MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
key
Search

Fear the Man in the Middle? This company wants to sell quantum key distribution

Sunday April 28, 2019. 03:00 PM , from Ars Technica
Enlarge / That's a lofty promise you got there, quantum key distribution company. (credit: Quantum XChange)
When reviewing the WireGuard VPN last fall, one of the things that came up was WireGuard's support for an optional, additional PSK (Pre Shared Key) layer of security. Like most modern crypto, WireGuard's basic encryption is asymmetrical, meaning you encrypt the data with one key and decrypt it with another. PSKs, by contrast, are symmetric cryptography—the same key used to encrypt the data is also used to decrypt it.
The fundamental problem with symmetric cryptography is practical, not mathematical: how do you get the key to your communication partner in the first place? The whole reason you want the encryption is because you don't trust the medium in between you and your partner, so you can't use that medium to share a key. The ever-present fear is that an MITM—Man In The Middle—will intercept the key, destroying your secrecy.
That pitfall is what makes asymmetrical cryptography—the kind used for everything from SSH keys, to SSL/TLS for websites, to you name it—so attractive. With asymmetric cryptography, you send your public key to your communication partner in the clear. Your partner encodes a message with your public key, which you can then read with your private key because that was never shared. You can do the same thing in reverse to send data the other way—get your partner's public key and use it to encrypt a message to send to them to be decrypted with their private key.
Read 15 remaining paragraphs | Comments
https://arstechnica.com/?p=1418385
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Current Date
Apr, Fri 26 - 02:37 CEST