[14440] in cryptography@c2.net mail archive
Re: anonymous DH & MITM
daemon@ATHENA.MIT.EDU (Ed Gerck)
Thu Oct 2 16:16:20 2003
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Thu, 02 Oct 2003 13:03:59 -0700
From: Ed Gerck <egerck@nma.com>
To: bear <bear@sonic.net>
Cc: Ian Grigg <iang@systemics.com>, M Taylor <mctylr@privacy.nb.ca>,
Cryptography list <cryptography@metzdowd.com>
bear wrote:
> You can have anonymous protocols that aren't open be immune to MITM
True.
> And you can have open protocols that aren't anonymous be immune to
> MITM.
True.
> But you can't have both.
False. In fact, it is possible to prove the existence of at least one open and
anonymous protocol that is immune to MITM in any given, feasible scenario
(ie, given a threat model).
Cheers,
Ed Gerck
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com