Article 4E25E Fear the Man in the Middle? This company wants to sell quantum key distribution

Fear the Man in the Middle? This company wants to sell quantum key distribution

by
Jim Salter
from Ars Technica - All content on (#4E25E)
Screen-Shot-2019-04-19-at-3.53.44-PM-800

Enlarge / That's a lofty promise you got there, quantum key distribution company. (credit: Quantum XChange)

When reviewing the WireGuard VPN last fall, one of the things that came up was WireGuard's support for an optional, additional PSK (Pre Shared Key) layer of security. Like most modern crypto, WireGuard's basic encryption is asymmetrical, meaning you encrypt the data with one key and decrypt it with another. PSKs, by contrast, are symmetric cryptography-the same key used to encrypt the data is also used to decrypt it.

The fundamental problem with symmetric cryptography is practical, not mathematical: how do you get the key to your communication partner in the first place? The whole reason you want the encryption is because you don't trust the medium in between you and your partner, so you can't use that medium to share a key. The ever-present fear is that an MITM-Man In The Middle-will intercept the key, destroying your secrecy.

That pitfall is what makes asymmetrical cryptography-the kind used for everything from SSH keys, to SSL/TLS for websites, to you name it-so attractive. With asymmetric cryptography, you send your public key to your communication partner in the clear. Your partner encodes a message with your public key, which you can then read with your private key because that was never shared. You can do the same thing in reverse to send data the other way-get your partner's public key and use it to encrypt a message to send to them to be decrypted with their private key.

Read 15 remaining paragraphs | Comments

index?i=4PY65MO8l5Y:qFacnMn_wZQ:V_sGLiPB index?i=4PY65MO8l5Y:qFacnMn_wZQ:F7zBnMyn index?d=qj6IDK7rITs index?d=yIl2AUoC8zA
External Content
Source RSS or Atom Feed
Feed Location http://feeds.arstechnica.com/arstechnica/index
Feed Title Ars Technica - All content
Feed Link https://arstechnica.com/
Reply 0 comments