Letwin wants increased penalties for refusal to decrypt

Pete Chown 1 at 234.cx
20 Aug 2002 23:23:49 +0100


Owen Lewis wrote:

> It does not have to be. All it requires is that the law says that you must
> you safeguard your keys and that you commit an offence if you do not produce
> them when required. There is then an onus on you to show that the failure to
> produce is blameless.

Would you be expected to preserve ephemeral keys in those TLS
ciphersuites that use them?  For example (if I might toot my own horn)
the TLS_DHE_RSA_WITH_AES_128_CBC_SHA suite defined in RFC 3268.

-- 
Pete