summaryrefslogtreecommitdiffstats
path: root/lib/libcrypto/dsa/dsa_lib.c
diff options
context:
space:
mode:
authordtucker <dtucker@openbsd.org>2018-04-13 03:57:26 +0000
committerdtucker <dtucker@openbsd.org>2018-04-13 03:57:26 +0000
commit05a23157ad72af272fa654ccebe75ff969a2389a (patch)
treec6a9c77e43aaeab9e7891ef8dfb6f03740745fd6 /lib/libcrypto/dsa/dsa_lib.c
parent(file missed from previous commit) (diff)
downloadwireguard-openbsd-05a23157ad72af272fa654ccebe75ff969a2389a.tar.xz
wireguard-openbsd-05a23157ad72af272fa654ccebe75ff969a2389a.zip
Defend against user enumeration timing attacks.
This establishes a minimum time for each failed authentication attempt (5ms) and adds a per-user constant derived from a host secret (0-4ms). Based on work by joona.kannisto at tut.fi, ok markus@ djm@.
Diffstat (limited to 'lib/libcrypto/dsa/dsa_lib.c')
0 files changed, 0 insertions, 0 deletions