Cookie exchange

Cookie exchange

The cookie exchange in IPsec comes under the Oakley protocol, which is a protocol of key management. The cookie exchange requires that each side send a pseudorandom number, the cookie, in the initial message, which the other side acknowledges. This acknowledgement must be repeated in the first message of the Diffie-Hellman key exchange. If the source address was forged, the opponent gets no answer. Thus, an opponent can only force a user to generate acknowledgements and not to perform the Diffie-Hellman calculation. Note that "cookies" in the sense of IPsec are unrelated to HTTP cookies used by web browsers.

The recommended method for creating the cookie is to perform a fast hash (eg. MD5) over the IP source and destination addresses, the UDP source and destination ports, and a locally generated secret value.


Wikimedia Foundation. 2010.

Игры ⚽ Поможем решить контрольную работу

Look at other dictionaries:

  • Cookie — This article is about the food. For the computer term, see HTTP cookie. For other uses, see Cookie (disambiguation). Cookie Chocolate chip cookies …   Wikipedia

  • Cookie Jar Kids Network — Type Defunct weekly/daily block Country …   Wikipedia

  • Cookie jar accounting — or cookie jar reserves is an accounting practice in which a company uses generous reserves from good years against losses that might be incurred in bad years. An example of a cookie jar reserve is a liability created when a company records an… …   Wikipedia

  • cookie jar accounting — n. The corporate accounting practice of taking a reserve to reduce profits in good years and then using that reserve to increase profits in bad years. Also: cookie jar accounting. Example Citation: Providing further evidence of warming relations… …   New words

  • cookie jar reserves — A semi humorous term for *reserves or accrued expenses created with the intention of manipulating *financial statements. The term derives from the image of dipping at one’s convenience into a jar of cookies. By analogy, reserves of this type are… …   Auditor's dictionary

  • The Program Exchange — File:PE hdr 404x122.jpg300px Type Subsidiary Industry Television syndication Founded 1979 Headquarters TBA, United States …   Wikipedia

  • Internet key exchange — (IKE) es un protocolo usado para establecer una Asociación de Seguridad (SA) en el protocolo IPsec. IKE emplea un intercambio secreto de claves de tipo Diffie Hellman para establecer el secreto compartido de la sesión. Se suelen usar sistemas de… …   Wikipedia Español

  • Chocolate chip cookie — Home made chocolate chip cookies Origin …   Wikipedia

  • Buenos Aires Stock Exchange — Infobox Exchange name = Buenos Aires Stock Exchange nativename = Bolsa de Comercio de Buenos Aires type = Stock Exchange city = Buenos Aires country = Argentina coor = founded = 1854 owner = key people = currency = listings = mc volume = indexes …   Wikipedia

  • Phorm — Type Public (AIM: PHRM) Industry Online advertising Founded …   Wikipedia

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”