nsis-1----Page:18
1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  16  17  18  19  20  21 

Cookie Handling
Query/Responder cookies are relied on for several purposes
Avoid DoS (flooding, state poisoning) attacks
Avoid handshake hijack by off-path nodes
Correlate different stages of the handshake
Defer state installation at responder
Need to formalise the set of requirements and give examples for implementation
Text will go to issue tracker soon
http://nsis.srmr.co.uk/cgi-bin/roundup.cgi/nsis-ntlp-issues/issue17
PPT Version