[16146] in cryptography@c2.net mail archive
Re: [anonsec] Re: potential new IETF WG on anonymous IPSec (fwd from hal@finney.org) (fwd from touch@ISI.EDU)
daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Mon Sep 13 13:33:02 2004
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: "Steven M. Bellovin" <smb@research.att.com>
To: pgut001@cs.auckland.ac.nz (Peter Gutmann)
Cc: cryptography@metzdowd.com
In-Reply-To: Your message of "Sun, 12 Sep 2004 05:43:44 +1200."
<E1C6Bua-0006NT-00@medusa01>
Date: Sun, 12 Sep 2004 09:25:15 -0400
In message <E1C6Bua-0006NT-00@medusa01>, Peter Gutmann writes:
>Eugen Leitl <eugen@leitl.org> writes:
>
>
>Maybe it's worth doing some sort of generic RFC for this security model to
>avoid scattering the same thing over a pile of IETF WGs, things like the
>general operational principles (store a hash of the server key, compare it on
>subsequent connects), how to present the value to the user (a format that's
>consistent across protocols would be nice), maybe a simple /etc/passwd-type
>file format listing servers and their matching hashes, etc etc etc.
>
Sounds good. Who wants to write it...?
--Steve Bellovin, http://www.research.att.com/~smb
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com