[Verse-dev] R5 Issues

Emil Brink emil at obsession.se
Fri Feb 18 09:47:46 CET 2005


On Fri, 18 Feb 2005 09:07:44 +0100
Emil Brink <emil at obsession.se> wrote:

> Hi.
> 
> As Brecht wrote, things seem rather... B0rken.
[...]
> I'll dig around a bit.

Okay, I've dug, and so far the thing seems to be that the client somehow
loses its RSA key. It generates one, but then when trying to encrypt the
login packet, it uses a key of all zeroes. This sends the name+password
in plaintext, which the server then dutifully decrypts, this scrambling
the bits.

Not sure how this happens, I guess I need to dig deeper.

Regards,

/Emil


More information about the Verse-dev mailing list