[18852] in cryptography@c2.net mail archive
Re: HTTPS mutual authentication alpha release - please test
daemon@ATHENA.MIT.EDU (James A. Donald)
Mon Nov 7 09:47:46 2005
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: "James A. Donald" <jamesd@echeque.com>
To: cyphrpunk <cyphrpunk@gmail.com>
Date: Thu, 03 Nov 2005 22:00:01 -0800
Cc: cryptography@metzdowd.com
In-reply-to: <792ce4370511032254x14b239f1m98226f9775d223fa@mail.gmail.com>
--
It seems to me that mutual authentication is pretty much
irrelevant to HTTPS and certificates. You mutually
authenticate by both knowing the password, as in SPEKE.
Of course, SPEKE is patented, so is this scheme a way of
getting around the patents?
--digsig
James A. Donald
6YeGpsZR+nOTh/cGwvITnSR3TdzclVpR0+pr3YYQdkG
a5RzA9UesxiZw+cjRsz+8yPLKwJdTMfUjcQq0iZf
4ybo9wAzZZNG5YyF69jzKw/oXw3fL7FGj86oXey46
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com