Changes

Jump to: navigation, search

Identity/AttachedServices/KeyServerProtocol

3 bytes added, 06:16, 1 August 2013
m
Obtaining keys kA and kB
[[File:PICL-IdPAuth-keys-client.png|keyFetchToken: client decrypts keys]]
Finally, the server-provided wrap(kB) value is simply XORed with the password-derived wrapKey unwrapBKey (both are 32-byte strings) to obtain kB. There is no MAC on wrap(kB).
[[File:PICL-IdPAuth-key-unwrap.png|unwrapping kB]]
Confirm
471
edits

Navigation menu