RE: Security Practices

From: Mark Senior (Mark.Senior_at_gov.ab.ca)
Date: 05/17/05

  • Next message: Bryan McAninch: "RE: Security Practices"
    Date: Tue, 17 May 2005 11:14:47 -0600
    To: "David Busby" <busby@edoceo.com>
    
    

    It sounds like you're well into the territory where the ciphers you use
    are no longer the weakest link.

    Spending more time on server hardening and host IDS; examining the long
    term storage of the sensitive data; disabling features of the ssh server
    you're not going to use (port forwarding, X11 forwarding, sftp - depends
    on your requirements); requiring public key authentication rather than
    passwords (if you can be sure your users will keept their private keys
    encrypted at their end); all will get you more benefit.

    On the cipher front though - CBC and CTR use different methods of
    setting the initialization vector for the block cipher operations. Both
    are perfectly reasonable modes of AES. Using 4096 bit RSA keys certainly
    won't do any harm (except slow down session establishment at bit), but
    it won't get you much practical benefit over 2048 either. Using SHA-1
    MACs only might make a meaningful difference, however, as MD5 is getting
    a bit old and hoary.

    Regards
    Mark

    > -----Original Message-----
    > From: David Busby [mailto:busby@edoceo.com]
    > Sent: May 16, 2005 23:28
    > To: secureshell@securityfocus.com
    > Subject: Security Practices
    >
    > List,
    > I'm trying to get my a sshd setup as secure as possible,
    > some folks I know what to send financial data over this.
    > Right now I've got 2048bit RSA keys, aes256-cbc cipher
    > (only), but all the MACs. I'm thinking that I'll make my key
    > 4096bits to add some security. Which cipher is the best? I
    > picked AES256 cause I believe AES to be the best, 256 was the
    > largest. What is the difference between CBC and CTR? MAC of
    > hmac-md5 is the best choice there correct? Assume best means
    > most secure even at the sacrifice of performance. Thanks!
    >
    > imperium bin # ssh -V
    > OpenSSH_3.9p1, OpenSSL 0.9.7e 25 Oct 2004 imperium bin #
    > uname -a Linux imperium 2.6.10-gentoo-r6-edoceo #4 Sun May 1
    > 03:48:25 PDT 2005
    > i686 AMD Athlon(TM) XP 1700+ AuthenticAMD GNU/Linux
    >
    > /djb
    >

    This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in error please notify the system manager. This message contains confidential information and is intended only for the individual named. If you are not the named addressee you should not disseminate, distribute or copy this e-mail.

    This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in error please notify the system manager. This message contains confidential information and is intended only for the individual named. If you are not the named addressee you should not disseminate, distribute or copy this e-mail.


  • Next message: Bryan McAninch: "RE: Security Practices"

    Relevant Pages

    • Security Practices
      ... I'm trying to get my a sshd setup as secure as possible, ... RSA keys, aes256-cbc cipher, but all the MACs. ...
      (SSH)
    • A secure hand cipher?
      ... I have been looking for a way to make a secure hand cipher similar to the ... The "encryption device" is a standard set of scrabble tiles with one ... Text1: From Sherlock Holms ...
      (sci.crypt)
    • Re: QC-proof cipher?
      ... to conventional computation techniques, let alone quantum computing. ... one "secure" symmetric cipher too, ... One thing I wonder is people always say this about OTP but what ... is the difference between OTP and a NULL cipher. ...
      (sci.crypt)
    • Re: triple algorithms
      ... matching of algorithms I would advise you don't do this. ... AES is secure insofar as nobody has yet found a viable attack for it. ... creating a new cipher out of a collection of others. ... security depends only on the single assumption that factoring is hard. ...
      (sci.crypt)
    • Re: Which paper and pencil cipher to use ?
      ... >>> Can someone please recommend a reasonably secure paper and pencil ... >>> The cipher is to be used in an area where electronic methods are ... > practicality, and notes on its practical use from "Between Silk and ... > unbreakable if the running key texts were taken from the space of all ...
      (sci.crypt)