cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
584
Views
0
Helpful
2
Replies

VPN and SHA1 hole

crgmdallas
Level 1
Level 1

reading on the net http://www.oissg.org/content/view/116/63/

about possible SHA1 demise due to Chinese University research paper showing a crack of the SHA1 code?

Is the PIX 501 3DES/AES VPN/SSH/SSL version vulnerable to this problem?

2 Replies 2

aftermath
Level 1
Level 1

Anything regarding network security is always an issue and should be addressed with concern. However, the actual paper has not yet been released, so until it is not only released but the contents investigated and proven that SHA1 has infact and can be compramised I would watch with concern, and not ruch to any conclusion. The following link provides other information as well...

http://www.schneier.com/blog/

aftermath
Level 1
Level 1

One More Thing,

If in fact SHA1 was/is/has been cracked, it would only be a concern if you are using CA's...If you are using a Pre-Shared key, then you will be okay...