RSA is for authentication.  DH key exchange is the way to go for
perfect forward secrecy.  For non-DH exchange protocols, the RSA key
will be enough to read the server side of the connection (receive and
transmit).

-Kyle H

On 5/25/06, Sreeram Kandallu <[EMAIL PROTECTED]> wrote:
Thanks!

looks like RSA+DH is the way to go for perfect forward secrecy!

Sreeram
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to