[21176] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Zfone and ZRTP :: encryption for voip protocols

daemon@ATHENA.MIT.EDU (Ed Gerck)
Thu Mar 16 10:17:02 2006

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Wed, 15 Mar 2006 14:52:15 -0800
From: Ed Gerck <edgerck@nma.com>
To: cryptography@metzdowd.com
In-Reply-To: <B6D9387A-CEC1-413B-9CCF-1434CBCD41E7@autistici.org>

cybergio wrote:
> 
> Zfone :: http://www.philzimmermann.com/EN/zfone/index.html

"...it achieves security without reliance on a PKI, key certification,
trust models, certificate authorities, or key management..."

Good. But, uf course, there's a trust model and you need to rely on it.

"...allows the detection of man-in-the-middle (MiTM) attacks by
displaying a short authentication string for the users to read and
compare over the phone."

Depends on the trust model. May not work.

Cheers,
Ed Gerck

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post