RE: Re: Confidentiality of TLS keying information for wireless
From: Bernard Aboba (abobainternaut.com)
Date: Tue, 10 Aug 2004 10:18:30 -0400 (EDT)
> From your comments about section 3, I would be concerned as to whether
> the "Certificate message" sent from the server was encrypted and if so
> with what key?

In the TLS protocol, the Certificate message from the server is not
encrypted, since at that point a key has not been derived.

> Also from your comments about section 4, I would be concerned as to
> whether the "Certificate message" from the client to server was
> encrypted.

Typically the client Certificate message is sent prior to turning on
encryption, so that the client identity is not private.  If privacy is
desired, then it is possible for the server to wait until an encrypted
channel has been brought up to send a CertificateRequest.  I am not sure
whether privacy is supported by all TLS implementations.

Results generated by Tiger Technologies using MHonArc.