40 likes | 155 Vues
This document introduces a transport-independent mechanism for distributing symmetric keys to groups of users, utilizing Cryptographic Message Syntax (CMS). It focuses on efficiently managing group membership through established techniques like listserv and majordomo, avoiding the need to develop new systems from scratch. Key Management Agents and Group Management Agents interact to facilitate the secure distribution of keys, ensuring that all group members can access shared encryption resources seamlessly.
E N D
SMIME: Symmetric Key Distribution draft-ietf-smime-symkeydist-00.txt Sean Turner <turners@ieca.com>
Design Goals • Want a transport independent mechanism for distribution of symmetric keys to a group of users. • The mechanism must use CMS. • Reuse group/list management techniques (listserv, majordomo, etc.) • Didn’t want to reinvent the wheel, but …
Architecture +----------------------+ | Key Management Agent | +----------------------+ | +------------------+ | Group Management | | Agent | | +-------+ | | | Group | | | |List(s)| | | +-------+ | | / | \ | +------------------+ / | \ / | \ +----------+ +---------+ +----------+ | Member 1 | | ... | | Member n | +----------+ +---------+ +----------+
+----------+ +----------+ | GL Owner | <---+ +----> | Member 1 | +----------+ | | +----------+ | | +-----+ +-----+ <-+ | +----------+ | KMA | <-------> | GMA | <-----------+----> | ... | +-----+ +-----+ | +----------+ | | +----------+ +----> | Member n | +----------+ Protocol Interactions