Hello,
I need to know about the KeyAuthentication(struct Image *ip) function in proto.c.
Does "Proposition C5" where a blowfish session key is generated and then sent in plain text with the SendTransaction function have an issue? How is the session key being encrypted? Anybody watching traffic will be able to get the key!
Any information will be very helpful.
Thanks, -Yehia
|
_______________________________________________ Help-cfengine mailing list Help-cfengine@gnu.org http://lists.gnu.org/mailman/listinfo/help-cfengine