Discussion: Bi-directional authentication in TLS
- đ¤ Speaker: Steven J. Murdoch (Computer Laboratory, University of Cambridge)
- đ Date & Time: Friday 19 October 2007, 16:00 - 16:30
- đ Venue: Computer Laboratory, William Gates Building, Room FW11
Abstract
I am working on designing a new authentication algorithm for Tor, which maintains the bi-directional authentication and confidentiality guarantees, but looks similar to normal encrypted web-browsing. This is to help resist blocking based on Tor’s traffic fingerprint.
Tor needs to now perform a HTTPS -like TLS handshake, where the client authenticates the server, but not vice-versa. Then, within the encrypted tunnel, the server needs to authenticate the client. Two additional constraints are that it needs to work with unmodified OpenSSL and have minimum overhead.
I’ll be discussing some proposals for an improved protocol, and expand on the design constraints. I welcome comments on these ideas, potential flaws and any suggested improvements.
Series This talk is part of the Computer Laboratory Security Group meeting presentations series.
Included in Lists
- All Talks (aka the CURE list)
- bld31
- Cambridge talks
- Computer Laboratory Security Group meeting presentations
- Computer Laboratory, William Gates Building, Room FW11
- Department of Computer Science and Technology talks and seminars
- Interested Talks
- School of Technology
- Security-related talks
- Trust & Technology Initiative - interesting events
- yk449
Note: Ex-directory lists are not shown.
![[Talks.cam]](/static/images/talkslogosmall.gif)


Friday 19 October 2007, 16:00-16:30