[11348] in cryptography@c2.net mail archive
Re: An authentication question
daemon@ATHENA.MIT.EDU (Paul Crowley)
Tue Aug 6 12:04:29 2002
To: roy@scytale.com
Cc: cryptography@wasabisystems.com
From: Paul Crowley <paul@ciphergoth.org>
Date: 06 Aug 2002 16:55:29 +0100
In-Reply-To: Roy M.Silvernail's message of "Tue, 6 Aug 2002 05:47:34 -0500"
Roy M.Silvernail <roy@sendai.scytale.com> writes:
> > public key operations are significantly faster than private key
> >ones. So it is far easier to check 500 sigs than to generate them in
> >the first place.
>
> Yes, but for a DoS attack, the signatures need not be good. They only
> need a well-formed envelope.
Although see previous discussion on this list for Bernstein's (IIRC)
probablistic fast reject of false RSA signatures. Note that signatures
have to be of a special form for this to work.
--
__ Paul Crowley
\/ o\ sig@paul.ciphergoth.org
/\__/ http://www.ciphergoth.org/
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com