[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

A problem with public key encrption in IKE



francisco_corella@hp.com writes:
> It should be possible to fix these two problems, probably at the expense of 
> additional messages, by first establishing the DH secret, then exchanging 

Use signatures based authentication method, instead of rsa encryption.
There IS a reason why we have different types of authentications in
the IKE. They offer little bit different things...
-- 
kivinen@iki.fi                               Work : +358-9-4354 3218
SSH Communications Security                  http://www.ssh.fi/
SSH IPSEC Toolkit                            http://www.ssh.fi/ipsec/