My favorites | Sign in
Logo
                
New issue | Search
for
| Advanced search | Search tips
Issue 40: Store nonces application-wide for the length of their valid lifetime to protect against replay attacks
1 person starred this issue and may be notified of changes. Back to list
Status:  Fixed
Owner:  andrewarnott
Closed:  Mar 2008
Type-Defect
Priority-High
Security
Release-0.2


Sign in to add a comment
 
Reported by andrewarnott, Feb 23, 2008
Nonces are currently only checked for validity and not for replay attacks.
Comment 1 by andrewarnott, Feb 28, 2008
This is fixed for 0.2 (trunk) in r250.  
No fix for 0.1 (yet).
Status: Started
Labels: Release-0.1
Comment 2 by andrewarnott, Mar 06, 2008
 Issue 48  will track this issue for the 0.1 branch.

Resolving this as fixed for 0.2.
Status: Fixed
Labels: -Release-0.1 Release-0.2
Sign in to add a comment

Hosted by Google Code