NODE bfd4afe0Netscape Export + 128bits SSL (?)
Jean-Paul Kroepfli <JeanPaul.Kroepfli@ns.fnet.fr>Mon, 22 Apr 1996 00:03:10 +0800
Hello,
We are very curious about security + standard + on the shelf products, because so the market will use more naturally the cryptography.
Do you know if it's possible to use Netscape client (export = 40bits RC4) on an external SSL layer (i.e., with full encryption, RC4 long keys or IDEA)?
Use extra-US implantation (SSL-Leavy or AppacheSSL, etc.) the IDEA option?
It seems that IDEA is no longer supported by SSL 3 (in the cipher suite we see IDEA with RSA but not with D-H).
Are rumors on additional algorithms (e.g., Safer SK128, Blowfish, etc.)?
On the S-HTTP side, are some non-US implantation (browser or server) available or some US-freeware that is smuggled out?
Thanks for your answers.
Jean-Paul
~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-
Jean-Paul et Micheline Kroepfli (our son: Nicolas and daughter: Celine)
eMail: JeanPaul.Kroepfli@utopia.fnet.fr Also Compuserve and MSNetwork
Phone: +33 81 55 52 59 (F) PostMail: F-25640 Breconchaux (France)
or: +41 21 843 27 36 (CH) or: CP 138, CH-1337 Vallorbe
Fax: +33 81 55 52 62 (Switzerland)
Zephyr(r) : InterNet, Communication, Security and Cryptography consulting
PGP Fingerprint : 19 FB 67 EA 20 70 53 89 AF B2 5C 7F 02 1F CA 8F
"The InterNet is the most open standard since air for breathing"
NODE 29502dfcRe: Netscape Export + 128bits SSL (?)
Tom Weinstein <tomw@netscape.com>Thu, 25 Apr 1996 00:16:39 -0700 (PDT)
Jean-Paul Kroepfli wrote:
>
> Do you know if it's possible to use Netscape client (export = 40bits
> RC4) on an external SSL layer (i.e., with full encryption, RC4 long
> keys or IDEA)?
> Use extra-US implantation (SSL-Leavy or AppacheSSL, etc.) the IDEA
> option?
Nope.
> It seems that IDEA is no longer supported by SSL 3 (in the cipher
> suite we see IDEA with RSA but not with D-H).
IDEA is in no way deprecated in SSL 3.0. We were just trying to prune
the list of cipher suites to what we thought was useful.
The cipher suites specified in the SSL 3.0 protocol document are only
a beginning. All cipher suites beginning with 0xFF are reserved for
experimental use. As part of the IETF standards process, I'd like
to see an IANA registry set up for registering new cipher suites.
--
Sure we spend a lot of money, but that doesn't mean | Tom Weinstein
we *do* anything. -- Washington DC motto | tomw@netscape.com