Diffie-Hellman Questions

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



I need some clarifications on the DH implementation in OpenSSL. 
Currently I'm using version 1.0.2h

1) The wiki says don't use ADH, presumably because ADH provides 
encryption but not authentication and is exposed to man in the middle 
attacks. Is that the only reason?

2) Are the same encryption keys used every time with ADH?

3) Is it possible to use ephemeral DH without using certificates?  I was 
not able to get that to work.

4) What is the best practice for establishing an anonymous encrypted 
channel using OpenSSL?

Norm Green



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux