Product Code Database
Example Keywords: gloves -underpants $46
   » » Wiki: Session Key
Tag Wiki 'Session Key'.
Tag

Session key
 (

Rank: 100%
Bluestar Bluestar Bluestar Bluestar Blackstar

A session key is a single-use used for all in one communication session. A closely related term is content encryption key ( CEK), traffic encryption key ( TEK), or key which refers to any key used for encrypting messages, contrary to other uses like encrypting other keys ( key encryption key ( KEK) or key encryption has been made public key).

Session keys can introduce complications into a system, yet they solve some real problems. There are two primary reasons to use session keys:

  1. Several cryptanalytic attacks become easier the more material encrypted with a specific key is available. By limiting the amount of data processed using a particular key, those attacks are rendered harder to perform.
  2. Asymmetric encryption is too slow for many purposes, and all secret key algorithms require that the key is securely distributed. By using an asymmetric algorithm to encrypt the secret key for another, faster, symmetric algorithm, it's possible to improve overall performance considerably. This is the process used by TLS and by PGP.OpenPGP http://tools.ietf.org/html/rfc9580

Like all cryptographic keys, session keys must be chosen so that they cannot be predicted by an attacker, usually requiring them to be chosen randomly. Failure to choose session keys (or any key) properly is a major (and too common in actual practice) design flaw in any crypto system.


See also

Page 1 of 1
1
Page 1 of 1
1

Account

Social:
Pages:  ..   .. 
Items:  .. 

Navigation

General: Atom Feed Atom Feed  .. 
Help:  ..   .. 
Category:  ..   .. 
Media:  ..   .. 
Posts:  ..   ..   .. 

Statistics

Page:  .. 
Summary:  .. 
1 Tags
10/10 Page Rank
5 Page Refs
1s Time