[11348] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: An authentication question

daemon@ATHENA.MIT.EDU (Paul Crowley)
Tue Aug 6 12:04:29 2002

To: roy@scytale.com
Cc: cryptography@wasabisystems.com
From: Paul Crowley <paul@ciphergoth.org>
Date: 06 Aug 2002 16:55:29 +0100
In-Reply-To: Roy M.Silvernail's message of "Tue, 6 Aug 2002 05:47:34 -0500"

Roy M.Silvernail <roy@sendai.scytale.com> writes:
> > public key operations are significantly faster than private key
> >ones. So it is far easier to check 500 sigs than to generate them in
> >the first place.
> 
> Yes, but for a DoS attack, the signatures need not be good.  They only
> need a well-formed envelope.

Although see previous discussion on this list for Bernstein's (IIRC)
probablistic fast reject of false RSA signatures.  Note that signatures
have to be of a special form for this to work.
-- 
  __  Paul Crowley
\/ o\ sig@paul.ciphergoth.org
/\__/ http://www.ciphergoth.org/

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com

home help back first fref pref prev next nref lref last post