<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Second edition</title>
	<atom:link href="http://www.lightbluetouchpaper.org/2008/04/27/second-edition/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/</link>
	<description>Security Research, Computer Laboratory, University of Cambridge</description>
	<pubDate>Sun, 14 Mar 2010 16:51:17 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Atsushi</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-30890</link>
		<dc:creator>Atsushi</dc:creator>
		<pubDate>Tue, 17 Mar 2009 02:04:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-30890</guid>
		<description>I made a mistake.
Correction.

F1 -&gt; B : N
B -&gt; F2 : N
F2 -&gt; B : {F2, N}K
B -&gt; F1 : {F2, N}K</description>
		<content:encoded><![CDATA[<p>I made a mistake.<br />
Correction.</p>
<p>F1 -&gt; B : N<br />
B -&gt; F2 : N<br />
F2 -&gt; B : {F2, N}K<br />
B -&gt; F1 : {F2, N}K</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Atsushi</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-30889</link>
		<dc:creator>Atsushi</dc:creator>
		<pubDate>Mon, 16 Mar 2009 16:22:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-30889</guid>
		<description>&gt; 3.3.3 Reflection Attacks

&gt; There are a number of ways of stopping this reflection attack. In many cases, it is
&gt; sufficient to include the names of the two parties in the authentication exchange.

Sorry, I don't think it's sufficient for the reflection attack like the following case. 

&gt; It is still not enough just for the two units to be connected and share a list
&gt; of outstanding challenges, as an enemy attacked by two of our aircraft might
&gt; reflect a challenge from one of them to be answered by the other.

F1 -&gt; B  : N
B  -&gt; F2 : N
F2 -&gt; B  : {B, N}K
B  -&gt; F1 : {B, N}K

F1, F2: our aircraft
B : enemy

I misunderstood?

Thank you.</description>
		<content:encoded><![CDATA[<p>&gt; 3.3.3 Reflection Attacks</p>
<p>&gt; There are a number of ways of stopping this reflection attack. In many cases, it is<br />
&gt; sufficient to include the names of the two parties in the authentication exchange.</p>
<p>Sorry, I don&#8217;t think it&#8217;s sufficient for the reflection attack like the following case. </p>
<p>&gt; It is still not enough just for the two units to be connected and share a list<br />
&gt; of outstanding challenges, as an enemy attacked by two of our aircraft might<br />
&gt; reflect a challenge from one of them to be answered by the other.</p>
<p>F1 -&gt; B  : N<br />
B  -&gt; F2 : N<br />
F2 -&gt; B  : {B, N}K<br />
B  -&gt; F1 : {B, N}K</p>
<p>F1, F2: our aircraft<br />
B : enemy</p>
<p>I misunderstood?</p>
<p>Thank you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29111</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Wed, 30 Apr 2008 19:44:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29111</guid>
		<description>Another typo, "legder" in the on-line chapter 10.1.2 para 2.

Maybe this is just a free way to get the book proof read! I enjoyed the chapter anyway!</description>
		<content:encoded><![CDATA[<p>Another typo, &#8220;legder&#8221; in the on-line chapter 10.1.2 para 2.</p>
<p>Maybe this is just a free way to get the book proof read! I enjoyed the chapter anyway!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Amjad</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29110</link>
		<dc:creator>Amjad</dc:creator>
		<pubDate>Wed, 30 Apr 2008 14:48:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29110</guid>
		<description>Nice to see the second edition. I greatly enjoyed reading the first edition.

Being a InfoSec student (last year) I was grateful for the free on-line copy. It was one thing less to worry about when every penny counts. I found the on-line edition more useful too. If I had any time to kill between lectures I could simple logon pretty much anywhere and have a read, or direct others to the resource.

Nice to see the addition of 'Terror, Justice and Freedom". I will be buying a copy, not because I have to (like most text books) but I feel I owe you a copy.

Thanks,
Amjad</description>
		<content:encoded><![CDATA[<p>Nice to see the second edition. I greatly enjoyed reading the first edition.</p>
<p>Being a InfoSec student (last year) I was grateful for the free on-line copy. It was one thing less to worry about when every penny counts. I found the on-line edition more useful too. If I had any time to kill between lectures I could simple logon pretty much anywhere and have a read, or direct others to the resource.</p>
<p>Nice to see the addition of &#8216;Terror, Justice and Freedom&#8221;. I will be buying a copy, not because I have to (like most text books) but I feel I owe you a copy.</p>
<p>Thanks,<br />
Amjad</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: tree killer</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29101</link>
		<dc:creator>tree killer</dc:creator>
		<pubDate>Tue, 29 Apr 2008 11:11:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29101</guid>
		<description>Dom - if you buy from Amazon and the price goes down soon you are supposed to get a refund.

I spotted a typo "thr" for "the" in the online chapters.</description>
		<content:encoded><![CDATA[<p>Dom - if you buy from Amazon and the price goes down soon you are supposed to get a refund.</p>
<p>I spotted a typo &#8220;thr&#8221; for &#8220;the&#8221; in the online chapters.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 2great2betrue</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29099</link>
		<dc:creator>2great2betrue</dc:creator>
		<pubDate>Tue, 29 Apr 2008 01:25:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29099</guid>
		<description>Thanks for all your hard work and dedication with being the light in this field.
Lightbluetouchpaper, a great name, great under lynx as well.
Keep up the great work.</description>
		<content:encoded><![CDATA[<p>Thanks for all your hard work and dedication with being the light in this field.<br />
Lightbluetouchpaper, a great name, great under lynx as well.<br />
Keep up the great work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dom</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29097</link>
		<dc:creator>Dom</dc:creator>
		<pubDate>Mon, 28 Apr 2008 18:22:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29097</guid>
		<description>Now I just bought the first edition a few weeks ago. 

I was not warned that a new version of this quite expensive book would be released soon and that the one I bought would become free overnight. :-(

Dom</description>
		<content:encoded><![CDATA[<p>Now I just bought the first edition a few weeks ago. </p>
<p>I was not warned that a new version of this quite expensive book would be released soon and that the one I bought would become free overnight. <img src='http://www.lightbluetouchpaper.org/wp-includes/images/smilies/icon_sad.gif' alt=':-(' class='wp-smiley' /> </p>
<p>Dom</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ross Anderson</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29096</link>
		<dc:creator>Ross Anderson</dc:creator>
		<pubDate>Mon, 28 Apr 2008 14:33:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29096</guid>
		<description>Roland

The Kindle version will be ready in a few weeks, or so my publisher believes. The problem is that Amazon creates the Kindle versions themselves for this sort of book, so it's kinda out of our control. I passed on your post to Wiley who have now marked my book with a fast-track request. So thanks for asking; it helps us expedite the process

Ross</description>
		<content:encoded><![CDATA[<p>Roland</p>
<p>The Kindle version will be ready in a few weeks, or so my publisher believes. The problem is that Amazon creates the Kindle versions themselves for this sort of book, so it&#8217;s kinda out of our control. I passed on your post to Wiley who have now marked my book with a fast-track request. So thanks for asking; it helps us expedite the process</p>
<p>Ross</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matt</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29090</link>
		<dc:creator>Matt</dc:creator>
		<pubDate>Mon, 28 Apr 2008 00:37:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29090</guid>
		<description>I look forward to reading the second edition.  The first edition was wonderful.

The first edition has been a great resource over the years.  I often refer people to it who are interested in learning more about security.  Thank you posting the first edition online and opening it up to the community.

Cheers,
Matt</description>
		<content:encoded><![CDATA[<p>I look forward to reading the second edition.  The first edition was wonderful.</p>
<p>The first edition has been a great resource over the years.  I often refer people to it who are interested in learning more about security.  Thank you posting the first edition online and opening it up to the community.</p>
<p>Cheers,<br />
Matt</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Roland Dobbins</title>
		<link>http://www.lightbluetouchpaper.org/2008/04/27/second-edition/comment-page-1/#comment-29089</link>
		<dc:creator>Roland Dobbins</dc:creator>
		<pubDate>Sun, 27 Apr 2008 23:46:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.lightbluetouchpaper.org/?p=322#comment-29089</guid>
		<description>Where is the full electronic edition of your new edition which I'm eager to buy?  Specifically, where is the Amazon Kindle edition, and when can I fork over some money for it?

Thanks!</description>
		<content:encoded><![CDATA[<p>Where is the full electronic edition of your new edition which I&#8217;m eager to buy?  Specifically, where is the Amazon Kindle edition, and when can I fork over some money for it?</p>
<p>Thanks!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
