Mailing List Archive

Secure connections
Does anybody can point me the functions I need to:

. Generate a key pair;
. Encrypt/Decrypt a data buffer using one of the keys.

I'm gonna use gnupg to start a secure client-server connection to exchange a
DES (does DES do the job?) key that will be used to encrypt/decrypt all data
that passes over the connection. I know automatic generation of keys suck
because random number generators suck too, but I'll probably by using an
external hardware to generate true (?) random numbers.

Thanks in advance,

Andre de Leiradella
Re: Secure connections [ In reply to ]
Leiradella, Andre V Matos Da Cunha, at 09:17 -0300 on Thu, 20 Apr 2000, wrote:

> Does anybody can point me the functions I need to:

It sounds like you really need to look through the FAQ or README that is
distributed with GnuPG.

Why do you think the random number generation in GnuPG is bad? I'm
assuming you're using an OS, of course, that has a _real_ /dev/random,
such as Linux or the BSD's.

Oh, and DES won't do the job. Use something that is trusted and has a
decent keysize, such as maybe 3DES. Look at http://www.openssl.org/ for
implementations.

--
Frank Tobin http://www.uiuc.edu/~ftobin/

"To learn what is good and what is to be valued,
those truths which cannot be shaken or changed." Myst: The Book of Atrus
Re: Secure connections [ In reply to ]
[Charset iso-8859-1 unsupported, filtering to ASCII...]
> Does anybody can point me the functions I need to:
>
> . Generate a key pair;
> . Encrypt/Decrypt a data buffer using one of the keys.
>
> I'm gonna use gnupg to start a secure client-server connection to exchange a
> DES (does DES do the job?) key that will be used to encrypt/decrypt all data
> that passes over the connection. I know automatic generation of keys suck
> because random number generators suck too, but I'll probably by using an
> external hardware to generate true (?) random numbers.
>
> Thanks in advance,

Why wont you use SSL (OpenSSL) or ssh ? Much simplier.

Alex
--
* | Janusz A. "Alex" Urbanowicz, \ Home: <alex@bofh.torun.pl>
--+~| | http://eris.phys.uni.torun.pl/~alex/ \ Work: <alex@bofh.net.pl>
`_|/ | \____ RSA: 512/0xAB425659
| | "Those about to hack, we salute you !"