Thread (70 messages) flat view 70 messages, 11 authors, 2016-12-18

Re: [PATCH v2 1/4] siphash: add cryptographically secure hashtable function

From: Herbert Xu <herbert@gondor.apana.org.au>
Date: 2016-12-15 07:59:13
Also in: lkml, netdev

Jason A. Donenfeld [off-list ref] wrote:
Siphash needs a random secret key, yes. The point is that the hash
function remains secure so long as the secret key is kept secret.
Other functions can't make the same guarantee, and so nervous periodic
key rotation is necessary, but in most cases nothing is done, and so
things just leak over time.
Actually those users that use rhashtable now have a much more
sophisticated defence against these attacks, dyanmic rehashing
when bucket length exceeds a preset limit.

Cheers,
-- 
Email: Herbert Xu [off-list ref]
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help