Wireshark-bugs: [Wireshark-bugs] [Bug 11580] Incorrect parsing of NTP datagrams with SHA1 based
Date: Fri, 09 Oct 2015 07:10:25 +0000

Comment # 1 on bug 11580 from
Created attachment 13903 [details]
pcap of ntp sync with four UDP request-response exchanges where authentication
is done using md5.

Here is the corresponding pcap with md5 based MAC that Wireshark parses
correctly. The only difference between MD5 and SHA1 is really the length och
the digest - 16 vs 20 bytes. But this seems to throw the parses off kilter.


You are receiving this mail because:
  • You are watching all bug changes.