0ERArm8AJ44SFuUkjanHyM6UdPiGJ3gBeTlhgCgzRaa zjJGyx0moCAes5+zC6TFtUg= =FKvS -----END PGP SIGNATURE----- --m0XfRaZG5aslkcJX--