Cryptography Protocols

Here some basic functions in our toolbox:

Authenticated Encryption:

Authenticated Encryption:

Digital Signature:

Synchronous Protocol: TLS 1.3 and the Public Key Infrastructure

TLS 1.3 has only two rounds:

  1. What are pKemA and pKemB? What are they used for? Are they long term of short term keys?
  2. Explain what Alice must do and check after receiving
  3. How does Alice’s browser trust a certificate supplied by Bob’s website? What does she need to verify that certificate? ​4. Why Mallory cannot do a replay attack on Bob’s response?
  4. Explain why TLS ensures Perfect-Forward Secrecy?
  5. Describe how a man-in-the-middle attack could succeed on TLS/SSL? ​7. In this version of the protocol, why does not Alice sign any message so that Bob can check her identity?

Asynchronous Protocol: GPG

GPG uses two types of EC keys:

Assume that Alice is sending a GPG message to Bob:

  1. Explain how Alice can sign her message m using GPG
  2. Explain how Bob can verify that the message comes from Alice?
  3. Explain how Alice can encrypt her message m using GPG
  4. Explain how Bob can decrypt the message from Alice
  5. Explain why GPG does not protect against replay attack.
  6. Explain why GPG does not ensure Perfect-Forward Secrecy.