[cap-talk] use of hashcodes?

Tyler Close tyler.close at gmail.com
Fri Feb 19 12:19:05 PST 2010


The ETag values in Waterken are a SHA-256 HMAC of all state and code
used during a query. You'd have a pretty good paper if you could
generate a collision.

--Tyler

On Fri, Feb 19, 2010 at 11:17 AM, Raoul Duke <raould at gmail.com> wrote:
> hi,
>
> I'm wondering how people feel about using hashcodes wrt making
> promises about the behaviuor/quality/security of a system, since
> hashcodes have collisions. E.g. i was skimming the recent
> waterken-joe-e paper and it mentioned using hashcodes to make caching
> work well, and it said, "two responses with the same ETag must yield
> the same text" so i'm wondering about the case of 2 different texts
> colliding in ETag space. Thanks for any edification -- i might be
> totally confused here -- and/or thoughts.
>
> sincerely.
> _______________________________________________
> cap-talk mailing list
> cap-talk at mail.eros-os.org
> http://www.eros-os.org/mailman/listinfo/cap-talk
>



-- 
"Waterken News: Capability security on the Web"
http://waterken.sourceforge.net/recent.html


More information about the cap-talk mailing list