-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On 07/05/14 08:35, Drew Crawford wrote: >> In former case the probability of collision drops 65536x, in the >> latter 4294967296x, which looks sufficient IMO. > > Not quite. If the session number is randomly chosen by the client, > the probability of the collision is a generalization of the > birthday problem, given by Oops. True. Can't believe I've fallen for that one again :) Martin -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/ iQEcBAEBAgAGBQJTad4jAAoJENTpVjxCNN9Y+2IH/RYsqkyNWMUuqdzEBp+HMM/W kYnrf6cW+pkoWiztNByYljPtvAdaIdb6gfQNOa0eVlRjfon47g0kFp548d4mLd+e 3LE+n4XGSiqUiKRGiHGxptF3nKqk2FLYczuQjUTnumk4cuC5cmribv8JvBFfmVD3 3NJcHX1cvtM7q1xMKk3JZeWa7dv9j7wto47UqNhnXYoGIjjWqGl9Y2M7bsigam9d Hldn5K+ZKniAO8+gXdXplLaHguhasLNbOgR5Os/hE2irJRbynB39xM63I8p+oW6q 9KTy4kq8x6dC9ElldImeuq1dxbwRxiFyf6aDShRGsmayl3h44maQ0fe5ad0AygM= =x890 -----END PGP SIGNATURE-----