Talk:Otway-Rees protocol

From Wikipedia, the free encyclopedia

I wonder if someone can clarify the remark made on the page for Otway-Rees:

"Another problem is that although the server tells B that A used a nonce, B doesn't know if this was a replay of an old message."

The server does not tell B that A used the nonce N_A. What, exactly, is the alleged replay?