[15415] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

CAs for spies?

daemon@ATHENA.MIT.EDU (Steve Bellovin)
Tue May 25 15:07:49 2004

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: Steve Bellovin <smb@research.att.com>
To: cryptography@metzdowd.com
Date: Tue, 25 May 2004 11:01:23 -0400

Have you ever wondered what CA a spy agency would trust?  In the case 
of the Mossad, it's Thawte.

Go to http://www.mossad.gov.il/Mohr/MohrTopNav/MohrEnglish/MohrAboutUs/
and click "Contact Us" or "Application Form".  You'll get an 
SSL-protected connection, with a 1024-bit RSA key (with MD5) in a 
certificate issued by Thawte.  The connection itself used 256-bit AES.

		--Steve Bellovin, http://www.research.att.com/~smb


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post