More Euro Key Escrow
I've looked more closely at the "Royal Holloway" protocol, supposedly under consideration by the EC for key escrow in Europe, though I must say that anyone who deploys it will get what they deserve. I have discovered some further weaknesses in the protocol, documented at: http://www.algroup.co.uk/crypto/rh.html Comments are welcome. Cheers, Ben. -- Ben Laurie Phone: +44 (181) 994 6435 Email: ben@algroup.co.uk Freelance Consultant and Fax: +44 (181) 994 6472 Technical Director URL: http://www.algroup.co.uk/Apache-SSL A.L. Digital Ltd, Apache Group member (http://www.apache.org) London, England. Apache-SSL author
I've looked more closely at the "Royal Holloway" protocol, supposedly under consideration by the EC for key escrow in Europe, though I must say that anyone who deploys it will get what they deserve.
I've taken a personal look at this, and it's awful. I'd like to make a formal submission from Thawte to the EC committee in charge. Even better, I'd like to muster industry support against escrow schemes in general in the EC. If any organisations following this thread would like to join us in that submission, please contact me directly. Thanks, Mark -- Mark Shuttleworth Thawte Consulting
participants (2)
-
Ben Laurie -
Mark Shuttleworth