Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Jimmy Hess
On Wed, Dec 15, 2010 at 7:28 AM, mikea wrote: > More to the point, I think it wouldn't be an NDA, but a security > classification on the knowledge of the backdoors, and probably one not > subject to automatic downgrading. Someone working on a classified project or having access to classified info

RE: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Stefan Fouant
> -Original Message- > From: Mike. [mailto:the.li...@mgm51.com] > Sent: Wednesday, December 15, 2010 3:29 PM > To: nanog@nanog.org > Subject: Re: Alleged backdoor in OpenBSD's IPSEC implementation. > > On 12/15/2010 at 10:25 AM Bryan Irvine wrote: > | > |

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Mike.
Message- |> |> > From: mikea [mailto:mi...@mikea.ath.cx] |> |> > Sent: Wednesday, December 15, 2010 8:28 AM |> |> > To: nanog@nanog.org |> |> > Subject: Re: Alleged backdoor in OpenBSD's IPSEC implementation. |> [snip] |>  = |&g

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Eitan Adler
> See Ken Thompson's classic paper "Reflections on trusting trust", Also see David A Wheeler's "Countering Trusting Trust through Diverse Double-Compiling" -- Eitan Adler

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread sthaug
> > More to the point, I think it wouldn't be an NDA, but a security > > classification on the knowledge of the backdoors, and probably one not > > subject to automatic downgrading. > > Please pardon my ignorance on the matter as I am not involved in any way > with Open Source development, but it

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Bryan Irvine
mi...@mikea.ath.cx] > |> > Sent: Wednesday, December 15, 2010 8:28 AM > |> > To: nanog@nanog.org > |> > Subject: Re: Alleged backdoor in OpenBSD's IPSEC implementation. > [snip] >  = > > > Another relevant comment from the OpenBSD tech mailing l

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Mike.
nog@nanog.org |> > Subject: Re: Alleged backdoor in OpenBSD's IPSEC implementation. [snip] = Another relevant comment from the OpenBSD tech mailing list: http://www.marc.info/?l=openbsd-tech&m=129237675106730&w=2

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Ben
On Wed, Dec 15, 2010 at 9:00 AM, Stefan Fouant < sfou...@shortestpathfirst.net> wrote: > > -Original Message- > > From: mikea [mailto:mi...@mikea.ath.cx] > > Sent: Wednesday, December 15, 2010 8:28 AM > > To: nanog@nanog.org > > Subject: Re:

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Greg Whynott
update.. hoax it appears. http://www.itworld.com/open-source/130820/openbsdfbi-allegations-denied-named-participant -- This message and any attachments may contain confidential and/or privileged information for the sole use of the intended recipient. Any review or distribution by anyone ot

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread 'mikea'
On Wed, Dec 15, 2010 at 12:00:56PM -0500, Stefan Fouant wrote: > > -Original Message- > > From: mikea [mailto:mi...@mikea.ath.cx] > > Sent: Wednesday, December 15, 2010 8:28 AM > > To: nanog@nanog.org > > Subject: Re: Alleged backdoor in

RE: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread Stefan Fouant
> -Original Message- > From: mikea [mailto:mi...@mikea.ath.cx] > Sent: Wednesday, December 15, 2010 8:28 AM > To: nanog@nanog.org > Subject: Re: Alleged backdoor in OpenBSD's IPSEC implementation. > > > > > Someone is confusing FBI with NSA, methinks.

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-15 Thread mikea
On Tue, Dec 14, 2010 at 11:51:24PM -0800, Michael J Wise wrote: > On Dec 14, 2010, at 9:56 PM, Ken Chase wrote: > > On Tue, Dec 14, 2010 at 09:39:02PM -0800, Chaim Rieger said: > >> Does anyone remember the last time a law enforcement agency had > >> someone sign a 10 year NDA on a backdoor? > >>

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-14 Thread Michael J Wise
On Dec 14, 2010, at 9:56 PM, Ken Chase wrote: > On Tue, Dec 14, 2010 at 09:39:02PM -0800, Chaim Rieger said: >> Does anyone remember the last time a law enforcement agency had >> someone sign a 10 year NDA on a backdoor? >> >> "Oh, times up, I can post it on Facebook now. Cool." > > 22:42 <@smar

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-14 Thread Ken Chase
On Tue, Dec 14, 2010 at 09:39:02PM -0800, Chaim Rieger said: >Does anyone remember the last time a law enforcement agency had >someone sign a 10 year NDA on a backdoor? > >"Oh, times up, I can post it on Facebook now. Cool." 22:42 <@smartboy> curious what the guy's motives really are. pr

Re: Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-14 Thread Chaim Rieger
On Tue, Dec 14, 2010 at 9:17 PM, Wil Schultz wrote: > http://thread.gmane.org/gmane.os.openbsd.tech/22557 > > This appears to be some serious FUD, but if true could have some serious > implications for IPSEC stacks in all kinds of equipment. > > -wil > Does anyone remember the last time a law en

Alleged backdoor in OpenBSD's IPSEC implementation.

2010-12-14 Thread Wil Schultz
http://thread.gmane.org/gmane.os.openbsd.tech/22557 This appears to be some serious FUD, but if true could have some serious implications for IPSEC stacks in all kinds of equipment. -wil