IBM has crypto hardware (I believe it's the IBM4758) that uses control
vectors on DES keys to indicate the possible usage of the keys. This does
achieve functional separation as with PK. But generally people appear find
it too complex and don't use it. Still a nice mechanism and worthwhile
looking at. Maybe you can get some docs on the IBM redbooks site.
(www.redbooks.ibm.com ?)
Regards,
Emiel Spoor
-----Original Message-----
From: Logi Ragnarsson [mailto:[EMAIL PROTECTED]]
Sent: Friday, February 02, 2001 1:06 PM
To: [EMAIL PROTECTED]
Subject: [OCF] Encrypt-only DES keys.
Hello,
Does anyone know of a way to mark symmetric keys on smart-cards as
encrypt-only or decrypt-only? This would basically emulate public key
cryptography by using (supposedly) tamper-resistant hardware.
This would be a much cleaner solution than the alternative, which is to
write
a custom applet to perform only encryption or only decryption.
--
Logi Ragnarsson - [EMAIL PROTECTED]
Decode Genetics / Data Security
---
> Visit the OpenCard web site at http://www.opencard.org/ for more
> information on OpenCard---binaries, source code, documents.
> This list is being archived at http://www.opencard.org/archive/opencard/
! To unsubscribe from the [EMAIL PROTECTED] mailing list send an email
! to
! [EMAIL PROTECTED]
! containing the word
! unsubscribe
! in the body.
---
> Visit the OpenCard web site at http://www.opencard.org/ for more
> information on OpenCard---binaries, source code, documents.
> This list is being archived at http://www.opencard.org/archive/opencard/
! To unsubscribe from the [EMAIL PROTECTED] mailing list send an email
! to
! [EMAIL PROTECTED]
! containing the word
! unsubscribe
! in the body.