• @[email protected]
    link
    fedilink
    English
    51 day ago

    I’m far from an expert on PKI, but isn’t the keypair used for the cert used for key exchange? Then in theory, if that key was compromised, it could allow an adversary to be able to capture and decrypt full sessions.

    • jonw
      link
      fedilink
      English
      31 day ago

      No. Perfect Forward Secrecy (ephemeral keys) prevents this type of replay.

    • @[email protected]
      link
      fedilink
      English
      51 day ago

      Im also not an expert but i believe since there Is still an ephemeral DH key exchange happening an attacker needs to actively MITM while having the certificate private key to decrypt the session. Passive capturing wont work

    • @TheKMAP
      link
      English
      21 day ago

      Have you read about perfect forward secrecy?