pgpfan:pgpauth
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pgpfan:pgpauth [2025/10/10 21:55] – [The PGP OCFB-MDC Encryption Mode] Incorrect use of word. b.walzer | pgpfan:pgpauth [2025/10/10 22:01] (current) – [The PGP OCFB-MDC Encryption Mode] What sort of implementations? b.walzer | ||
---|---|---|---|
Line 83: | Line 83: | ||
=====The PGP OCFB-MDC Encryption Mode===== | =====The PGP OCFB-MDC Encryption Mode===== | ||
- | So there is a PGP encryption mode //with// an integrity check((The PGP OCFB-MDC mode is contained in the OpenPGP Symmetrical Encryption Integrity Protected Data packet (SEIPD).)). For those of us who know how PGP authentication works the existence of //this// mode is confusing. | + | So... This is awkward... |
+ | |||
+ | OCFB-MDC | ||
People were happily and securely using the OCFB encryption mode with PGP authentication for many years. The OCFB-MDC mode came along later. | People were happily and securely using the OCFB encryption mode with PGP authentication for many years. The OCFB-MDC mode came along later. | ||
Line 95: | Line 97: | ||
So why does the OCFB-MDC encryption mode exist at all? It's specifically for the case of anonymous (unsigned, unauthenticated) files/ | So why does the OCFB-MDC encryption mode exist at all? It's specifically for the case of anonymous (unsigned, unauthenticated) files/ | ||
- | In practice almost all implementations will emit OCFB-MDC encrypted messages even if the file/ | + | In practice almost all PGP implementations will emit OCFB-MDC encrypted messages even if the file/ |
When working with PGP, it is important to clearly understand the difference between authentication and the integrity check. The integrity check is limited and often full authentication is required or more desirable. | When working with PGP, it is important to clearly understand the difference between authentication and the integrity check. The integrity check is limited and often full authentication is required or more desirable. | ||
pgpfan/pgpauth.1760133315.txt.gz · Last modified: by b.walzer