[14440] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: anonymous DH & MITM

daemon@ATHENA.MIT.EDU (Ed Gerck)
Thu Oct 2 16:16:20 2003

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Thu, 02 Oct 2003 13:03:59 -0700
From: Ed Gerck <egerck@nma.com>
To: bear <bear@sonic.net>
Cc: Ian Grigg <iang@systemics.com>, M Taylor <mctylr@privacy.nb.ca>,
	Cryptography list <cryptography@metzdowd.com>



bear wrote:

> You can have anonymous protocols that aren't open be immune to MITM

True.

> And you can have open protocols that aren't anonymous be immune to
> MITM.

True.

> But you can't have both.

False. In fact, it is possible  to prove the existence of at least one open and
anonymous protocol that is immune to MITM in any given, feasible scenario
(ie, given a threat model).

Cheers,
Ed Gerck

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post