Hello,

 

I need to know about the KeyAuthentication(struct Image *ip) function in proto.c.

 

Does "Proposition C5" where a blowfish session key is generated and then sent in plain text with the SendTransaction function have an issue? How is the session key being encrypted? Anybody watching traffic will be able to get the key!

 

Any information will be very helpful.

 

Thanks,

-Yehia

 

_______________________________________________
Help-cfengine mailing list
Help-cfengine@gnu.org
http://lists.gnu.org/mailman/listinfo/help-cfengine

Reply via email to