1997-01-20 - Re: GSM crypto upgrade? (was Re: Newt’s phone calls)

Header Data

From: Bill Frantz <frantz@netcom.com>
To: Adam Back <aba@dcs.ex.ac.uk>
Message Hash: 1d67630f40dc408eec84aabcaab66765ec299e95b83d401d2af3ca95a820175d
Message ID: <v03007813af096f7633a7@[204.31.235.152]>
Reply To: <199701201612.IAA12435@toad.com>
UTC Datetime: 1997-01-20 19:35:09 UTC
Raw Date: Mon, 20 Jan 1997 11:35:09 -0800 (PST)

Raw message

From: Bill Frantz <frantz@netcom.com>
Date: Mon, 20 Jan 1997 11:35:09 -0800 (PST)
To: Adam Back <aba@dcs.ex.ac.uk>
Subject: Re: GSM crypto upgrade? (was Re: Newt's phone calls)
In-Reply-To: <199701201612.IAA12435@toad.com>
Message-ID: <v03007813af096f7633a7@[204.31.235.152]>
MIME-Version: 1.0
Content-Type: text/plain


At 3:41 PM -0800 1/16/97, Adam Back wrote:
>Bill Frantz <frantz@netcom.com> writes:
>> At 4:39 AM -0800 1/16/97, Adam Back wrote:
>> >- PIN for phone's RSA signature keys
>>
>> It is not clear you need signatures in the secure phone case.  Eric
>> Blossom's 3DES uses straight DH for key exchange with verbal verification
>> that both ends are using the same key.
>
>How does Eric's box display the negotiated key to the user?  (I don't
>recall the pair I saw having displays).

I have not seen the production box, I am going from my memory of Eric's
preproduction description at a meeting last spring.  I hope someone who
knows what they are talking about will butt in here if I am wrong.

The box has a 3 or 4 digit display which displays "something" about the
3DES key, where "something" is some of the bits, or a hash, or ...  With 3
decimal digits, a MIM attacker has a 999 out of 1000 chance of getting
caught.

-------------------------------------------------------------------------
Bill Frantz       | Client in California, POP3 | Periwinkle -- Consulting
(408)356-8506     | in Pittsburgh, Packets in  | 16345 Englewood Ave.
frantz@netcom.com | Pakistan. - me             | Los Gatos, CA 95032, USA







Thread