A DoS Attack Against the Integrity-Less ESP (IPSec)

Ventzislav Nikov · 2008

Abstract. This paper describes a new practical DoS attack that can be mounted against the “encryptiononly” configuration (i.e. without authenticated integrity) of ESP as allowed by IPSec. This finding can serve as a strong argument to convince those in charge of the IPSec standardization to improve it by banning the “encryption-only ” configuration from the standard.

Read the paper · More papers on PaperTik