Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 6 Jun 1997 09:15:36 +0400
From:      Vadim Kolontsov <vadim@tversu.ac.ru>
To:        security@FreeBSD.ORG
Subject:   Re: sequence predictability (fwd)
Message-ID:  <19970606091536.08429@tversu.ac.ru>
In-Reply-To: <Pine.SUN.3.93l.970605092540.9675A-100000@apriori.cc.cmu.edu>; from Robert N Watson on Thu, Jun 05, 1997 at 09:26:31AM -0400
References:  <Pine.SUN.3.93l.970605092540.9675A-100000@apriori.cc.cmu.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, Jun 05, 1997 at 09:26:31AM -0400, Robert N Watson wrote:
> 
> Having seen this post on the ntbugtraq mailing list, I was wondering how
> preditcabkle sequence numbers in FreeBSD TCP connections were..  And is
> this an accurate measurement?
> 
> Thanks
> 

  How about implementing random choosing of start TCP sequence number?
Of course, it need crypotographicaly strong random numbers generator..
I think it will help a lot against TCP seq.numbers predictability attacks..

Best regards
sb
--------------------------------------------------------------------------
Vadim Kolontsov                                          SysAdm/Programmer 
Tver Regional Center of New Information Technologies          Networks Lab




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19970606091536.08429>