Page Index Toggle Pages: 1 [2]  Send TopicPrint
Hot Topic (More than 10 Replies) ZRTP: some observations of a newbie. (Read 13047 times)
Phoner Admin
YaBB Administrator
*****
Offline



Posts: 11422
Location: Germany
Joined: 12. Oct 2003
Gender: Male
Re: ZRTP: some observations of a newbie.
Reply #15 - 26. Sep 2013 at 16:54
Print Post  
As far as I know, there is no way to get the key inverse from the SAS.
No, PhonerLite doesn't keep any previous properties. So full negotiation is needed again for each connection.
  
Back to top
WWW  
IP Logged
 
TonyOZ
YaBB Newbies
*
Offline


PhonerLite is great!

Posts: 37
Location: Saint-Petersburg, Russia
Joined: 25. Sep 2013
Re: ZRTP: some observations of a newbie.
Reply #16 - 26. Sep 2013 at 17:56
Print Post  
I'm not about reversing a key from a SAS.

As I understand the ZRTP features, the SAS is a sort of a hash calculated from a shared key (obtained with the DHE).

If hash size is small - a MiTM attacker can arrange the two keys (one for A-party, the other for B-party) so that their hashes will collide (i.e. SAS values will be equal despite the keys are indeed different).

Since you do not carry a part of a previous key material into a next session - the importance of the SAS is much greater.

Could you please provide an option to enable the "Base-256" SASs? (There is no need in Zimmermann's "PGP words", just a plain alpha-numeric string will do, i.e. "raw HEX")

Smiley
But caching some key material to use with the next call is better!
A paranoid user may prearrange a 100%-secure SIP+ZRTP session (known to be MiTM-free) to initialize the key sequencer with intended second user and afterwards be much more assured of call privacy.


OK, forget it! Smiley
I've finally read the RFC 6189, the sasvalue is ALWAYS thirty two bits. The "Base-32/Base-256" just control the way how the SAS is displayed to a user.
And because the "base-32" uses the 20 MSBs of the sasvalue, it is (sixteen times) stronger than the "base-256" which uses only 16 MSBs.
  

PhonerLite v2.17 on winXP-SP3.
Back to top
 
IP Logged
 
Page Index Toggle Pages: 1 [2] 
Send TopicPrint