[saag] Re: [skex] SKEX bof comment
"Salz, Rich" <[email protected]>
| Newsgroups | gmane.ietf.saag |
|---|---|
| Message-ID | <MN2PR17MB3901D544D627EE73C98D0208CDDF2@MN2PR17MB3901.namprd17.prod.outlook.com> |
Overall, I'd like to see something that could be more naturally fit to peer-to-peer, is more efficient, and has improved security properties. This is not to mention the separate question of the best way to do unmediated key refreshment. None of this is meant to detract from Kerberos. It would be very helpful if you could explain what is missing from Kerberos. For example, do you want to make sure that you get the same key for A/B communication no matter who asks first? _______________________________________________ saag mailing list -- [email protected] To unsubscribe send an email to [email protected]