Thanks for the link to SPKI.  Until I get a chance to read that, here
are two questions about lsh_keygen:

Is it useful without lsh_writekey?  That is, would it be reasonable to
do something like "lsh_keygen > keypair" and store the SPKI s-expressions
in a raw form?

Would doing the above be a security problem?

Unless the answers to the these are "YES" and "NO", I think splitting the
functionality into two programs might be a mistake.  I understand you
are going for the unix philosophy, but if there is a conflict between that
and good security, I think security must win.

Thanks,
Tom Proett

-- 
[EMAIL PROTECTED]
NASA Ames Research Center

Reply via email to