Re: openssl decrypted private key

From: Jean-Luc Cooke (jlcooke_at_engsoc.org)
Date: 10/28/04


Date: 28 Oct 2004 14:51:35 GMT

In sci.crypt NNTP <news8080@yahoo.com> wrote:
> have a question regrading private keys,

> I have openssl 1024 bit x509 private key with a passphrase. I
> decrypted the private key with the following command,

> openssl rsa -in mykey.private -out mykey.privd (it asked me for a
> password and then generated mykey.privd

> now my question is that if a users has just the mykey.privd file, can
> he know my password? it is reasonable to assume that he won't be able
> to crack that easily?

x509 is a certificate (public-key) format. The private key is something
else.

But to answer your question:
 - no

Knowing only mykey.privd, they can't find the password used in
mykey.private. There isn't even a way (other then brute-force) to find
the password given mykey.private and mykey.privd.

JLC

-- 


Relevant Pages

  • Re: openssl decrypted private key
    ... In sci.crypt NNTP wrote: ... > have a question regrading private keys, ... > decrypted the private key with the following command, ...
    (comp.security.ssh)
  • openssl decrypted private key
    ... have a question regrading private keys, ... I have openssl 1024 bit x509 private key with a passphrase. ... decrypted the private key with the following command, ...
    (sci.crypt)
  • openssl decrypted private key
    ... have a question regrading private keys, ... I have openssl 1024 bit x509 private key with a passphrase. ... decrypted the private key with the following command, ...
    (comp.security.ssh)
  • Re: starttls certificate question
    ... It works fine for sendmail, in fact I expect it was written up ... But anyway, regarding your problem finding the private key, read the ... "(certificate and private key in file newreq.pem)" ... If you read the OpenSSL documentation for the 'req' command, ...
    (comp.mail.sendmail)
  • Full-screen CHOOSE (no library needed) 48/49
    ... of standard user CHOOSE command ... Version: PGP 7.0.4 for HP48G ... not just web-based plain vanilla mail; ... enables users to store their private key on a central server, ...
    (comp.sys.hp48)