Julien suggests that a new mechanism is required to provide secure
notification when sending arbitrary content.
One useful and simple approach to this problem is provided by the "Magic
Signature"<http://salmon-protocol.googlecode.com/svn/trunk/draft-panzer-magicsig-01.html>method
of the Salmon
Protocol <http://www.salmon-protocol.org/>.
If one assumes that the primary concerns for security involve ensuring that
data tampering and authorship can be detected, the Magic Signature approach
should do the job well. It would not, however, be suitable if the intent is
to publish "secret" data.

See:
http://salmon-protocol.googlecode.com/svn/trunk/draft-panzer-magicsig-01.html

bob wyman

Reply via email to