DH Support and Marketing

Paul Crowley paul at ciphergoth.org
Wed Jun 22 12:54:07 PDT 2005


(proposal snipped - I want to settle this point first)

Nathan D. Bowen wrote:
> Nope, I'm suggesting that if we're not going to follow the norm, then I (and some others) need help to make advocacy easier.

My point about advocacy stands.

> Even if we understand that the DH is unauthenticated and therefore 
> vulnerable to a man-in-the-middle, some of us need help understanding 
> why that leads to ditching our protection against eavesdroppers instead 
> of mitigating our risk of damage from a man-in-the-middle.

I'm not proposing we ditch DH, I'm proposing we make it optional.  What 
practical advantage of making it mandatory do you anticipate?
-- 
   __
\/ o\ Paul Crowley, paul at ciphergoth.org
/\__/ http://www.ciphergoth.org/


More information about the yadis mailing list