Académique Documents
Professionnel Documents
Culture Documents
Sears
Steve
Burns
(C) Wall Street
(N)
A Guy’s
Ramon Swiss
Sanchez Bank
© MMII JW Ryder
(A) CS 428 Computer Networking 7
A Guy has no Integrity
Swiss Bank Scam
Integrity - The guarantee that, upon receipt
of a datagram from the network, the receiver
will be able to determine if the data was
changed in transit
In Comm. Stack
Key Mgmt.
Functions
IP
IP Datagram
Data MAC Fn Digest
MAC Function
IP Hdr. Data Digest
Integrity
© MMII JW Ryder CS 428 Computer Networking 15
Keys
Bit values fed into cryptographic algorithms
and one way hashing functions which provide
help provide confidentiality, integrity, and
authentication
The longer the better - 40, 48, 56, 128
Brute force attacks can win with small keys
Data
Crypto Fn. Encrypted
Key Data
Encryption Function
IP Hdr. Encrypted
Data
© MMII JW Ryder
Confidentiality
CS 428 Computer Networking 20
5
Encrypted
Data
Crypto Fn. Data
Key
Decryption Function
Data
Confidentialit
© MMII JW Ryder
Confidentiality, Integrity,
& Authentication
© MMII JW Ryder CS 428 Computer Networking 24
Data CF EM
DS
Key MAC
Digest
MAC_Time < CF _Time
Why would a guy prefer a Digital Signature over a Keyed Keyed
Digest? Why not? Digest
What types of Security are provided with EM, DS, Digest,
Keyed Digest?
© MMII JW Ryder CS 428 Computer Networking 25
No Security
Msg
Integrity
Msg MD
Confidentiality
EM
Conf. & Integrity
EM MD
Integrity & Auth.
Msg DS
Conf., Int., & Auth.
EM DS
Integrity & Auth.
Msg KD