Re: A little OT: Diffie Hellman Exchange and Encryption on Cisco Routers

From: Crist J. Clark (cristjc_at_comcast.net)
Date: 08/05/03

  • Next message: Ranjeet Shetye: "Re: A little OT: Diffie Hellman Exchange and Encryption on Cisco Routers"
    Date: Mon, 4 Aug 2003 16:52:40 -0700
    To: Jeremy Junginger <jj@act.com>
    
    

    On Fri, Aug 01, 2003 at 11:08:29AM -0700, Jeremy Junginger wrote:
    > In reading about Diffie Hellman Exchanges and Symmetric Encryption between
    > Cisco Routers, and studying Cisco IOS architecture white papers, I noticed
    > that the two large prime numbers used on Cisco Routers for the Diffie-Hellman
    > Key Exchange(s) (which generates keying material for symmetric encryption
    > algorithms such as DES and 3DES) are hard-coded on the devices. That got me
    > a little excited. But I'm not sure if this is possible mathematically, as
    > the modulus function truncates the original value prior to exchanging it over
    > the wire.
    >
    > Could somebody clarify if these large prime values differ from router to
    > router? Also, if it turns out that they are, in fact hard coded (and
    > accessible) wouldn't that give you access to the same mechanism (DH) that
    > generates the keying material for the encryption engine, and thereby decode
    > transmissions between devices using your locally generated key? Does the
    > modulus function eliminate this type of attack? And with SA lifetimes being
    > 86,400 seconds, that gives you 24 hours to crack sessions. Maybe I'm
    > thinking about this too much?

    You don't seem to understand how Diffie-Hellman actually works. If
    we're talkng about IKE, the primes are known not only by Cisco
    routers, but every IKE speaking device on the Internet. The values you
    see wouldn't happen to be the same group generators specified in
    RFC2409? See Section 6.

    Knowledge of these primes does not affect the security of the
    exchange. DH is designed with assumed that everyone, including
    potential attackers, knows these values.

    What Cisco white papers are you refering to, BTW?

    -- 
    Crist J. Clark                     |     cjclark@alum.mit.edu
                                       |     cjclark@jhu.edu
    http://people.freebsd.org/~cjc/    |     cjc@freebsd.org
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    

  • Next message: Ranjeet Shetye: "Re: A little OT: Diffie Hellman Exchange and Encryption on Cisco Routers"

    Relevant Pages

    • Cisco VWIC2-1MFT-T1/E1 vs. WIC-1DSU-T1-V2 in Mitel environment?
      ... Currently they have old Cisco routers on a T1 ... Mitel 3300 units at both Main Office and Branch Office. ... between Main Office and Branch Office, and the native capabilities of the ...
      (comp.dcom.sys.cisco)
    • Re: Cisco VWIC2-1MFT-T1/E1 vs. WIC-1DSU-T1-V2 in Mitel environment?
      ... Currently they have old Cisco routers on a T1 ... Mitel 3300 units at both Main Office and Branch Office. ...
      (comp.dcom.sys.cisco)
    • Re: [Full-disclosure] Drive-by Pharming
      ... Cisco Security Response: Potential exploitation of default ... "Cisco Routers Impacted' section below. ... Those Cisco routers have the Cisco IOS HTTP server enabled by default, ...
      (Full-Disclosure)
    • RE: Requesting info: VPN solution
      ... These routers have VPN ... Or if you already have cisco routers at both site just ... Attend a course taught by an expert instructor with years of in-the-field ...
      (Security-Basics)
    • Re: 3700 vs 3800 routers
      ... so much memory? ... Watching how fast IOS has grown in bloat in the last couple of years ... I mean the expected lifecycle for 3700 and 3800 routers? ... Cisco will let a couple revisions of hardware out before they'll do EOL ...
      (comp.dcom.sys.cisco)

    Loading