[16146] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: [anonsec] Re: potential new IETF WG on anonymous IPSec (fwd from hal@finney.org) (fwd from touch@ISI.EDU)

daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Mon Sep 13 13:33:02 2004

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: "Steven M. Bellovin" <smb@research.att.com>
To: pgut001@cs.auckland.ac.nz (Peter Gutmann)
Cc: cryptography@metzdowd.com
In-Reply-To: Your message of "Sun, 12 Sep 2004 05:43:44 +1200."
             <E1C6Bua-0006NT-00@medusa01> 
Date: Sun, 12 Sep 2004 09:25:15 -0400

In message <E1C6Bua-0006NT-00@medusa01>, Peter Gutmann writes:
>Eugen Leitl <eugen@leitl.org> writes:
>

>
>Maybe it's worth doing some sort of generic RFC for this security model to
>avoid scattering the same thing over a pile of IETF WGs, things like the
>general operational principles (store a hash of the server key, compare it on
>subsequent connects), how to present the value to the user (a format that's
>consistent across protocols would be nice), maybe a simple /etc/passwd-type
>file format listing servers and their matching hashes, etc etc etc.
>

Sounds good.  Who wants to write it...?

		--Steve Bellovin, http://www.research.att.com/~smb


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post