2 msgUse same key for S/MIME and OpenPGP
12 msgSecret key holder identity (was: Local file enc...
1 msgKey signing at FOSDEM
5 msgLocal file encryption
10 msgKeyserver refresh period after gpg --send-keys
2 msgProblem with Evolution
14 msgGnuPG v2.0.2 MAC OS install - TESTING NEEDED!
3 msgGnuPG, Thunderbird, and Armor Headers From PGP 9.5
2 msgOpenPGP Card Digest Algorithms
4 msgGPG4Win keys not appearing
15 msgstoring password lists in mails to myself on IMAP?
3 msgpublic keys newbie question
7 msgRe: Compiling GnuPG 2.0.1 on MacOS X
12 msgexternal pinpad, gnupg, SPR532 PinPad SmartCard...
8 msgSending Public Key
1 msgnew (2007-02-04) keyanalyze results (+sigcheck)

Newbie question
\ Antonio Bleile (9 Feb 2007)
. \ Antonio Bleile (9 Feb 2007)
. \ Werner Koch (9 Feb 2007)
. . \ Antonio Bleile (9 Feb 2007)
. \ Hans Ekbrand (9 Feb 2007)
. \ Werner Koch (9 Feb 2007)
. . \ NikNot (19 Feb 2007)
. \ Todd Hesla (29 Nov 2007)

1 msgRandom numbers
3 msgA question...
8 msgGnuPG on MS Vista
Subject:Newbie question
Group:Gnupg-users
From:Antonio Bleile
Date:9 Feb 2007


 
Hi all,

I have a question concerning an "unusual" way of using gnuPG...
I don't want to encrypt emails, I just want to encrypt binary
data and deliver that over the internet. Consider the following
scenario: I have a program that gets deliverd to various clients.
The program is a viewer for 3d models. The viewer can load and
display various types of input formats (e.g. CAD models). It
can also load models directly from a URL. Now we'd like to put
some cool models on our web page but we don't want people to
disassemble the file and thus getting to the mathematic definition
of a CAD model (people giving you a CAD model of e.g. a brandnew
car are very concerned about their data!!!). So I thought to
protect the data with public/private key encryption. We encrypt
the data with a private key and put the result on our server.
Our viewer contains the public key for decryption. You might
say that it's easy to get to the data anyway, you just
have to dump the memory of the program after the data has
been decypted.... But that requires some higher "criminal energy",
and I think I can live with the risk...

- So actually, my question is: Does this approach make any sense
for you crypto-gurus out there? (Please forgive me my ignorance,
I have just a vague memory of my cryptography lessons...).
- Does libcrypt do the job?
- The CAD data may contain a fixed header, so an atacker knowing
the header might use this info to easily get the private key?

Thank you and kind regards,

Toni


_______________________________________________
Gnupg-users mailing list
Gnupg-users
http://lists.gnupg.org/mailman/listinfo/gnupg-users


© 2004-2008 readlist.com