Re: How to forbid unencrypted Keys?

From: Wolfgang (nobody_at_pappnas.de)
Date: 03/21/05

  • Next message: Pat: "Experience the effect of SSH"
    Date: Mon, 21 Mar 2005 23:28:26 +0100
    
    

    This as also my first idea, the client tells the server if the key is
    encrypted with a password or send via agent. This can be faked to
    easily, but would be a good thing in corporate environments.
    THe second though is, it must be a inherent property of the key, similar
    to timestamps of digital signatures.

    >
    > Other idea: I'm not sure whether there is any reliable way for the server
    > to find out how the key is stored on the client. The simple way would be
    > to have the client tell the server "yes, the key was retrieved from
    > encrypted storage" or "the key was stored as plaintext" - but then,
    > I don't see a way how the client could prove this.


  • Next message: Pat: "Experience the effect of SSH"

    Relevant Pages

    • Re: What doesnt lend itself to OO?
      ... >> proxy and instructs the server to constuct the real object. ... rather than client code. ... If 'clock' is instantiated in the server, ... > for the server interface at the OOA level. ...
      (comp.object)
    • This is going straight to the pool room
      ... or not the client has privilege to do what they're trying to do, ... The server environment is this: ... 3GL User action Routines that Tier3 will execute on your behalf during the ... Routine Name: USER_INIT ...
      (comp.os.vms)
    • [Full-Disclosure] R: Full-Disclosure Digest, Vol 3, Issue 42
      ... Full-Disclosure Digest, Vol 3, Issue 42 ... SD Server 4.0.70 Directory Traversal Bug ... Arkeia Network Backup Client Remote Access ...
      (Full-Disclosure)
    • Re: What doesnt lend itself to OO?
      ... > rather than client code. ... no way to do that without also touching the object with clock semantics ... will not encapsulate both clock semantics and network semantics. ... The server can do whatever it wants ...
      (comp.object)
    • Re: Can I use in NAT enviroment?
      ... > Can I use tapi client in NAT environment? ... > TAPI Server and Domain Server have public IP address, ... > agent use tapi function. ... from each client to server; ...
      (microsoft.public.win32.programmer.tapi)