|
Firewalls (August 1995) |
Ben, If Alice's DH public value is signed or encrypted with her RSA private key then Bob could verify that the DH public value did actually come from Alice and was not being sent by Chris masquerading as Alice. Now this does imply that Bob has Alice's public key certificate, either gotten at an IETF key signing session or via some certificate hierarchy singed by some common certification authority. geoff Follow-Ups:
References:
|