[15316] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Cryptonomicon.Net - Key Splitting : First (and Second) Person Key Escrow

daemon@ATHENA.MIT.EDU (Peter Gutmann)
Mon Apr 19 14:34:13 2004

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: pgut001@cs.auckland.ac.nz (Peter Gutmann)
To: cryptography@metzdowd.com, rah@shipwright.com
In-Reply-To: <p0610050ebca19be030b2@[66.149.49.5]>
Date: Sun, 18 Apr 2004 10:21:28 +1200

"R. A. Hettinga" <rah@shipwright.com> quotes:

>One of our missions here at Cryptonomicon.Net is to advocate the use of
>appropriate cryptographic technology. One technology that's sorely missed in
>a number of commercial products is key splitting. Never heard of key
>splitting? That's not surprising. 

It's not surprising because there's no demand for it.  A number of commercial
(crypto hardware) products do it, but only as a backup mechanism / to allow
key migration into new hardware units.  Every vendor has their own techniques
for this, which fit their existing key management mechanisms.  I talked to
some people about doing a standard for this a while back, but given the vast
number of implementation details you'd have to accomodate and the absence of
demand for it, it never went any further than that.

Peter.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post