IETF RFC 7474 PDF

IETF RFC 7474 PDF

Name:
IETF RFC 7474 PDF

Published Date:
04/01/2015

Status:
[ Active ]

Description:

Security Extension for OSPFv2 When Using Manual Key Management

Publisher:
Internet Engineering Task Force

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$10.2
Need Help?

The current OSPFv2 cryptographic authentication mechanism as defined in RFCs 2328 and 5709 is vulnerable to both inter-session and intrasession replay attacks when using manual keying. Additionally, the existing cryptographic authentication mechanism does not cover the IP header. This omission can be exploited to carry out various types of attacks.

This document defines changes to the authentication sequence number mechanism that will protect OSPFv2 from both inter-session and intrasession replay attacks when using manual keys for securing OSPFv2 protocol packets. Additionally, we also describe some changes in the cryptographic hash computation that will eliminate attacks resulting from OSPFv2 not protecting the IP header.


Edition : 15
File Size : 1 file , 22 KB
Number of Pages : 14
Published : 04/01/2015

History


Related products

IETF RFC 2212
Published Date: 09/01/1997
Specification of Guaranteed Quality of Service
$10.8
IETF RFC 3454
Published Date: 12/01/2002
Preparation of Internationalized Strings ("stringprep")
$18.9
IETF RFC 3915
Published Date: 09/01/2004
Domain Registry Grace Period Mapping for the Extensible Provisioning Protocol (EPP)
$11.4
IETF RFC 2048
Published Date: 11/01/1996
Multipurpose Internet Mail Extensions (MIME) Part Four: Registration Procedures
$10.8

Best-Selling Products

Manual of Cross-Connection Control
Published Date: 12/01/1993