[COLUG] Rough internet draft

Duane duane at e164.org
Fri Jun 13 20:46:47 EDT 2008


Zane C.B. wrote:

> Not bothered to read through the entire proof of concept, but looking

You missed the best bits then! :)

> at the technical details section, this seems a bit pointless to me.
> The reason it seems a bit pointless to me is the use of shared keys.
> If you are going to be doing this, one may as well just set up a VPN,
> which in regards to the NSA and telcos is a far more effective
> defense.

The shared key is for the reply only, the request is sent using a RSA
public key, also the method I've tried to come up with in most cases
should be almost as efficient in terms of the number of packets needed
as a regular DNS request/reply sequence.

-- 

Best regards,
 Duane

http://www.freeauth.org - Enterprise Two Factor Authentication
http://www.nodedb.com - Think globally, network locally
http://www.sydneywireless.com - Telecommunications Freedom
http://e164.org - Global Communication for the 21st Century

"In the long run the pessimist may be proved right,
    but the optimist has a better time on the trip."



More information about the colug432 mailing list