Re: Secure transfer of public key to CA

From: AE (hidden_at_nospam.com)
Date: 09/15/04

  • Next message: Johnny Bravo: "Re: Growth of computing and decryption time."
    Date: Wed, 15 Sep 2004 22:38:06 +0200
    
    

    sgr116 wrote:
    >
    > When System A have created a pair of keys you want the CA to create a
    > certificate for you.
    > Will it work to have the CA connected to the same network as System A?
    > Isn't it a risk that someone will pick up System As public key during
    > transmission and replace it with another.
    > Do you have to encrypt System As public key with the CA public key.
    >
    > Happy for someone giving an explanation to how it should work in
    > practise when transmitting your public key to a CA.

    I don't think the transfer itself is the problem - one could use SSL/TLS
    with server-side (CA-side) certificate.

    But what way does CA know with whom it is communicating?


  • Next message: Johnny Bravo: "Re: Growth of computing and decryption time."

    Relevant Pages

    • Re: TLS-certificates and interoperability-issues sendmail / Exchange / postfix ..
      ... > to assert that certificate validation doesn't happen, ... this trusted public key store contains public keys of that the ... signed by the CA. this digital certificate is returned to the "key ...
      (comp.security.unix)
    • Re: What is a Certificate?
      ... what exactly is a certificate? ... > I've read that it is a private key / public key pair. ... register public keys of something called "certification authorities" ... An example is the SSL domain name digital certificate scenario. ...
      (comp.security.misc)
    • Re: Public Encryption Key
      ... encrypt the message with the recipient's public key (or ... the two can be combined by: first do a digital signature of the ... certificate, certifying the validity of the assertion (ex: ...
      (comp.security.misc)
    • Re: Public Encryption Key
      ... encrypt the message with the recipient's public key (or ... the two can be combined by: first do a digital signature of the ... certificate, certifying the validity of the assertion (ex: ...
      (sci.crypt)
    • Re: Is symmetric key distribution equivalent to symmetric key generation?
      ... > channel through which you can request the public key. ... That person might provide a certificate signed by some ... then (trusting the digital certificate) using the ... for transaction scenar, the individual created a transaction, ...
      (sci.crypt)

  • Quantcast