Merge branch 'tetanus' of github.com:/zerotier/ZeroTierOne into tetanus

This commit is contained in:
Adam Ierymenko 2022-12-19 11:24:54 -05:00
commit 7da9b6cec5

View file

@ -34,6 +34,8 @@ pub enum Error {
InvalidParameter, InvalidParameter,
/// Packet failed one or more authentication (MAC) checks /// Packet failed one or more authentication (MAC) checks
/// IMPORTANT: Do not reply to a peer who has sent a packet that has failed authentication. Any response at all will leak to an attacker what authentication step their packet failed at (timing attack), which lowers the total authentication entropy they have to brute force.
/// There is a safe way to reply if absolutely necessary, by sending the reply back after a constant amount of time, but this is difficult to get correct.
FailedAuthentication, FailedAuthentication,
/// New session was rejected by the application layer. /// New session was rejected by the application layer.