Re: Signatures and encryption headers

On Nov 7, 1:56 am, Kristian Gjøsteen <kristiag+n...@xxxxxxxxxxxx>
Fabrice  <fabrice.gaut...@xxxxxxxxx> wrote:
Are you talking about modes such as CCM and EAX


With EAX or CCM, you still need some way to communicate the session
key used, the underlying block cipher and maybe the other parameters
that the CCM specs calls "Prerequisites", (if there are not fixed by
the system)

My question is basically, does those prerequisites needs to be
authenticated and/or confidential ? The session key obviously need to
be confidential, so I can encrypt it with a Public Key algorithm for
the recipient. But does the chosen block cipher, and the encrypted
session key needs to be authenticated ? And what kind of attack would
you be vulnerable to if they are not ?

-- Fabrice

