|
DataMuseum.dkPresents historical artifacts from the history of: DKUUG/EUUG Conference tapes |
This is an automatic "excavation" of a thematic subset of
See our Wiki for more about DKUUG/EUUG Conference tapes Excavated with: AutoArchaeologist - Free & Open Source Software. |
top - metrics - downloadIndex: T U d
Length: 59489 (0xe861) Types: TextFile Notes: Uncompressed file Names: »davis.and.swick_network_security_via_private-key.ps«
└─⟦4f9d7c866⟧ Bits:30007245 EUUGD6: Sikkerheds distributionen └─⟦30702ec56⟧ »./papers/Kerberos/net_sec_cert.PS.Z« └─⟦this⟧ └─⟦4f9d7c866⟧ Bits:30007245 EUUGD6: Sikkerheds distributionen └─⟦this⟧ »./papers/Network_Security/davis.and.swick_network_security_via_private-key.ps«
%! %%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% % Do not edit this prologue file; edit tex.pro instead! /TeXDict 200 dict def TeXDict begin /Resolution 300 def /Inch{Resolution mul}def /Mtrx matrix def /a4const 340 def /usletterconst 310 def /a4{}def /letter{}def /note{}def /legal{}def /@a4 {a4 initmatrix 72 Resolution div dup neg scale 270 -3215 translate Mtrx currentmatrix pop }def /@letter {letter initmatrix 72 Resolution div dup neg scale usletterconst -3005 translate Mtrx currentmatrix pop }def /@note {note initmatrix 72 Resolution div dup neg scale usletterconst -3005 translate Mtrx currentmatrix pop }def /@landscape {letter initmatrix 72 Resolution div dup neg scale Mtrx currentmatrix 0 0.0 put Mtrx 1 -1.0 put Mtrx 2 1.0 put Mtrx 3 0.0 put Mtrx setmatrix 300 usletterconst translate Mtrx currentmatrix pop }def /@legal {legal initmatrix 72 Resolution div dup neg scale 295 -3880 translate Mtrx currentmatrix pop }def /@manualfeed {statusdict /manualfeed true put }def /@copies {/#copies exch def }def /@restore /restore load def /restore {vmstatus pop dup @VMused lt{pop @VMused}if exch pop exch @restore /@VMused exch def }def /@pri { ( ) print ( ) cvs print }def /@FontMatrix [1 0 0 -1 0 0] def /@FontBBox [0 0 1 1] def /@faceup{statusdict /setoutputtray known {statusdict begin end}if} def /@newfont {/newname exch def newname 7 dict def newname load begin /FontType 3 def /FontMatrix @FontMatrix def /FontBBox @FontBBox def /BitMaps 128 array def /BuildChar{CharBuilder}def /Encoding 256 array def 0 1 255 {Encoding exch /.undef put}for end newname newname load definefont pop }def /ch-image{ch-data 0 get}def /ch-width{ch-data 1 get}def /ch-height{ch-data 2 get}def /ch-xoff{ch-data 3 get}def /ch-yoff{ch-data 4 get}def /ch-tfmw{ch-data 5 get}def /CharBuilder {save 3 1 roll exch /BitMaps get exch get /ch-data exch def ch-data null ne {ch-tfmw 0 ch-xoff neg ch-yoff neg ch-width ch-xoff sub ch-height ch-yoff sub setcachedevice ch-width ch-height true [1 0 0 1 ch-xoff ch-yoff] {ch-image}imagemask }if restore }def /@sf {dup /FontName known {dup /FontName get tempstring cvs (SmallCaps) search {/smallcaps true def pop pop pop} {/smallcaps false def pop} ifelse } {/smallcaps false def} ifelse setfont }def /@dc {/ch-code exch def dup 0 get length 2 lt {pop [ <00> 1 1 0 0 8.00 ]} if /ch-data exch def currentfont /BitMaps get ch-code ch-data put currentfont /Encoding get ch-code dup ( ) cvs cvn put }def /@pc {pop /ch-data exch def currentpoint translate ch-width ch-height true [1 0 0 -1 ch-xoff ch-yoff] {ch-image}imagemask }def /@bop0 {pop }def /@bop1 {pop erasepage initgraphics Mtrx setmatrix /SaveImage save def }def /@eop {showpage SaveImage restore }def /@start {@letter vmstatus pop /@VMused exch def pop }def /@end {(VM used: ) print @VMused @pri (. Unused: ) print vmstatus @VMused sub @pri pop pop (\n) print flush end }def /p {moveto }def /r {0 rmoveto }def /s {smallcaps {SmallCapShow}{show} ifelse }def /c {c-string exch 0 exch put c-string s }def /c-string ( ) def /ru {/dy exch neg def /dx exch def /x currentpoint /y exch def def newpath x y moveto dx 0 rlineto 0 dy rlineto dx neg 0 rlineto closepath fill x y moveto }def /@SpecialDefaults {/hs 8.5 Inch def /vs 11 Inch def /ho 0 def /vo 0 def /hsc 1 def /vsc 1 def /CLIP false def }def /@hsize{/hs exch def /CLIP true def}def /@vsize{/vs exch def /CLIP true def}def /@hoffset{/ho exch def}def /@voffset{/vo exch def}def /@hscale{/hsc exch def}def /@vscale{/vsc exch def}def /@setclipper {hsc vsc scale CLIP {newpath 0 0 moveto hs 0 rlineto 0 vs rlineto hs neg 0 rlineto closepath clip} if }def /@beginspecial {gsave /SpecialSave save def currentpoint transform initgraphics itransform translate @SpecialDefaults /showpage{}def }def /@setspecial { MacDrwgs {md begin /pxt ho def /pyt vo neg def end} {ho vo translate @setclipper} ifelse }def /@endspecial {SpecialSave restore grestore }def /ReEncodeForTeX {/newfontname exch def /basefontname exch def /TeXstr 30 string def /basefontdict basefontname findfont def /newfont basefontdict maxlength dict def basefontdict {exch dup /FID ne {dup /Encoding eq {exch dup length array copy newfont 3 1 roll put} {exch newfont 3 1 roll put} ifelse } {pop pop} ifelse }forall basefontname TeXstr cvs (Dingbat) search {pop pop pop} {pop /TeXvec basefontname TeXstr cvs (Courier) search {pop pop pop TeXcourvec} {pop TeXnormalvec} ifelse def TeXvec aload pop TeXvec length 2 idiv {newfont /Encoding get 3 1 roll put} repeat } ifelse newfontname newfont definefont pop }def /TeXnormalvec [ 8#014 /fi 8#015 /fl 8#020 /dotlessi 8#022 /grave 8#023 /acute 8#024 /caron 8#025 /breve 8#026 /macron 8#027 /ring 8#030 /cedilla 8#031 /germandbls 8#032 /ae 8#033 /oe 8#034 /oslash 8#035 /AE 8#036 /OE 8#037 /Oslash 8#042 /quotedblright 8#074 /exclamdown 8#076 /questiondown 8#134 /quotedblleft 8#136 /circumflex 8#137 /dotaccent 8#173 /endash 8#174 /emdash 8#175 /quotedbl 8#176 /tilde 8#177 /dieresis ] def /TeXcourvec [ 8#016 /exclamdown 8#017 /questiondown 8#020 /dotlessi 8#022 /grave 8#023 /acute 8#024 /caron 8#025 /breve 8#026 /macron 8#027 /ring 8#030 /cedilla 8#031 /germandbls 8#032 /ae 8#033 /oe 8#034 /oslash 8#035 /AE 8#036 /OE 8#037 /Oslash 8#074 /less 8#076 /greater 8#134 /backslash 8#136 /circumflex 8#137 /underscore 8#173 /braceleft 8#174 /bar 8#175 /braceright 8#176 /tilde 8#177 /dieresis ] def /TeXPSmakefont{ /TeXsize exch def findfont [ TeXsize 0 0 TeXsize neg 0 0 ] makefont }def /ObliqueFont{ /ObliqueAngle exch def /ObliqueBaseName exch def /ObliqueFontName exch def /ObliqueTransform [1 0 ObliqueAngle sin ObliqueAngle cos div 1 0 0] def /basefontdict ObliqueBaseName findfont ObliqueTransform makefont def /newfont basefontdict maxlength dict def basefontdict {exch dup /FID ne {dup /Encoding eq {exch dup length array copy newfont 3 1 roll put} {exch newfont 3 1 roll put} ifelse } {pop pop} ifelse }forall newfont /FontName ObliqueFontName put ObliqueFontName newfont definefont pop }def /Times-Oblique /Times-Roman 15.5 ObliqueFont /Times-BoldOblique /Times-Bold 15 ObliqueFont /Times-ItalicUnslanted /Times-Italic -15.15 ObliqueFont /SmallCapsFont{ /SmallCapsBaseName exch def /SmallCapsFontName exch def /basefontdict SmallCapsBaseName findfont def /newfont basefontdict maxlength dict def basefontdict {exch dup /FID ne {dup /Encoding eq {exch dup length array copy newfont 3 1 roll put} {exch newfont 3 1 roll put} ifelse } {pop pop} ifelse }forall newfont /FontName SmallCapsFontName put SmallCapsFontName newfont definefont pop }def /Times-SmallCaps /Times-Roman SmallCapsFont FontDirectory /Palatino-Roman known { /Palatino-Oblique /Palatino-Roman 10 ObliqueFont /Palatino-BoldOblique /Palatino-Bold 10 ObliqueFont /Palatino-SmallCaps /Palatino-Roman SmallCapsFont }if FontDirectory /NewCenturySchlbk-Roman known { /NewCenturySchlbk-Oblique /NewCenturySchlbk-Roman 16 ObliqueFont /NewCenturySchlbk-ItalicUnslanted /NewCenturySchlbk-Italic -16 ObliqueFont /NewCenturySchlbk-SmallCaps /NewCenturySchlbk-Roman SmallCapsFont }if /SmallCapShow{ /achar (A) def /xfac 0.8 def /yfac 0.8 def /xrec 1 xfac div def /yrec 1 yfac div def {dup dup 8#141 ge exch 8#172 le and {8#40 sub achar exch 0 exch put achar xfac yfac scale show xrec yrec scale} {achar exch 0 exch put achar show} ifelse }forall }def /tempstring 100 string def /MacDrwgs false def /@MacSetUp {userdict /md known {userdict /md get type /dicttype eq {/MacDrwgs true def md begin /psu /psu load {/letter {}def /note{}def /legal{}def statusdict /waittimeout 300 put /page{pop}def /pyt vo neg def /pxt ho def } concatprocs def /od /od load {@setclipper} concatprocs def end} if} if }def /concatprocs {/p2 exch cvlit def /p1 exch cvlit def /p p1 length p2 length add array def p 0 p1 putinterval p p1 length p2 putinterval p cvx }def end statusdict /waittimeout 300 put TeXDict begin @faceup @start %%Title: relay4.dvi %%Creator: dvi2ps %%EndProlog 4 @bop0 /Times-Bold /t-bol.360 ReEncodeForTeX /t-bol.360 /t-bol.360 49.813200 TeXPSmakefont def /Times-Roman /t-rom.330 ReEncodeForTeX /t-rom.330 /t-rom.330 45.662100 TeXPSmakefont def /Times-Italic /t-ita.330 ReEncodeForTeX /t-ita.330 /t-ita.330 45.662100 TeXPSmakefont def /Times-Roman /t-rom.300 ReEncodeForTeX /t-rom.300 /t-rom.300 41.511000 TeXPSmakefont def /Times-Italic /t-ita.300 ReEncodeForTeX /t-ita.300 /t-ita.300 41.511000 TeXPSmakefont def 4 @bop1 t-bol.360 @sf 49 72 p (Conclusion) s t-rom.330 @sf 30 175 p (Private-key) s 18 r (certi\014cates) s 18 r (support) s 17 r 97 c 17 r (full-function) s 17 r (authentication) s 16 r (system.) s 26 r (The) s 18 r (translation) s 16 r (protocol) s 17 r (gives) s 30 231 p (us) s 13 r 97 c 14 r (group-access) s 15 r (digital) s 12 r (signature) s 13 r (and) s 14 r 97 c 14 r (nice) s 14 r (congruence) s 14 r (with) s 13 r (public-key) s 13 r (protocols,) s 13 r (including) s 13 r (X.509.) s 30 288 p (Besides) s 18 r (server) s 18 r (replication,) s 19 r (the) s 17 r (system) s 17 r (allows) s 17 r (certi\014cate) s 19 r (revocation) s 17 r (and) s 18 r (centralized) s 18 r (encryption) s 18 r (hard-) s 30 344 p (ware.) s 21 r (These) s 15 r (bene\014ts) s 15 r (do) s 14 r (come) s 15 r (at) s 14 r (the) s 15 r (cost) s 14 r (of) s 15 r (weakening) s 14 r (public-key) s 14 r (encryption') s -2 r 115 c 14 r (absolute) s 14 r (privacy) s -2 r 44 c 14 r (and) s 30 401 p 97 c 17 r (stolen) s 16 r (master) s (-key) s 15 r (does) s 16 r (compromise) s 16 r (more) s 16 r (traf) s (\014c) s 17 r (in) s 16 r (our) s 17 r (system) s 15 r (than) s 16 r (in) s 17 r 97 c 16 r (public-key) s 16 r (system.) s 24 r (More) s 30 457 p (important) s 14 r (than) s 14 r (these) s 15 r (considerations,) s 14 r (though,) s 15 r (is) s 14 r (that) s 15 r (private-key) s 15 r (certi\014cates) s 16 r (are) s 15 r (compatible) s 14 r (with) s 14 r (many) s 30 514 p (encryption) s 15 r (algorithms;) s 13 r (public-key) s t-ita.330 @sf 14 r (pr) s -1 r (otocols) s t-rom.330 @sf 13 r (no) s 15 r (longer) s 15 r (rely) s 15 r (on) s 15 r (public-key) s t-ita.330 @sf 15 r (encryption) s t-rom.330 @sf 14 r 91 c 54 c (].) s t-bol.360 @sf 49 643 p (Acknowledgements) s t-rom.330 @sf 30 747 p 87 c -3 r 101 c 17 r (thank) s 18 r (Mark) s 17 r (Lillibridge,) s 17 r (Jef) s 102 c 18 r (Schiller) s -1 r 44 c 18 r (Mike) s 17 r (Burrows,) s 19 r (Mart) s 19 c -15 r (\020n) s 17 r (Abadi,) s 18 r (Jon) s 17 r (Rochlis,) s 19 r (Dan) s 18 r (Geer) s -1 r 44 c 18 r (Ed) s 30 803 p (Guzovsky) s -2 r 44 c 14 r (and) s 15 r (Roger) s 16 r (Needham,) s 15 r (for) s 16 r (their) s 15 r (helpful) s 14 r (suggestions) s 14 r (and) s 15 r (critiques.) s t-bol.360 @sf 30 927 p (Refer) s (ences) s t-rom.300 @sf 51 1019 p ([1]) s 22 r (This) s 16 r (use) s 16 r (of) s 16 r (private-key) s 15 r (certi\014cates) s 16 r (was) s 17 r (proposed) s 15 r (to) s 15 r (us) s 16 r (by) s 16 r (Mart) s 19 c -14 r (\020n) s 15 r (Abadi) s 15 r (and) s 16 r (Mike) s 15 r (Burrows) s 15 r (of) s 16 r (Digital') s -2 r 115 c 122 1069 p (Systems) s 21 r (Research) s 22 r (Center) s -1 r 44 c 21 r (and) s 21 r (by) s 20 r (Butler) s 19 r (Lampson) s 22 r (of) s 20 r (Digital') s -2 r 115 c 18 r (Cambridge) s 20 r (Research) s 22 r (Laboratory) s -2 r 44 c 22 r (in) s 20 r 97 c 122 1119 p (personal) s 13 r (communication.) s 51 1193 p ([2]) s 22 r (Selim) s 14 r (G.) s 14 r (Akl,) s 13 r (\\Digital) s 13 r (Signatures:) s 17 r 65 c 14 r 84 c (utori) s -1 r (al) s 12 r (Survey) s -2 r (,") s t-ita.300 @sf 14 r (Computer) s t-rom.300 @sf 12 r 86 c -4 r (ol.) s 13 r (16\(2\)) s 12 r (pp.) s 14 r (15-24) s 13 r (\(Feb.) s 14 r (1983\).) s 51 1268 p ([3]) s 22 r (Michael) s 15 r (Burrows,) s 14 r (Mart) s 19 c -14 r (\020n) s 13 r (Abadi,) s 15 r (and) s 15 r (Roger) s 14 r (Needham,) s 16 r (\\A) s 15 r (Logic) s 15 r (of) s 14 r (Authentication,") s t-ita.300 @sf 14 r (Pr) s -1 r (oc.) s 15 r (R.) s 15 r (Soc.) s 15 r (Lond.) s 122 1318 p 65 c t-rom.300 @sf 14 r (426\(1989\)) s 12 r (pp.) s 14 r (233-271.) s 51 1393 p ([4]) s 22 r (Don) s 12 r (Davis) s 13 r (and) s 13 r (Ralph) s 12 r (Swick,) s 13 r (\\Kerberos) s 14 r (Authentication) s 11 r (and) s 13 r 87 c -2 r (orkstati) s -1 r (on) s 11 r (Services) s 13 r (at) s 13 r (Project) s 13 r (Athena,") s t-ita.300 @sf 13 r (MIT) s 122 1442 p (Laboratory) s 13 r (for) s 13 r (Computer) s 13 r (Science) s 15 r 84 c -3 r (echnical) s 12 r (Memorandum) s t-rom.300 @sf 13 r (424) s 13 r (\(Feb.) s 14 r (1990\).) s 51 1517 p ([5]) s 22 r (Dorothy) s 9 r (E.) s 12 r (R.) s 11 r (Denning,) s t-ita.300 @sf 11 r (Cryptography) s 10 r (and) s 10 r (Data) s 10 r (Security) s t-rom.300 @sf 46 c 12 r (Reading,) s 11 r (MA:) s 10 r (Addison-W) s -2 r (esley) s -3 r 44 c 10 r (1983.) s 11 r (pp.) s 11 r (14-15.) s 51 1592 p ([6]) s 22 r (Colin) s 14 r (I'Anson) s 14 r (and) s 15 r (Chris) s 15 r (Mitchell,) s 14 r (\\Security) s 15 r (Defects) s 17 r (in) s 14 r (CCITT) s 16 r (Recommendation) s 15 r (X.509) s 15 r 45 c 15 r (The) s 16 r (Directory) s 122 1641 p (Authentication) s 11 r (Framework,") s t-ita.300 @sf 15 r (ACM) s 14 r (Computer) s 13 r (Communicati) s -1 r (on) s 12 r (Review) s t-rom.300 @sf 44 c 15 r (20\(2\)) s 13 r (pp.) s 13 r (30-34) s 13 r (\(April) s 12 r (1990\).) s 51 1716 p ([7]) s 22 r (International) s 15 r 84 c -2 r (elegraph) s 17 r (and) s 17 r 84 c -2 r (elephone) s 17 r (Consultative) s 15 r (Committee) s 17 r (\(CCITT\).) s 18 r (Recommendation) s 17 r (X.509:) s 24 r (The) s 122 1766 p (Directory) s 17 r 45 c 18 r (Authentication) s 16 r (Framework.) s 19 r (In) s t-ita.300 @sf 18 r (Data) s 17 r (Communicatio) s -1 r (ns) s 17 r (Network) s 17 r (Dir) s -1 r (ectory) s -1 r 44 c 19 r (Recommendations) s 122 1816 p (X.500-X.521) s t-rom.300 @sf 44 c 10 r (pp.) s 10 r (48-81.) s 8 r 86 c -4 r (ol.) s 8 r (8,) s 11 r (Fascicle) s 10 r (8.8) s 9 r (of) s t-ita.300 @sf 9 r (CCITT) s 9 r (Blue) s 10 r (Book) s t-rom.300 @sf 46 c 10 r (Geneva:) s 16 r (International) s 8 r 84 c -2 r (elecommunication) s 122 1866 p (Union,) s 13 r (1989.) s 51 1940 p ([8]) s 22 r (John) s 19 r (Kohl,) s 21 r (Clif) s (ford) s 17 r (Neuman,) s 23 r (and) s 20 r (Jennifer) s 20 r (Steiner) s -1 r 44 c 21 r (\\Kerberos) s 20 r 86 c -4 r (ersion) s 19 r 53 c 20 r (Request) s 20 r (for) s 19 r (Comments,") s 23 r (\(in) s 122 1990 p (preparation) s 13 r (at) s 14 r (Project) s 13 r (Athena,) s 14 r (MIT) s 14 r (bldg.) s 13 r (E40,) s 14 r (Cambridge) s 13 r (MA) s 14 r (02139\).) s 51 2065 p ([9]) s 22 r (Ralph) s 11 r (C.) s 12 r (Merkle,) s 13 r (\\Protocols) s 11 r (for) s 12 r (Public-Key) s 11 r (Cryptosystems,") s 12 r (pp.) s 12 r (122-133) s 10 r (in) s t-ita.300 @sf 11 r (Pr) s -1 r (oc.) s 13 r (1980) s 11 r (Symp.) s 12 r (on) s 12 r (Security) s 122 2114 p (and) s 13 r (Privacy) s t-rom.300 @sf 44 c 15 r (IEEE) s 15 r (Computer) s 13 r (Society) s 13 r (\(April) s 13 r (1980\).) s 30 2189 p ([10]) s 22 r (Roger) s 14 r (M.) s 15 r (Needham) s 15 r (and) s 15 r (Michael) s 15 r (D.) s 15 r (Schroeder) s -1 r 44 c 14 r (\\Using) s 15 r (Encryption) s 13 r (for) s 14 r (Authentication) s 12 r (in) s 14 r (Lar) s (ge) s 15 r (Networks) s 122 2239 p (of) s 13 r (Computers,") s t-ita.300 @sf 14 r (CACM) s t-rom.300 @sf 13 r (21\(12\)) s 13 r (pp.) s 14 r (993-999) s 12 r (\(Dec.) s 15 r (1978\).) s 32 2314 p ([1) s -1 r (1]) s 21 r (G.) s 14 r (J.) s 14 r (Popek) s 14 r (and) s 13 r (C.S.) s 15 r (Kline,) s 13 r (\\Encryption) s 13 r (and) s 13 r (Secure) s 15 r (Computer) s 13 r (Networks,") s t-ita.300 @sf 14 r (Computin) s -1 r 103 c 12 r (Surveys) s t-rom.300 @sf 15 r 86 c -4 r (ol) s -1 r 46 c 13 r 49 c -1 r (1\(4\)) s 122 2363 p (pp.) s 14 r (331-356) s 12 r (\(Dec.) s 15 r (1979\).) s 30 2438 p ([12]) s 22 r (Jennifer) s 16 r (Steiner) s -1 r 44 c 15 r (Clif) s (ford) s 13 r (Neuman,) s 18 r (and) s 16 r (Jef) s (frey) s 15 r (Schiller) s -1 r 44 c 15 r (\\Kerberos:) s 23 r (An) s 16 r (Authentication) s 13 r (Service) s 17 r (for) s 15 r (Open) s 122 2488 p (Network) s 13 r (Systems,") s 15 r (USENIX) s 14 r 87 c -1 r (inter) s 12 r (Conference) s 15 r (Proceedings,) s 14 r (February) s 13 r (1988.) s t-rom.330 @sf 964 2659 p 52 c @eop 3 @bop0 /cmmi10.329 @newfont cmmi10.329 @sf [<FFFFF8007FFFFF0003E00F8003E007C003E003E003E001F001F000F001F000F801F000F801F000F800F8007800F8007800F8 00F800F800F8007C01F0007FFFE0007FFFC0007C03E0003E00F8003E007C003E003E003E003E001F001F001F001F001F001F 001F001F000F801F000F801E000F803E00FFFFFC00FFFFF0> 32 31 -1 0 34] 66 @dc /cmsy10.329 @newfont cmsy10.329 @sf [<FFFFFFC0FFFFFFC0> 26 2 -4 -10 35] 0 @dc [<0000000600000000060000000003000000000180000000018000000000C00000000070FFFFFFFFF8FFFFFFFFFC0000000070 00000000C000000001800000000180000000030000000006000000000600> 38 16 -3 -3 45] 33 @dc cmmi10.329 @sf [<00FE000003FF800007C0E0000F0030001E0018003C000C003C000600780003007800030078000180F8000180F80000C0F800 0000F8000000F80000007C0000007C0000007C0000007C0000003E0000003E0000301F0000301F0000300F80003807800038 03C0003801E0003800F0007C0078007C003E00DC001F818C0007FF060000FE02> 31 33 -2 1 33] 67 @dc cmsy10.329 @sf [<001F007F00F801E003C003C003C003C003C003C003C003C003C003C003C003C003C003C003C007800F00FE00F800FE000F00 078003C003C003C003C003C003C003C003C003C003C003C003C003C003C003C001E000F8007F001F> 16 45 -3 11 23] 102 @dc cmmi10.329 @sf [<FFFE3FFE007FFE3FFE0003E003F00003E003E00003E003E00003E007C00001F007C00001F00FC00001F00F800001F00F8000 00F81F800000F81F000000FC1F000000FE3F0000007F3E0000007DFE0000007CFE0000007C3C0000003E1C0000003E0C0000 003E070000003E038000001F00C000001F006000001F003000001F001C00000F800E00000F800700000F8007E000FFFC1FFC 00FFFC0FFC> 38 31 -1 0 39] 75 @dc /cmmi8.300 @newfont cmmi8.300 @sf [<3E007F80E3C0C0E0C0F0C0F0E078E078E078E078707878707FE077C038003800380038001C001C001C007C007E00> 13 23 -1 0 15] 98 @dc [<40603030181878F8F8F070> 5 11 -2 6 10] 59 @dc [<3E007F00718070C070C0700038003800380038001C001C00FFC0FFC00E000E000E000E0007000600> 10 20 -1 0 13] 116 @dc [<1F003FC070F0E078E03CE03CF01EF01EF01E781E381E1C1C0FF803E0> 15 14 -1 0 17] 111 @dc [<180601C0380E03E01C0707301C0707181C0703981C0703800E0383800E0381C00F0381C0CF03C1C06783E1C067C3F1C03E7F BFC01C3E0F80> 29 14 0 0 31] 109 @dc cmmi10.329 @sf [<207038180C0C0606067EFEFEFCFC78> 7 15 -3 9 13] 59 @dc [<FFFFFE007FFFFE0003E03F0003E00F0003E0070003E0038001F0018001F0018001F000C001F000C000F8006000F8006000F8 000000F80000007C0000007C0000007C0000007C0000003E0000003E0000003E0000003E0000001F0000001F0000001F0000 001F0000000F8000000F8000000F800000FFFE0000FFFE00> 27 31 -1 0 31] 76 @dc cmsy10.329 @sf [<F800FE001F00078003C003C003C003C003C003C003C003C003C003C003C003C003C003C003C001E000F0007F001F007F00F0 01E003C003C003C003C003C003C003C003C003C003C003C003C003C003C003C007801F00FE00F800> 16 45 -3 11 23] 103 @dc cmmi8.300 @sf [<FFC1FF00FFE1FF000F0078000F0078000F00F0000F00F0000781F0000781E0000781E00007C3C00003F3C00003FF800003CF 800003C7800001E3800001E1C00001E0600001E0300000F01C0000F00E0000F0078007FF0FF007FF0FF8> 29 23 -1 0 30] 75 @dc /cmmi6.300 @newfont cmmi6.300 @sf [<1E003F003B003980380038001C001C001C00FF007F800E000E000E000600> 9 15 -1 0 12] 116 @dc [<1F003F8060E0E060E070E0707038703038701FE007C0> 13 11 -2 0 15] 111 @dc [<18183C0038387F001C1C73001C1C39801C1C38001C1C38000E0E1C00CF0E1C00CF8F1C007FFDFC003C78F000> 25 11 -1 0 27] 109 @dc [<1F807FC06040E000E000E0007000708039C01FC00780> 10 11 -2 0 14] 99 @dc cmmi8.300 @sf [<0E001F00398038C01CC01C000E000E000E00C700670067003F001E0000000000000000000000018003C003C00180> 10 23 0 0 12] 105 @dc [<1803803807C01C0E601C0E301C07301C07000E07000E03800F0380CF038067838067C3803E7F801C3E00> 20 14 0 0 21] 110 @dc [<1E3C7FFEF1F2E0F3E073E070F038F038F0387038383C1C3C0FFC03CC> 16 14 -1 0 19] 97 @dc /cmsy8.300 @newfont cmsy8.300 @sf [<60E0F0707078787C3C3C3E3E1E1F1F1F0E> 8 17 -1 -1 10] 48 @dc cmmi6.300 @sf [<3C7E763B38381CDCCE7C3800000000060706> 8 18 -1 0 11] 105 @dc [<183C00387F001C73001C39801C38001C38000E1C00CE1C00CF1C007FFC003CF000> 17 11 -1 0 19] 110 @dc [<3CF07FF863D8E1CCE1C0E1C070E070E038E01FE00760> 14 11 -2 0 17] 97 @dc [<3C007F006380E1C0E1C0E1C070E070E078C07FC03F003800380038001C007C007C00> 11 17 -2 0 14] 98 @dc [<406060303070F0F060> 4 9 -3 5 9] 59 @dc cmmi10.329 @sf [<FFFE00007FFE000003E0000003E0000003E0000003E0000001F0000001F0000001F0000001F0000000F8000000F8000000F8 000000F80000007FFE00007FFFC0007C03E0007C00F8003E0078003E003C003E003E003E003E001F001F001F001F001F001F 001F001F000F801E000F801E000F807C00FFFFF800FFFFE0> 32 31 -1 0 29] 80 @dc cmsy8.300 @sf [<FFFFF0FFFFF0> 20 2 -3 -7 27] 0 @dc /cmr8.300 @newfont cmr8.300 @sf [<7FF07FF0070007000700070007000700070007000700070007000700070007000700F700FF000F000300> 12 21 -2 0 18] 49 @dc cmmi8.300 @sf [<FFC000FFE0000F00000F00000F00000F000007800007800007800007800003FFC003FFF003C07803C01C01E01E01E00F01E0 0F01E00F00F00F00F00F00F01E07FFFC07FFF8> 24 23 -1 0 22] 80 @dc /cmsy6.300 @newfont cmsy6.300 @sf [<FFFFC0FFFFC0> 18 2 -3 -5 24] 0 @dc /cmr6.300 @newfont cmr6.300 @sf [<FF80FF801C001C001C001C001C001C001C001C001C001C009C00FC007C000C00> 9 16 -2 0 15] 49 @dc cmmi8.300 @sf [<38F800FFFC00E78600F38300F3830063800001C00001C00001C600C1CF0060E78071E3803FBF000F1E00> 17 14 -1 0 20] 120 @dc cmmi10.329 @sf [<FFF03FFE00FFF03FFE0007C007E000018007E00000C007C00000600FC00000700FC00000380F8000001C1F8000000C1F8000 00061F000000033F00000001BF00000000FE00000000FE000000007C000000007C00000000FC00000000FC00000000FE0000 0001FB00000001F380000003F1C0000003F0E0000003E060000007E030000007E018000007C01C00000FE01F0000FFFC7FF0 00FFFC7FF8> 37 31 -1 0 38] 88 @dc cmmi6.300 @sf [<73C0FFE0CE30EE186E000E000730C738E7187FF83CF0> 13 11 -2 0 17] 120 @dc 3 @bop1 t-rom.330 @sf 101 72 p (In) s 10 r (all) s 11 r (three) s 11 r (key-service) s 11 r (protocols,) s 11 r (just) s 9 r (as) s 11 r (in) s 10 r (the) s 11 r (translation) s 9 r (protocols,) s 11 r 84 c -2 r (om) s 9 r (doesn') s 116 c 9 r (care) s 12 r (who) s 10 r (presents) s 30 128 p (the) s 16 r (certi\014cates) s 16 r (in) s 16 r 97 c 16 r (request.) s 22 r (Alice,) s 16 r (Bob,) s 17 r (and) s 15 r (Sally') s -2 r 115 c 15 r (privacy) s 16 r (is) s 15 r (protected) s 16 r (by) s 16 r 84 c -2 r (om') s -3 r 115 c 14 r (use) s 16 r (of) s 15 r (their) s 16 r (keys,) s 30 184 p (so) s 15 r (it') s -2 r 115 c 14 r (pro\014tless) s 15 r (to) s 14 r (replay) s 16 r (their) s 15 r (requests.) s t-bol.360 @sf 49 311 p (Communication) s 18 r (Between) s 19 r 84 c -3 r (ranslators) s t-rom.330 @sf 30 414 p (Suppose) s 20 r (Alice) s 21 r (and) s 20 r (Bob) s 21 r (are) s 21 r (distant) s 19 r (pen-pals,) s 22 r (and) s 20 r (that) s 20 r 84 c -1 r (ina) s 20 r (is) s 20 r (Alice') s -2 r 115 c 20 r (translator) s -2 r 46 c 35 r (If) s 21 r (Bob) s 20 r (wants) s 20 r (to) s 30 470 p (send) s 17 r 97 c 17 r (message) s 17 r (to) s 16 r (Alice,) s 18 r (he) s 17 r (needs) s 17 r 97 c 18 r (certi\014cate) s 18 r (that) s 16 r 84 c -1 r (ina) s 16 r (can) s 18 r (read;) s 18 r (we) s 17 r (present) s 17 r (here) s 18 r (two) s 16 r (varieties) s 17 r (of) s 30 527 p (hierarchical) s 16 r (key-distribution) s -1 r 46 c 101 583 p (If) s 15 r (it') s -2 r 115 c 14 r (necessary) s 15 r (to) s 14 r (avoid) s 15 r (public-key) s 14 r (encryption,) s 14 r 97 c 16 r (higher) s (-level) s 13 r (server) s 16 r (Cathy) s 15 r (can) s 15 r (issue) s 14 r (private-key) s 30 640 p (certi\014cates) s 19 r (for) s 18 r (the) s 18 r (translators) s 17 r 84 c -1 r (ina) s 17 r (and) s 18 r 84 c -2 r (om.) s 27 r (Before) s 20 r (Bob) s 18 r (communicates) s 17 r (with) s 17 r (Alice,) s 19 r (he) s 18 r (gets) s 18 r 97 c 18 r (new) s 30 696 p (certi\014cate) s 16 r (in) s 15 r 84 c -1 r (ina') s -2 r 115 c 14 r (master) s (-key:) s 87 772 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 67 c t-rom.330 @sf 3 r 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 410 779 p (b;tom) s cmmi10.329 @sf 497 772 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 606 779 p 98 c cmsy10.329 @sf 622 772 p 103 c cmmi8.300 @sf 645 779 p 75 c cmmi6.300 @sf 675 783 p (tom) s t-rom.330 @sf 733 772 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 822 779 p (tom) s t-rom.330 @sf 884 772 p 44 c t-ita.330 @sf 16 r 84 c -3 r (om) s t-rom.330 @sf 44 c cmmi10.329 @sf 14 r 76 c cmmi8.300 @sf 1045 779 p (tom) s cmsy10.329 @sf 1108 772 p 103 c cmmi8.300 @sf 1131 779 p 75 c cmmi6.300 @sf 1161 783 p 99 c t-rom.330 @sf 1179 772 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 1268 779 p (tina) s t-rom.330 @sf 1334 772 p 44 c t-ita.330 @sf 16 r 84 c -2 r (ina) s t-rom.330 @sf 44 c cmmi10.329 @sf 14 r 76 c cmmi8.300 @sf 1499 779 p (tina) s cmsy10.329 @sf 1566 772 p 103 c cmmi8.300 @sf 1589 779 p 75 c cmmi6.300 @sf 1619 783 p 99 c t-rom.330 @sf 1867 772 p (\(6\)) s 87 858 p (2.) s cmmi10.329 @sf 23 r 67 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 21 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 410 865 p (b;tina) s cmmi10.329 @sf 501 858 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmsy8.300 @sf 610 843 p 48 c cmmi8.300 @sf 610 872 p 98 c cmsy10.329 @sf 626 858 p 103 c cmmi8.300 @sf 649 865 p 75 c cmmi6.300 @sf 679 870 p (tina) s t-rom.330 @sf 742 858 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 830 865 p (b;tina) s t-rom.330 @sf 921 858 p 44 c t-ita.330 @sf 16 r 84 c -2 r (ina) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 76 c cmsy8.300 @sf 1087 843 p 48 c cmmi8.300 @sf 1087 872 p 98 c t-rom.330 @sf 1104 858 p 44 c t-ita.330 @sf 16 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1331 865 p 75 c cmmi6.300 @sf 1361 871 p (b;tom) s t-rom.330 @sf 30 934 p (If) s 13 r 84 c -2 r (om) s 10 r (were) s 13 r (willing) s 11 r (for) s 13 r 84 c -1 r (ina) s 12 r (to) s 11 r (share) s 13 r (Bob') s -2 r 115 c 12 r (key) s cmmi10.329 @sf 13 r 75 c cmmi8.300 @sf 965 941 p (b;tom) s t-rom.330 @sf 1052 934 p 44 c 14 r (Cathy) s 12 r (could) s 12 r (instead) s 12 r (translate) s 12 r (Bob') s -2 r 115 c 12 r (certi\014cate) s 30 990 p (from) s 11 r 84 c -2 r (om') s -2 r 115 c 8 r (key) s 11 r (to) s 11 r 84 c -1 r (ina') s -2 r (s,) s 11 r (returning) s 10 r (to) s 11 r (Bob) s 11 r (the) s 10 r (certi\014cate) s cmsy10.329 @sf 13 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 1146 997 p (b;tom) s cmmi10.329 @sf 1233 990 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 1342 997 p 98 c cmsy10.329 @sf 1358 990 p 103 c cmmi8.300 @sf 1381 997 p 75 c cmmi6.300 @sf 1411 1002 p (tina) s t-rom.330 @sf 1474 990 p 46 c 19 r (This) s 10 r (has) s 11 r (the) s 11 r (advantage) s 30 1047 p (of) s 21 r (simulating) s 18 r (the) s 20 r (hierarchy) s 21 r (of) s 21 r (certi\014cate) s 21 r (signatures) s 20 r (speci\014ed) s 21 r (by) s 20 r (the) s 20 r (CCITT') s -2 r 115 c 21 r (X.509) s 21 r (proposal) s 19 r 91 c 55 c (],) s 30 1103 p (though) s 14 r (X.509') s -2 r 115 c 15 r (elegance) s 16 r (is) s 14 r (admittedly) s 14 r (lost.) s 101 1160 p (If) s 15 r (we) s 15 r (do) s 14 r (use) s 15 r (public-key) s 14 r (encryption) s 14 r (to) s 15 r (connect) s 14 r (translators,) s 15 r (then) s 14 r 84 c -1 r (ina) s 14 r (holds) s 14 r 97 c 15 r (public) s 14 r (key) s cmmi10.329 @sf 15 r 80 c cmmi8.300 @sf 1772 1167 p (tina) s t-rom.330 @sf 1854 1160 p (and) s 30 1216 p (its) s 19 r (secret) s 20 r (inverse) s cmmi10.329 @sf 19 r 80 c cmsy8.300 @sf 405 1198 p 0 c cmr8.300 @sf 49 c cmmi8.300 @sf 399 1229 p (tina) s t-rom.330 @sf 466 1216 p 44 c 21 r (in) s 19 r (addition) s 18 r (to) s 19 r (her) s 20 r (master) s (-key) s cmmi10.329 @sf 18 r 75 c cmmi8.300 @sf 1115 1223 p (tina) s t-rom.330 @sf 1182 1216 p 44 c 21 r (and) s 19 r 84 c -2 r (om) s 17 r (has) s 20 r (such) s 19 r 97 c 20 r (public-key) s 18 r (pair) s -1 r 44 c 30 1273 p (too.) s 20 r (Bob) s 15 r (can) s 15 r (use) s 15 r 84 c -1 r (ina') s -2 r 115 c 13 r (public-key) s 14 r (certi\014cate) s 16 r (to) s 14 r (request) s 15 r 84 c -2 r (om') s -3 r 115 c 13 r (key-service,) s 16 r (and) s 14 r 84 c -2 r (om) s 13 r (can) s 15 r (give) s 15 r (Bob) s 15 r 97 c 30 1329 p (private-key) s 15 r (certi\014cate) s 16 r (for) s 16 r (use) s 15 r (in) s 15 r 84 c -1 r (ina') s -2 r 115 c 13 r (domain:) s 87 1405 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c t-ita.330 @sf 15 r 84 c -3 r (om) s t-rom.330 @sf 58 c cmsy10.329 @sf 19 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 453 1412 p (b;tom) s cmmi10.329 @sf 541 1405 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 650 1412 p 98 c cmsy10.329 @sf 666 1405 p 103 c cmmi8.300 @sf 689 1412 p 75 c cmmi6.300 @sf 719 1416 p (tom) s t-rom.330 @sf 777 1405 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 80 c cmmi8.300 @sf 856 1412 p (tina) s t-rom.330 @sf 923 1405 p 44 c t-ita.330 @sf 15 r 84 c -2 r (ina,) s cmmi10.329 @sf 15 r 76 c cmmi8.300 @sf 1088 1412 p (tina) s cmsy10.329 @sf 1155 1405 p 103 c cmmi8.300 @sf 1178 1420 p 80 c cmsy6.300 @sf 1205 1406 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 1200 1426 p (ca) s t-rom.330 @sf 1867 1405 p (\(7\)) s 87 1491 p (2.) s t-ita.330 @sf 23 r 84 c -3 r (om) s cmsy10.329 @sf 14 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 20 r (ff) s cmmi10.329 @sf 75 c cmmi8.300 @sf 476 1498 p (b;tina) s cmmi10.329 @sf 567 1491 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmsy8.300 @sf 676 1476 p 48 c cmmi8.300 @sf 676 1504 p 98 c cmsy10.329 @sf 693 1491 p 103 c cmmi8.300 @sf 716 1506 p 80 c cmsy6.300 @sf 743 1492 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 738 1517 p (tom) s cmsy10.329 @sf 796 1491 p 103 c cmmi8.300 @sf 819 1498 p 80 c cmmi6.300 @sf 841 1503 p (tina) s t-rom.330 @sf 904 1491 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 993 1498 p (b;tina) s t-rom.330 @sf 1084 1491 p 44 c t-ita.330 @sf 16 r 84 c -2 r (ina) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 76 c cmsy8.300 @sf 1250 1476 p 48 c cmmi8.300 @sf 1250 1504 p 98 c t-rom.330 @sf 1267 1491 p 44 c t-ita.330 @sf 16 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1494 1498 p 75 c cmmi6.300 @sf 1524 1504 p (b;tom) s t-rom.330 @sf 30 1572 p (For) s 14 r (simplicity) s -4 r 44 c 12 r (we) s 14 r (assume) s 13 r (that) s 12 r 84 c -2 r (om) s 12 r (and) s 13 r 84 c -1 r (ina) s 12 r (share) s 14 r (the) s 13 r (public-key) s 12 r (certi\014cation) s 14 r (authority) s 12 r (CA.) s 14 r (Whether) s 30 1628 p (the) s 14 r (hierarchy) s 15 r (uses) s 14 r (public) s 14 r (keys) s 14 r (or) s 15 r (private,) s 15 r (Bob) s 14 r (can) s 15 r (now) s 14 r (talk) s 14 r (to) s 14 r 97 c 15 r (remote) s 14 r (Alice) s 15 r (via) s 14 r (either) s 15 r 97 c 14 r (shared) s 15 r (key) s 30 1685 p (or) s 15 r 84 c -1 r (ina') s -2 r 115 c 14 r (translation) s 14 r (service.) s 101 1741 p (Once) s 12 r 84 c -2 r (om) s 11 r (can) s 12 r (handle) s 12 r (public-key) s 12 r (certi\014cates,) s 14 r (he) s 12 r (can) s 13 r (also) s 12 r (translate) s 12 r (between) s 12 r (private-key) s 12 r (and) s 13 r (public-) s 30 1797 p (key) s 14 r (messages,) s 15 r (so) s 14 r (that) s 14 r (Bob) s 15 r (and) s 14 r (Alice) s 14 r (can) s 15 r (communicate) s 14 r (with) s 13 r (any) s 15 r (public-key) s 14 r (user) s 14 r (X,) s 15 r (and) s 14 r (not) s 14 r (just) s 14 r (with) s 30 1854 p (translators:) s 87 1929 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c t-ita.330 @sf 15 r 84 c -3 r (om) s t-rom.330 @sf 58 c cmsy10.329 @sf 19 r 102 c t-ita.330 @sf (X,) s 16 r (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 566 1936 p 75 c cmmi6.300 @sf 596 1942 p (b;tom) s t-rom.330 @sf 676 1929 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 765 1936 p (b;tom) s cmmi10.329 @sf 852 1929 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 961 1936 p 98 c cmsy10.329 @sf 978 1929 p 103 c cmmi8.300 @sf 1001 1936 p 75 c cmmi6.300 @sf 1031 1940 p (tom) s t-rom.330 @sf 1089 1929 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 80 c cmmi8.300 @sf 1167 1936 p 120 c cmmi10.329 @sf 1189 1929 p 59 c 8 r 88 c 1 r 59 c 8 r 76 c cmmi8.300 @sf 1301 1936 p 120 c cmsy10.329 @sf 1321 1929 p 103 c cmmi8.300 @sf 1344 1944 p 80 c cmsy6.300 @sf 1371 1930 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 1366 1951 p (ca) s t-rom.330 @sf 87 2016 p (2.) s t-ita.330 @sf 23 r 84 c -3 r (om) s cmsy10.329 @sf 14 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 20 r (ff) s t-ita.330 @sf (msg) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 66 c cmsy10.329 @sf 2 r 103 c cmmi8.300 @sf 596 2031 p 80 c cmsy6.300 @sf 623 2017 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 618 2042 p (tom) s cmsy10.329 @sf 677 2016 p 103 c cmmi8.300 @sf 700 2023 p 80 c cmmi6.300 @sf 722 2027 p 120 c t-rom.330 @sf 1867 2016 p (\(8\)) s 87 2110 p (3.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 88 c t-rom.330 @sf 4 r 58 c cmsy10.329 @sf 39 r (ff) s t-ita.330 @sf (msg) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 66 c cmsy10.329 @sf 2 r 103 c cmmi8.300 @sf 578 2125 p 80 c cmsy6.300 @sf 605 2111 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 600 2136 p (tom) s cmsy10.329 @sf 659 2110 p 103 c cmmi8.300 @sf 682 2117 p 80 c cmmi6.300 @sf 704 2121 p 120 c t-rom.330 @sf 726 2110 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 80 c cmmi8.300 @sf 805 2117 p (tom) s t-rom.330 @sf 868 2110 p 44 c t-ita.330 @sf 15 r 84 c -3 r (om) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 76 c cmmi8.300 @sf 1029 2117 p (tom) s cmsy10.329 @sf 1092 2110 p 103 c cmmi8.300 @sf 1115 2125 p 80 c cmsy6.300 @sf 1142 2111 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 1137 2131 p (ca) s t-rom.330 @sf 1185 2110 p 44 c cmsy10.329 @sf 16 r 102 c t-rom.330 @sf (\\T) s -2 r (om) s 13 r (speaks) s 15 r (for) s 15 r (Bob",) s cmmi10.329 @sf 17 r 76 c cmsy10.329 @sf 103 c cmmi8.300 @sf 1736 2125 p 80 c cmsy6.300 @sf 1763 2111 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 1758 2131 p (ca) s t-rom.330 @sf 30 2190 p (Similarly) s -2 r 44 c 13 r 84 c -2 r (om) s 13 r (can) s 15 r (translate) s 15 r (public-key) s 14 r (messages) s 14 r (from) s 15 r 88 c 15 r (as) s 15 r (well.) s 20 r (Because) s 16 r (we) s 15 r (have) s 15 r 84 c -2 r (om) s 13 r (encrypt) s 15 r (his) s 30 2247 p (signature) s 10 r (under) s 10 r (X') s -2 r 115 c 10 r (public) s 9 r (key) s -2 r 44 c 22 r (rather) s 11 r (than) s 10 r (sign) s 10 r (the) s 10 r (encryption,) s 11 r (the) s 10 r (public-key) s 10 r (message) s cmsy10.329 @sf 10 r (ff) s t-ita.330 @sf (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1774 2262 p 80 c cmsy6.300 @sf 1801 2248 p 0 c cmr6.300 @sf 49 c cmmi6.300 @sf 1796 2273 p (tom) s cmsy10.329 @sf 1853 2247 p 103 c cmmi8.300 @sf 1876 2254 p 80 c cmmi6.300 @sf 1898 2258 p 120 c t-rom.330 @sf 30 2308 p (does) s t-ita.330 @sf 13 r (not) s t-rom.330 @sf 12 r (comply) s 12 r (with) s 12 r (X.509.) s 20 r (However) s -1 r 44 c 13 r (X.509') s -2 r 115 c 12 r (\\exposed") s 13 r (signatures) s 12 r (have) s 13 r (been) s 13 r (shown) s 12 r (to) s 13 r (be) s 13 r (insecure) s 30 2365 p (as) s 14 r (speci\014ed) s 15 r 91 c 51 c (],) s 15 r (and) s 14 r (hidden) s 14 r (signatures) s 13 r (of) s (fer) s 14 r (the) s 14 r (simplest) s 13 r (\014x.) s 20 r 65 c 14 r (secure) s 15 r (exposed) s 14 r (signature) s 14 r (would) s 13 r (work) s 30 2421 p (here,) s 16 r (too.) s 101 2478 p (Thus,) s 17 r (both) s 16 r (protocols,) s 16 r (translation) s 16 r (and) s 17 r (key-service,) s 18 r (extend) s 16 r (to) s 17 r (allow) s 16 r (Alice) s 17 r (or) s 17 r (Bob) s 17 r (to) s 16 r (communicate) s 30 2534 p (with) s 14 r (anyone,) s 16 r (anywhere,) s 16 r (who) s 15 r (holds) s 14 r 97 c 16 r (public-) s 14 r (or) s 15 r (private-key) s 16 r (certi\014cate.) s 964 2659 p 51 c @eop 2 @bop0 cmmi10.329 @sf [<7FFFE0007FFFE00001F8000000F8000000F8000000F80000007C0000007C0000007C0000007C0000003E0000003E0000003E 0000003E0000001F0000001F0000001F0000001F0000000F8000000F8000C00F8030C00F80306007C0306007C0183007C018 3007C0183803E0181803E0381E03E0781FFFFFF80FFFFFFC> 30 31 -1 0 27] 84 @dc [<81F80000C7FC0000EE0F0000780780007003C0007001C0007001E0003000E0003000F0003000F0000000F0000000F0000000 F8000001F800000FF000007FF00001FFF00003FFE00003FFC00003FE000007E0000007C0000007C0000003C0060003C00600 03C0060001C0060001E0070000E00F0000700F00003C3B00001FF1800007E080> 25 33 -3 1 28] 83 @dc cmmi8.300 @sf [<3F00FF80E1C0F0E0F0E001E00FE01FC03F803CE01CF01CF00FE007C0> 12 14 -2 0 16] 115 @dc cmmi6.300 @sf [<7C00FF00E300E1800F803F803E00310033801F800F00> 9 11 -3 0 15] 115 @dc cmr6.300 @sf [<1F003F8071C060C0E0E0E0E0E0E0E0E0E0E0E0E0E0E0E0E060C071C03F801F00> 11 16 -1 0 15] 48 @dc cmr8.300 @sf [<07C01FF03C78783C701C701CF01EF01EF01EF01EF01EF01EF01EF01EF01E701C701C783C3C781FF007C0> 15 21 -1 0 18] 48 @dc cmmi10.329 @sf [<FFC0FFFCFFC0FFFC1F000FC0060007C0030007C003000FC001800FC001800F8000C00F8000FFFF80007FFF8000300F800030 0F8000180F8000180F80000C0F8000060F8000060F8000031F8000031F8000019F0000019F000000DF0000007F0000007F00 00003F0000003F0000001F0000001F0000000F000000070000000700> 30 32 -2 0 34] 65 @dc [<FFF000C0007FF000C0000F8001E000030001E000030001E000030003E000018003F000018007F000018007F000018007F000 00C00FD80000C00F980000C00F980000C01F180000601F0C0000603F0C0000603E0C0000603E0C0000307E060000307C0600 0030FC06000030F806000018F803000019F803000019F003000019F00300000FE00180000FE00180000FE003C000FFC01FFC 00FFC01FFC> 38 31 -1 0 37] 78 @dc cmmi8.300 @sf [<70F8F8F870> 5 5 -2 0 10] 58 @dc [<C1C07FF03FF8301C180C0E000300018000C0006018301FF80FFC078C> 14 14 -1 0 16] 122 @dc 2 @bop1 t-rom.330 @sf 101 72 p (It) s 13 r (isn') s 116 c 13 r (actually) s 13 r (necessary) s 15 r (for) s 14 r (Alice,) s 14 r (the) s 14 r (receiver) s -1 r 44 c 15 r (to) s 14 r (request) s 13 r (the) s 14 r (translation;) s 13 r (Bob) s 14 r (or) s 14 r (any) s 14 r (third) s 13 r (party) s 30 128 p (with) s 18 r (access) s 20 r (to) s 19 r (the) s 19 r (certi\014cate) s 20 r (directory) s 19 r (can) s 19 r (make) s 19 r (the) s 19 r (request.) s 32 r (The) s 20 r (translator) s 18 r (just) s 18 r (refuses) s 20 r (to) s 18 r (do) s 19 r (the) s 30 184 p (translation) s 17 r (if) s 18 r (the) s 18 r (message) s 18 r (isn') s 116 c 17 r (addressed) s 18 r (to) s 18 r (the) s 18 r (tar) s (get) s 18 r (certi\014cate') s -2 r 115 c 18 r (owner) s -2 r 46 c 30 r (The) s 18 r (protocol) s 18 r (that) s 17 r (we've) s 30 241 p (presented) s 17 r (here) s 17 r (is) s 17 r (preferable,) s 18 r (though,) s 17 r (if) s 17 r (Bob) s 17 r (addresses) s 17 r (the) s 16 r (message) s 17 r (to) s 16 r 97 c 17 r (list) s 16 r (of) s 17 r (recipients.) s 25 r (Indeed,) s 18 r (if) s 30 297 p (Bob) s 15 r (addresses) s 16 r (the) s 15 r (message) s 14 r (to) s 15 r (\\Public,") s 16 r 84 c -2 r (om) s 13 r (can) s 16 r (relay) s 15 r (Bob') s -2 r 115 c 15 r (signature) s 15 r (without) s 14 r (enforcing) s 15 r (secrecy) s -2 r 46 c 101 354 p (Clearly) s -2 r 44 c 18 r (each) s 18 r (of) s 18 r (these) s 18 r (two) s 17 r (protocols) s 17 r (af) s (fords) s 17 r (Bob) s 18 r 97 c 18 r (chosen-plaintext) s 16 r (attack) s 18 r (on) s 18 r (Alice') s -2 r 115 c 17 r (long-term) s 30 410 p (key) s cmmi10.329 @sf 18 r 75 c cmmi8.300 @sf 153 417 p (a;t) s t-rom.330 @sf 196 410 p 46 c 30 r 84 c -2 r 111 c 16 r (block) s 18 r (this,) s 18 r (Alice) s 18 r (can) s 19 r (use) s 18 r 97 c 18 r (short-lived) s 17 r (key) s cmmi10.329 @sf 19 r 75 c cmsy8.300 @sf 1177 395 p 48 c cmmi8.300 @sf 1174 421 p (a;t) s t-rom.330 @sf 1235 410 p (to) s 17 r (request) s 18 r (the) s 18 r (message') s -2 r 115 c 18 r (translation.) s 30 467 p (Similarly) s -2 r 44 c 12 r (Bob) s 12 r (will) s 12 r (want) s 12 r (to) s 13 r (avoid) s 12 r (the) s 12 r (cryptographic) s 12 r (exposure) s 13 r (of) s 12 r (using) s 12 r (his) s 12 r (long-lived) s 11 r (key) s cmmi10.329 @sf 13 r 75 c cmmi8.300 @sf 1716 474 p (b;t) s t-rom.330 @sf 1768 467 p (in) s 12 r (bulky) s 30 523 p (encryptions.) s 25 r (If) s 17 r (Bob) s 17 r (wants) s 17 r (to) s 16 r (use) s 17 r 97 c 18 r (single-use) s 16 r (key) s cmmi10.329 @sf 17 r 75 c cmsy8.300 @sf 1039 508 p 48 c cmmi8.300 @sf 1036 536 p (b;t) s t-rom.330 @sf 1092 523 p (to) s 16 r (encrypt) s 17 r (his) s 17 r (message,) s 17 r (he) s 17 r (should) s 16 r (request) s 17 r 97 c 30 580 p (key-lifetime) s cmmi10.329 @sf 14 r 76 c cmsy8.300 @sf 299 565 p 48 c cmmi8.300 @sf 299 593 p 98 c t-rom.330 @sf 332 580 p (that) s 14 r (survives) s 15 r (the) s 15 r (span) s 15 r (between) s 15 r (his) s 15 r (encryption) s 14 r (and) s 15 r (Alice') s -2 r 115 c 15 r (translation-request.) s t-bol.360 @sf 49 708 p (Key) s 19 r (Distribution) s t-rom.330 @sf 30 812 p (Private-key) s 14 r (certi\014cates) s 15 r (support) s 13 r 97 c 14 r (natural) s 14 r (key-distribution) s 11 r (protocol) s 13 r (similar) s 13 r (to) s 14 r (that) s 13 r (used) s 14 r (in) s 13 r (the) s 14 r (Kerberos) s 30 868 p (Authentication) s 14 r (System) s 14 r 91 c (10) s 44 c 16 r (12) s -1 r (]:) s 87 957 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 84 c t-rom.330 @sf 6 r 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 407 964 p (b;t) s cmmi10.329 @sf 446 957 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 555 964 p 98 c cmsy10.329 @sf 571 957 p 103 c cmmi8.300 @sf 594 964 p 75 c cmmi6.300 @sf 624 968 p 116 c t-rom.330 @sf 1867 957 p (\(3\)) s 87 1048 p (2.) s cmmi10.329 @sf 23 r 84 c cmsy10.329 @sf 18 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 21 r 102 c cmmi10.329 @sf 75 c cmsy8.300 @sf 410 1033 p 48 c cmmi8.300 @sf 407 1061 p (b;t) s cmmi10.329 @sf 446 1048 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmsy8.300 @sf 555 1033 p 48 c cmmi8.300 @sf 555 1061 p 98 c cmsy10.329 @sf 571 1048 p 103 c cmmi8.300 @sf 594 1055 p 75 c cmmi6.300 @sf 624 1059 p 116 c t-rom.330 @sf 640 1048 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmsy8.300 @sf 731 1033 p 48 c cmmi8.300 @sf 728 1061 p (b;t) s t-rom.330 @sf 767 1048 p 44 c t-ita.330 @sf 16 r 84 c -3 r (om) s t-rom.330 @sf 44 c cmmi10.329 @sf 14 r 76 c cmsy8.300 @sf 928 1033 p 48 c cmmi8.300 @sf 928 1061 p 98 c t-rom.330 @sf 946 1048 p 44 c t-ita.330 @sf 15 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1172 1055 p 75 c cmmi6.300 @sf 1202 1061 p (b;t) s t-rom.330 @sf 30 1137 p (Along) s 12 r (with) s 12 r 97 c 14 r (new) s 13 r (certi\014cate) s 14 r (containing) s 12 r 97 c 13 r (fresh) s 14 r (key) s -2 r 44 c 12 r (Bob) s 14 r (receives) s 13 r 97 c 14 r (separate) s 13 r (copy) s 13 r (of) s 13 r (the) s 13 r (same) s 13 r (key) s 13 r (and) s 30 1193 p 97 c 16 r (checksum) s 16 r (of) s 16 r (the) s 16 r (new) s 16 r (certi\014cate,) s 17 r (encrypted) s 16 r (in) s 16 r (his) s 15 r (old) s 15 r (key) s cmmi10.329 @sf 16 r 75 c cmmi8.300 @sf 1202 1200 p (b;t) s t-rom.330 @sf 1241 1193 p 46 c 23 r (By) s 17 r (computing) s 14 r (the) s 16 r (same) s 15 r (checksum) s 30 1249 p (himself) s 14 r (and) s 15 r (comparing,) s 15 r (Bob) s 16 r (can) s 16 r (ensure) s 15 r (that) s 15 r (it) s 14 r (was) s 16 r 84 c -2 r (om) s 13 r (who) s 15 r (encrypted) s 15 r (the) s 15 r (certi\014cate.) s 22 r (Even) s 15 r (without) s 30 1306 p (the) s 15 r (checksum,) s 15 r 84 c -2 r (om) s 14 r (would) s 14 r (detect) s 15 r 97 c 16 r (substitut) s -1 r (ed) s 14 r (certi\014cate) s 16 r (later) s 15 r (anyway) s -2 r 46 c 101 1362 p (Sally) s -2 r 44 c 13 r (the) s 14 r (system) s 13 r (administrator) s -1 r 44 c 13 r (uses) s 14 r 97 c 14 r (variant) s 14 r (of) s 15 r (this) s 13 r (protocol) s 13 r (to) s 14 r (give) s 14 r 97 c 14 r (new) s 15 r (user) s 14 r (his) s 14 r (\014rst) s 14 r (key) s 14 r (and) s 30 1419 p (certi\014cate:) s 87 1507 p (1.) s cmmi10.329 @sf 23 r 83 c cmsy10.329 @sf 22 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 84 c t-rom.330 @sf 6 r 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 408 1514 p (s;t) s t-rom.330 @sf 448 1507 p 44 c t-ita.330 @sf 16 r 83 c cmmi10.329 @sf 59 c 8 r 76 c cmmi8.300 @sf 550 1514 p 115 c cmsy10.329 @sf 567 1507 p 103 c cmmi8.300 @sf 590 1514 p 75 c cmmi6.300 @sf 620 1518 p 116 c t-rom.330 @sf 636 1507 p 44 c cmmi10.329 @sf 15 r 66 c t-rom.330 @sf 87 1599 p (2.) s cmmi10.329 @sf 23 r 84 c cmsy10.329 @sf 18 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 83 c t-rom.330 @sf 3 r 58 c cmsy10.329 @sf 19 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 400 1606 p (b;t) s cmmi10.329 @sf 440 1599 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 549 1606 p 98 c cmsy10.329 @sf 565 1599 p 103 c cmmi8.300 @sf 588 1606 p 75 c cmmi6.300 @sf 618 1610 p 116 c t-rom.330 @sf 633 1599 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 722 1606 p (b;t) s cmmi10.329 @sf 761 1599 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 870 1606 p 98 c t-rom.330 @sf 886 1599 p 44 c t-ita.330 @sf 16 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1113 1606 p 75 c cmmi6.300 @sf 1143 1610 p (s;t) s t-rom.330 @sf 1867 1599 p (\(4\)) s 87 1690 p (3.) s cmmi10.329 @sf 23 r 83 c cmsy10.329 @sf 22 r 0 c -7 r 33 c cmmi10.329 @sf 5 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 21 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 404 1697 p (b;t) s cmmi10.329 @sf 443 1690 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 552 1697 p 98 c cmsy10.329 @sf 569 1690 p 103 c cmmi8.300 @sf 592 1697 p 75 c cmmi6.300 @sf 622 1701 p 116 c t-rom.330 @sf 637 1690 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 726 1697 p (b;t) s t-rom.330 @sf 765 1690 p 44 c t-ita.330 @sf 15 r 84 c -3 r (om) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 76 c cmmi8.300 @sf 926 1697 p 98 c t-rom.330 @sf 943 1690 p 44 c t-ita.330 @sf 16 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1170 1702 p 75 c cmr6.300 @sf 1202 1692 p 48 c cmmi6.300 @sf 1200 1715 p 98 c t-rom.330 @sf 30 1779 p (In) s 15 r 84 c -2 r (om') s -3 r 115 c 13 r (response,) s 14 r (Sally) s 15 r (checks) s 15 r (that) s 14 r (the) s 14 r (new) s 14 r (key) s 15 r (is) s 14 r (addressed) s 14 r (to) s 15 r (Bob,) s 15 r (and) s 14 r (replaces) s 15 r (Bob') s -2 r 115 c 14 r (name) s 15 r (with) s 30 1835 p 84 c -2 r (om') s -2 r (s.) s 32 r (Then,) s 21 r (Sally) s 20 r (re-encrypts) s 20 r (the) s 19 r (key) s 20 r (under) s 20 r (Bob') s -2 r 115 c 19 r (initial) s 19 r (password) s cmmi10.329 @sf 19 r 75 c cmr8.300 @sf 1426 1820 p 48 c cmmi8.300 @sf 1423 1848 p 98 c t-rom.330 @sf 1445 1835 p 44 c 22 r (which) s 19 r (he) s 20 r (must) s 18 r (provide) s 30 1892 p (personally) s 17 r (\(this) s 17 r (is) s 17 r (the) s 17 r (only) s 17 r (out-of-band) s 18 r (communication) s 15 r (that) s 18 r (the) s 17 r (system) s 17 r (needs\).) s 28 r (When) s 18 r (Bob) s 17 r (gets) s 18 r (his) s 30 1948 p (certi\014cate) s 17 r (and) s 16 r (key) s -2 r 44 c 16 r (he) s 16 r (checks) s 16 r 84 c -2 r (om') s -2 r 115 c 14 r (timestamp) s 14 r (and) s 16 r (checksum,) s 16 r (publishes) s 15 r (the) s 15 r (certi\014cate) s 17 r (in) s 16 r (the) s 16 r (public) s 30 2005 p (directory) s -2 r 44 c 15 r (and) s 15 r (reencrypts) s 15 r (the) s 15 r (key) s 15 r (with) s 15 r 97 c 15 r (new) s 15 r (password.) s 101 2061 p (Still) s 14 r (another) s 15 r (variant) s 15 r (of) s 15 r (the) s 15 r (key-service) s 16 r (protocol) s 14 r (allows) s 15 r (Alice) s 15 r (and) s 15 r (Bob) s 16 r (to) s 14 r (share) s 16 r 97 c 15 r (key) s 15 r 91 c 52 c 1 r 44 c 15 r 56 c (]:) s 87 2149 p (1.) s cmmi10.329 @sf 23 r 65 c cmsy10.329 @sf 12 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 84 c t-rom.330 @sf 6 r 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 404 2156 p (a;t) s cmmi10.329 @sf 447 2149 p 59 c 8 r (A;) s 8 r 76 c cmmi8.300 @sf 554 2156 p 97 c cmsy10.329 @sf 573 2149 p 103 c cmmi8.300 @sf 596 2156 p 75 c cmmi6.300 @sf 626 2160 p 116 c t-rom.330 @sf 642 2149 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 730 2156 p (b;t) s cmmi10.329 @sf 769 2149 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 878 2156 p 98 c cmsy10.329 @sf 894 2149 p 103 c cmmi8.300 @sf 917 2156 p 75 c cmmi6.300 @sf 947 2160 p 116 c t-rom.330 @sf 87 2241 p (2.) s cmmi10.329 @sf 23 r 84 c cmsy10.329 @sf 18 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 65 c t-rom.330 @sf 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 404 2248 p (a;b) s cmmi10.329 @sf 449 2241 p 59 c 8 r (A;) s 8 r 76 c cmmi8.300 @sf 556 2248 p (a;b) s cmsy10.329 @sf 600 2241 p 103 c cmmi8.300 @sf 623 2248 p 75 c cmmi6.300 @sf 653 2254 p (b;t) s t-rom.330 @sf 692 2241 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 780 2248 p (a;b) s cmmi10.329 @sf 826 2241 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 935 2248 p (a;b) s t-rom.330 @sf 979 2241 p 44 c t-ita.330 @sf 16 r (checksum) s cmsy10.329 @sf 103 c cmmi8.300 @sf 1206 2248 p 75 c cmmi6.300 @sf 1236 2252 p (a;t) s t-rom.330 @sf 1867 2241 p (\(5\)) s 87 2333 p (3.) s cmmi10.329 @sf 23 r 65 c cmsy10.329 @sf 12 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 66 c t-rom.330 @sf 2 r 58 c cmsy10.329 @sf 21 r 102 c t-ita.330 @sf (msg) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 65 c cmsy10.329 @sf 103 c cmmi8.300 @sf 526 2340 p 75 c cmmi6.300 @sf 556 2346 p (a;b) s t-rom.330 @sf 600 2333 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 688 2340 p (a;b) s cmmi10.329 @sf 733 2333 p 59 c 8 r (A;) s 8 r 76 c cmmi8.300 @sf 840 2340 p (a;b) s cmsy10.329 @sf 884 2333 p 103 c cmmi8.300 @sf 907 2340 p 75 c cmmi6.300 @sf 937 2346 p (b;t) s t-rom.330 @sf 30 2421 p (As) s 16 r (before,) s 18 r (Alice) s 16 r (should) s 16 r (timestamp) s 14 r (her) s 17 r (message.) s 25 r (This) s 15 r (protocol) s 16 r (readily) s 16 r (generalizes) s 17 r (to) s 16 r (allow) s 16 r (Alice) s 16 r (to) s 30 2478 p (share) s 18 r 97 c 18 r (key) s 18 r (with) s 17 r (Bob,) s 18 r (Carl,) s 20 r (...) s 29 r 44 c 19 r (and) s 17 r (Zack;) s 38 r (she) s 18 r (presents) s 17 r 84 c -2 r (om) s 16 r (with) s cmmi10.329 @sf 17 r 78 c t-rom.330 @sf 22 r (private-key) s 17 r (certi\014cates,) s 20 r (and) s 30 2534 p (receives) s cmmi10.329 @sf 16 r 78 c t-rom.330 @sf 20 r (copies) s 14 r (of) s 16 r (the) s 15 r (new) s 15 r (key) s cmmi10.329 @sf 15 r 75 c cmmi8.300 @sf 719 2541 p (a;:::;z) s t-rom.330 @sf 806 2534 p 46 c 964 2659 p 50 c @eop 1 @bop0 /Times-Roman /t-rom.510 ReEncodeForTeX /t-rom.510 /t-rom.510 70.568701 TeXPSmakefont def /Times-Roman /t-rom.360 ReEncodeForTeX /t-rom.360 /t-rom.360 49.813200 TeXPSmakefont def /Times-Bold /t-bol.300 ReEncodeForTeX /t-bol.300 /t-bol.300 41.511000 TeXPSmakefont def /cmr10.329 @newfont cmr10.329 @sf [<78FCFCFCFC78000000000000000078FCFCFCFC78> 6 20 -3 0 13] 58 @dc 1 @bop1 t-rom.510 @sf 313 254 p (Network) s 24 r (Security) s 25 r (via) s 23 r (Private-Key) s 26 r (Certi\014cates) s t-rom.360 @sf 683 381 p (Don) s 16 r (Davis) s 17 r (and) s 17 r (Ralph) s 16 r (Swick) s 770 483 p (MIT) s 17 r (Project) s 16 r (Athena) s t-bol.300 @sf 898 638 p (Abstract) s t-rom.300 @sf 206 704 p 87 c -2 r 101 c 13 r (present) s 14 r (some) s 14 r (practical) s 14 r (security) s 13 r (protocols) s 12 r (that) s 13 r (use) s 14 r (private-key) s 13 r (encryption) s 12 r (in) s 13 r (the) s 14 r (public-key) s 144 753 p (style.) s 34 r (Our) s 19 r (system) s 20 r (combines) s 19 r 97 c 20 r (new) s 20 r (notion) s 17 r (of) s t-ita.300 @sf 19 r (private-key) s 20 r (certi\014cates) s t-rom.300 @sf 44 c 21 r 97 c 20 r (simple) s 19 r (key-translation) s 144 803 p (protocol,) s 11 r (and) s 11 r (key-distribut) s -1 r (ion.) s 16 r (These) s 13 r (certi\014cates) s 12 r (can) s 13 r (be) s 12 r (administered) s 11 r (and) s 12 r (used) s 11 r (much) s 12 r (as) s 13 r (public-key) s 144 853 p (certi\014cates) s 17 r (are,) s 18 r (so) s 16 r (that) s 15 r (users) s 17 r (can) s 16 r (communicate) s 17 r (securely) s 17 r (while) s 15 r (sharing) s 16 r (neither) s 15 r (an) s 17 r (encryption) s 14 r (key) s 144 903 p (nor) s 13 r 97 c 14 r (network) s 13 r (connection.) s t-rom.330 @sf 101 989 p (Suppose) s 18 r (as) s 19 r (usual) s 18 r (that) s 18 r (Alice) s 18 r (and) s 19 r (Bob) s 19 r (want) s 18 r (to) s 18 r (communicate) s 18 r (securely) s -2 r 46 c 30 r (Conventional) s 18 r (private-key) s 30 1046 p (authentication) s 14 r (requires) s 16 r (that) s 15 r (they) s 15 r (share) s 16 r 97 c 16 r (secret) s 17 r (key) s -2 r 44 c 15 r (but) s 15 r (if) s 15 r (instead) s 15 r (each) s 16 r (shares) s 16 r 97 c 16 r (key) s 16 r (with) s 15 r 97 c 15 r (translator) s 30 1102 p 84 c -2 r (om,) s 16 r (Alice) s 16 r (and) s 17 r (Bob) s 17 r (can) s 17 r (avoid) s 16 r (sharing) s 16 r (directly) s 16 r (by) s 17 r (using) s 15 r 84 c -2 r (om) s 15 r (as) s 17 r (an) s 16 r (intermediary) s 16 r 91 c 57 c 1 r 44 c 17 r 49 c -1 r 49 c -1 r 44 c 17 r 53 c 44 c 17 r 50 c -1 r (].) s 26 r (Bob) s 30 1159 p (writes) s 11 r 97 c 12 r (message) s 11 r (for) s 12 r (Alice,) s 12 r (but) s 11 r (encrypts) s 11 r (it) s 11 r (for) s 12 r 84 c -2 r (om') s -2 r 115 c 9 r (eyes) s 12 r (only;) s 11 r (when) s 12 r (Alice) s 11 r (wants) s 11 r (to) s 11 r (read) s 12 r (this) s 11 r (message,) s 30 1215 p (she) s 17 r (asks) s 18 r 84 c -2 r (om) s 15 r (to) s 17 r (translate) s 17 r (its) s 17 r (encryption) s 17 r (into) s 17 r (her) s 17 r (key) s -2 r 46 c 27 r 84 c -2 r (om) s 16 r (is) s 17 r (trusted) s 16 r (not) s 17 r (only) s 17 r (to) s 17 r (keep) s 18 r (the) s 17 r (message) s 30 1271 p (secret,) s 16 r (but) s 15 r (also) s 14 r (to) s 15 r (sign) s 15 r (the) s 15 r (message) s 14 r (as) s 16 r (Bob') s -2 r 115 c 15 r (proxy:) s 87 1356 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 65 c cmr10.329 @sf 13 r 58 c cmsy10.329 @sf 12 r 102 c cmmi10.329 @sf 65 c t-rom.330 @sf 44 c t-ita.330 @sf 15 r (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 531 1363 p 75 c cmmi6.300 @sf 561 1369 p (b;t) s t-rom.330 @sf 87 1446 p (2.) s cmmi10.329 @sf 23 r 65 c cmsy10.329 @sf 12 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 84 c cmr10.329 @sf 19 r 58 c cmsy10.329 @sf 12 r 102 c cmmi10.329 @sf 65 c t-rom.330 @sf 44 c t-ita.330 @sf 15 r (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 527 1453 p 75 c cmmi6.300 @sf 557 1459 p (b;t) s t-rom.330 @sf 596 1446 p 44 c t-ita.330 @sf 15 r 66 c t-rom.330 @sf 1217 r (\(1\)) s 87 1536 p (3.) s cmmi10.329 @sf 23 r 84 c cmsy10.329 @sf 18 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 65 c cmr10.329 @sf 13 r 58 c cmsy10.329 @sf 12 r 102 c t-ita.330 @sf (msg) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 66 c cmsy10.329 @sf 2 r 103 c cmmi8.300 @sf 529 1543 p 75 c cmmi6.300 @sf 559 1547 p (a;t) s t-rom.330 @sf 30 1620 p (Here,) s 14 r (the) s 13 r (key) s cmmi10.329 @sf 13 r 75 c cmmi8.300 @sf 330 1627 p (b;t) s t-rom.330 @sf 382 1620 p (is) s 12 r (known) s 12 r (only) s 12 r (to) s 13 r (Bob) s 13 r (and) s 12 r 84 c -2 r (om.) s 18 r 84 c -2 r (om) s 11 r (receives) s 14 r (and) s 12 r (decrypts) s 13 r 97 c 13 r (message) s 13 r (addressed) s 12 r (to) s 30 1677 p (Alice;) s 14 r (before) s 14 r (re-encrypting) s 14 r (this) s 13 r (with) s 12 r (Alice') s -2 r 115 c 13 r (key) s cmmi10.329 @sf 14 r 75 c cmmi8.300 @sf 982 1684 p (a;t) s t-rom.330 @sf 1025 1677 p 44 c 15 r (he) s 13 r (replaces) s 15 r (Alice') s -2 r 115 c 13 r (name) s 13 r (as) s 14 r (the) s 14 r (addressee) s 14 r (with) s 30 1733 p (Bob') s -2 r 115 c 16 r (name.) s 22 r (Alice) s 16 r (will) s 15 r (read) s 17 r (this) s 15 r (as) s 16 r (proof) s 16 r (of) s 16 r (Bob') s -2 r 115 c 15 r (authorship.) s 22 r (Alice) s 16 r (and) s 16 r (Bob) s 16 r (can) s 16 r (use) s 16 r (an) s 16 r (encrypted) s 30 1790 p (timestamp) s 13 r (to) s 15 r (protect) s 15 r (against) s 15 r (replay) s -2 r 46 c 101 1846 p 87 c -3 r 101 c 19 r (now) s 19 r (describe) s 19 r (an) s 20 r (economical) s 19 r (way) s 19 r (of) s 20 r (scaling) s 18 r (up) s 20 r (such) s 19 r 97 c 19 r (key-translation) s 19 r (service.) s 33 r (So) s 20 r (far) s -1 r 44 c 21 r (we) s 30 1903 p (haven') s 116 c 14 r (described) s 16 r (how) s 14 r (the) s 16 r (translator) s 14 r 84 c -2 r (om) s 14 r (knows) s 14 r (his) s 15 r (clients') s 14 r (keys,) s 16 r (but) s 14 r (we've) s 16 r (implicitly) s 13 r (assumed) s 14 r (that) s 30 1959 p (he) s 12 r (keeps) s 12 r (them) s 11 r (in) s 12 r 97 c 12 r (database.) s 20 r (This) s 11 r (is) s 11 r (impractical) s 12 r (in) s 11 r (the) s 12 r (lar) s (ge,) s 12 r (because) s 13 r (it') s -2 r 115 c 10 r (dif) s (\014cult) s 11 r (and) s 12 r (risky) s 11 r (to) s 12 r (replicate) s 30 2016 p (the) s 18 r (database) s 18 r (for) s 17 r (duplicate) s 18 r (translators.) s 27 r (So,) s 19 r (we) s 18 r (disperse) s 18 r (the) s 17 r (database) s 18 r (by) s 17 r (publishing) s 16 r (the) s 18 r (keys) s 17 r (under) s 18 r 97 c 30 2072 p (master) s (-key') s -2 r 115 c 14 r (encrypted) s 15 r (protection.) s 20 r (It) s 15 r (now) s 15 r (falls) s 15 r (to) s 14 r (Alice) s 15 r (to) s 15 r (provide) s 15 r (Bob') s -2 r 115 c 15 r (key) s 15 r (and) s 15 r (her) s 16 r (own) s 14 r (to) s 15 r 84 c -2 r (om:) s 87 2157 p (1.) s cmmi10.329 @sf 23 r 66 c cmsy10.329 @sf 15 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 65 c t-rom.330 @sf 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 65 c t-rom.330 @sf 44 c t-ita.330 @sf 15 r (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 526 2164 p 75 c cmmi6.300 @sf 556 2170 p (b;t) s t-rom.330 @sf 87 2247 p (2.) s cmmi10.329 @sf 23 r 65 c cmsy10.329 @sf 12 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 84 c t-rom.330 @sf 6 r 58 c cmsy10.329 @sf 20 r 102 c cmmi10.329 @sf 65 c t-rom.330 @sf 44 c t-ita.330 @sf 16 r (msg) s cmsy10.329 @sf 103 c cmmi8.300 @sf 523 2254 p 75 c cmmi6.300 @sf 553 2260 p (b;t) s t-rom.330 @sf 591 2247 p 44 c cmsy10.329 @sf 15 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 679 2254 p (b;t) s cmmi10.329 @sf 718 2247 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 827 2254 p 98 c cmsy10.329 @sf 844 2247 p 103 c cmmi8.300 @sf 867 2254 p 75 c cmmi6.300 @sf 897 2258 p 116 c t-rom.330 @sf 912 2247 p 44 c cmsy10.329 @sf 16 r 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 1001 2254 p (a;t) s cmmi10.329 @sf 1043 2247 p 59 c 8 r (A;) s 8 r 76 c cmmi8.300 @sf 1150 2254 p 97 c cmsy10.329 @sf 1170 2247 p 103 c cmmi8.300 @sf 1193 2254 p 75 c cmmi6.300 @sf 1223 2258 p 116 c t-rom.330 @sf 1867 2247 p (\(2\)) s 87 2337 p (3.) s cmmi10.329 @sf 23 r 84 c cmsy10.329 @sf 18 r 0 c -7 r 33 c cmmi10.329 @sf 13 r 65 c t-rom.330 @sf 58 c cmsy10.329 @sf 20 r 102 c t-ita.330 @sf (msg) s t-rom.330 @sf 44 c cmmi10.329 @sf 15 r 66 c cmsy10.329 @sf 2 r 103 c cmmi8.300 @sf 524 2344 p 75 c cmmi6.300 @sf 554 2348 p (a;t) s t-rom.330 @sf 30 2421 p (The) s 21 r (key) s cmmi10.329 @sf 21 r 75 c cmmi8.300 @sf 248 2428 p 116 c t-rom.330 @sf 283 2421 p (is) s 20 r 84 c -2 r (om') s -2 r 115 c 19 r (master) s (-key) s -2 r 44 c 20 r (and) s 21 r (is) s 20 r (known) s 21 r (only) s 20 r (to) s 20 r (him) s 20 r (and) s 21 r (his) s 20 r (clones.) s 37 r (The) s 21 r (encrypted) s 21 r (key) s cmsy10.329 @sf 30 2478 p 102 c cmmi10.329 @sf 75 c cmmi8.300 @sf 92 2485 p (b;t) s cmmi10.329 @sf 131 2478 p 59 c 8 r 66 c 2 r 59 c 8 r 76 c cmmi8.300 @sf 240 2485 p 98 c cmsy10.329 @sf 256 2478 p 103 c cmmi8.300 @sf 279 2485 p 75 c cmmi6.300 @sf 309 2489 p 116 c t-rom.330 @sf 338 2478 p (is) s 12 r (Bob') s -2 r 115 c t-ita.330 @sf 12 r (private-key) s 13 r (certi\014cate) s t-rom.330 @sf 13 r 91 c 52 c 44 c 13 r 49 c (];) s 27 r (it) s 12 r (is) s 12 r 97 c 13 r (published) s 11 r (message) s 13 r (from) s 12 r 84 c -2 r (om) s 11 r (to) s 13 r (himself,) s 30 2534 p (reminding) s 14 r (him) s 14 r (that) s cmmi10.329 @sf 15 r 75 c cmmi8.300 @sf 442 2541 p (b;t) s t-rom.330 @sf 496 2534 p (is) s 15 r (Bob') s -2 r 115 c 15 r (key) s 15 r (during) s 15 r (the) s 15 r (certi\014cate') s -2 r 115 c 15 r (lifetime) s cmmi10.329 @sf 15 r 76 c cmmi8.300 @sf 1365 2541 p 98 c t-rom.330 @sf 1382 2534 p 46 c 964 2659 p 49 c @eop @end