* Victor Duchovni wrote on Fri, Aug 28, 2009 at 13:39 -0400:
> The OP is not using fixed DH keys. He is proposing to use ADH key
> exchange.  This gives confidentiality, but NOT authentication.

Yes, and confidentiality without authentication usually doesn't
help much. In case of MITM, the confidentiality ensures that
no one except the attacker (i.e. not even the intended receiver)
can read the traffic...

oki,

Steffen









































--[ end of message ]----------------------------------------------->8=======




______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to