Anders Rundgren | 8 Oct 2011 11:28
Picon

KEYPROV/DSKPP Successor

http://webpki.org/papers/keygen2/sks-keygen2-exec-level-presentation.pdf

Unlike the original KEYPROV effort this scheme is NOT a protocol,
it is a complete architecture.

This is how Apple would do it: create all the software AND hardware
needed for a pleasant "end user experience".

-- Anders

RFC Errata System | 17 Oct 2011 18:39
Favicon

[Editorial Errata Reported] RFC6063 (2999)


The following errata report has been submitted for RFC6063,
"Dynamic Symmetric Key Provisioning Protocol (DSKPP)".

--------------------------------------
You may review the report below and at:
http://www.rfc-editor.org/errata_search.php?rfc=6063&eid=2999

--------------------------------------
Type: Editorial
Reported by: Gareth Richards <gareth.richards@...>

Section: 4.2.4

Original Text
-------------
           DSKPP Client                         DSKPP Server
           ------------                         ------------
           E(K,R_C), AD          --->

Corrected Text
--------------
           DSKPP Client                         DSKPP Server
           ------------                         ------------
           E(K,R_C), [AD]          --->

Notes
-----
The AD is carried in the <KeyProvClientHello> if sent as a result of a trigger and so is optional in the <ekyProvClientNonce>.

(Continue reading)


Gmane