OEAP reference

Joseph Reagle said,

> >Yes, but that's authentication, where for that voluerability
authentication 
> >may be sufficient; furthermore using MAC may not be feasible if we use 
> >public key encryption and the parties do not (wish to) share a key.
> 
> Ok [def:MAC]. You want a 'encryption checksum'. 
> Unfortanately, I've been unable to find a reference and specification for
OEAP. 

See e.g. 
http://www.rsasecurity.com/rsalabs/rsa_algorithm/oaep_security.html
http://www.rsasecurity.com/rsalabs/faq/7-10.html

they contain the ref to the paper and implementations

btw OEAP is also covered in my public key lecture in the course on `intro to
crypto w/ appl to e-commerce` in our site (demo area)... 

> __
> Joseph Reagle Jr.                 http://www.w3.org/People/Reagle/
Best regards, 
Amir Herzberg
CTO, NewGenPay Inc.  

See our demo and overview/tutorials on secure e-commerce in
http://www.NewGenPay.com

Received on Sunday, 1 April 2001 09:01:40 UTC