Notes for March 5, 1997

  1. Hello
    1. Remember, Randy Leben on Friday; moved to 1131 EU-II
  2. X.509 The Directory
    1. Intent: 1-way, 2-way (mutual), 3-way (same as 2-way but without timestamp)
    2. Token format and Colin I'Anson's bug
    3. 1-way: A sends token to B
    4. 2-way: A sends token to B, B sends token to A with same nonce
    5. 3-way: 2-way with nonce signed and returned
    6. 3-way flaw: needs nonce and intended target
  3. PEM, PGP
    1. Goals: confidentiality, authentication, integrity, non-repudiation (maybe)
    2. Design goals: drop in (not change), works with any 821-conformant MTA and any UA, and exchange messages without prior interaction
    3. Use of Data Exchange Key, Interchange Key
    4. Review of how to do confidentiality, authentication, integrity with public key IKs
    5. Details: canonicalization, security services, printable encoding (PEM)
    6. Certificate-based key management
    7. PGP v. PEM

