From the course: CISSP Cert Prep (2021): 3 Security Architecture and Engineering

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Trust models

Trust models

- [Instructor] Any cryptographic system depends upon some degree of trust. Earlier in this course, I discussed how strong cryptography depends upon a secure key exchange process. The two people communicating must be confident that they are really communicating with each other and not an impersonator and that nobody is able to eavesdrop on the communication where they exchange encryption keys. The Diffie-Hellman key exchange protocol helps us with preventing eavesdropping, but we still need some way to ensure that we're not communicating with an imposter. In asymmetric cryptography, every user possesses a personal secret key that they don't share with anyone else. They can share their public keys freely so there's no risk of eavesdropping. These two factors combined to eliminate the need for eavesdropping protection during key exchange. However, we still need to worry about imposters. How do we know that the person…

Contents