Re: MS Chap v2 analysis

From: Peter J. Holzer (hjpat_private)
Date: Thu Jul 08 1999 - 02:41:18 PDT

  • Next message: Nick_: "Re: BUGTRAQ:// Re: PGP 6.5.1 has been released"

    --da4uJneut+ArUgXk
    Content-Type: text/plain; charset=us-ascii
    
    On 1999-07-07 18:15:37 -0400, Burton Rosenberg wrote:
    > the parallel structure of generating the challenge
    > response (function ChallengeResponse() in
    > www.ietf.org/internet-drafts/draft-ietf-pppext-mschap-v2-03.tex) cuts
    > down the strength of the PasswordHash from 16 to 14 bytes.
    
    7 Bytes. If you compute DES_X(C) for all 2^56 values of X, you will
    discover both P1 and P2 (and P3, too, of course).
    
    	hp
    
    --
       _  | Peter J. Holzer             | Where do you want your keys
    |_|_) | Sysadmin WSR / Obmann LUGA  | to go today?
    | |   | hjpat_private               |     -- Tom Perrine <tepat_private>
    __/   | http://wsrx.wsr.ac.at/~hjp/ |        on bugtraq 1999-04-20
    
    --da4uJneut+ArUgXk
    Content-Type: application/pgp-signature
    
    -----BEGIN PGP SIGNATURE-----
    Version: 2.6.3ia
    
    iQDQAwUBN4RyPlLjemazOuKpAQFO2AXTBvylEDDMYzGF2eyYd1DwO3Gs6snWKptA
    +xBA1NHkIjfZTOzYsDorC7Bs7fmu9fmVBffY8mMCPytZzKc/5e7DmDQPFq09zm/W
    rh1R8VAXh1MJVxG6SHXknAIIWgdlsoZG+mSRK6bIPjzGXyfz5wsHxS/CECAk32qa
    7GhxyX8LUVZu1u+RwrkLd7BVh2OTud9bQE11JqQbq9JlZ9kz3WX7TYUQngiYaQP4
    iHuJ+b5T38goEamL9euf4HnqCQ==
    =uIms
    -----END PGP SIGNATURE-----
    
    --da4uJneut+ArUgXk--
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:51:50 PDT