[Info-vax] What to do with my VAX.....

Arne Vajhøj arne at vajhoej.dk
Sat Nov 21 08:14:14 EST 2020


On 11/21/2020 4:14 AM, seasoned_geek wrote:
> On Friday, November 20, 2020 at 7:10:37 PM UTC-6, Arne Vajhøj wrote:
>> On 11/20/2020 7:59 PM, Arne Vajhøj wrote:
>>> On 11/20/2020 9:46 AM, seasoned_geek wrote: And with a decent
>>> implementation all bytes should change.
>> And if anyone want to verify that it does.
>> 
>> Just do:
>> 
>> $ mcr ssl1$exe:openssl enc -aes-256-cbc -k MySuperSecretPassPhrase
>> -P -md sha1
>> 
>> on your favorite OS a few times.
>> 
>> I got:
>> 
>> iv =0E38C5B4A04DAD98965D95161268ECDB iv
>> =51D9A670DEB1BF1E56745D28A6441A3C iv
>> =26E6C8F59628C12A7A4EBFC3BF340727 iv
>> =E4609B2D4AFD0B8190101A87F8CA83DB iv
>> =9350E05D92C0915B229048B251E3C663
>> 
>> They look quite different to me.

> NONE of this has __anything__ to do with what I originally stated
> about SSL/TLS having a TOD sensitivity on Ubuntu. In particular I
> noticed it on 18.04 but it might also exist in 20.04 LTS, I just
> haven't had time to look into it.

Same command on Ubuntu 18.04 gives me:

iv =DBC516ED25201B36D36D72AFF00DFCDE

iv =A96AA6C6108F5CB463866EF6ECF87B66

iv =225EF75D2BDB0D89580287DC212B3C61

iv =F691ECE8B2A294E6376792CD286C6A93

iv =241D4F17A1FD7B1AE4BA1CD2A6F74856

Arne



More information about the Info-vax mailing list