Re: [Hampshire] Communications Data Bill

Top Page

Reply to this message
Author: Benjie Gillam
Date:  
To: Hampshire LUG Discussion List
Subject: Re: [Hampshire] Communications Data Bill
D-H is only one of the many methods SSL can use, generally it is used with DSA keys. There are modes of SSL that can be decrypted afterwards - e.g. those using RSA keys, and I think these are currently more common.

Tivo has recently switched it's device APIs to using D-H SSL which is making it hard for me to... review the traffic. You know - for privacy reasons...

--
Sent from my iPhone, so please forgive spelling/brevity.

On 14 Dec 2012, at 21:29, Anton Piatek <anton@???> wrote:

> Funnily enough, this is exactly the way SSL work iirc, and is the point of it...
>
> Anton
> --
> Anton Piatek
> (sent from my phone, please excuse any typos)
> http://www.strangeparty.com
>
> No trees were destroyed in the sending of this message, however, a significant number of electrons were terribly inconvenienced.
>
> On 14 Dec 2012 21:07, "Peter Collins" <hampshire.lug@???> wrote:
>> On 14/12/12 16:53, Benjie Gillam wrote:
>> > I think a Diffie-Hellman key exchange would mean even if you surrender your passwords/certificates/etc they still can't decode previously captured network data. Though I think it only works for "real time" communications where the key is destroyed after the communication has completed (e.g. SSL), so it'd protect you from man in the middle attacks when sending email to a trusted server, but it's not useful for storing said data securely.
>> >
>>
>> If this was true then it would prove that the CDB was useless and anyone
>> who was exchanging information of a sensitive nature could do so with
>> much hassle.
>>
>>
>>
>> --
>> Please post to: Hampshire@???
>> Web Interface: https://mailman.lug.org.uk/mailman/listinfo/hampshire
>> LUG URL: http://www.hantslug.org.uk
>> --------------------------------------------------------------
> --
> Please post to: Hampshire@???
> Web Interface: https://mailman.lug.org.uk/mailman/listinfo/hampshire
> LUG URL: http://www.hantslug.org.uk
> --------------------------------------------------------------

--
Please post to: Hampshire@???
Web Interface: https://mailman.lug.org.uk/mailman/listinfo/hampshire
LUG URL: http://www.hantslug.org.uk
--------------------------------------------------------------