RSSMicro.com Search - RSS Feed Search Engine - RSS Feed Directory
Dedicated RSS Feed Search Engine
 Search 2.1 million RSS feeds
The most comprehensive RSS feed search on the web
Top Stories  |  FeedRank Checker

Published

   Last Hour

   Last Day

   Past Week

   Past Month

 Anytime







Featured
RSS Feeds


CNN RSS Feeds

Reuters RSS Feeds

MSNBC RSS Feeds

New York Times RSS Feeds

Washington Post RSS Feeds

CNBC RSS Feeds

ABC News RSS Feeds

Fox News RSS Feeds

Sky News RSS Feeds

Forbes RSS Feeds

CNET RSS Feeds

Unicef RSS Feeds

PBS RSS Feeds

Wall Street Journal RSS Feeds

Financial Times RSS Feeds

Business Week RSS Feeds

Bloomberg RSS Feeds

TheStreet RSS Feeds

ESPN RSS Feeds

   


Calculate your site FeedRank Today

FeedRank - RSSMicro Search

FeedRank, a newly developed algorithm for ranking RSS feeds only on RSSMicro
Click here to learn more




FeedRank: 6/10  6/10  Very Good  ---  feeds.macuser.com
News, info, and opinion by Mac users, for Mac users. ...

 

 
Thursday, May 15, 2008 --- 70 days ago
Apple authenticates itself to users using a PGP key and updates it every two years. I’ve probably written about this before, but the quick version is that authentication security is based on asymmetric keys. In other words, pairs of keys are used, one public and one private. Apple holds onto the private one not telling it to anyone. The public one is listed here . The key (pun unintended) of this is that something encrypted one key can be unencrypted by the other. By encrypting a message (or some version thereof, like a hashed version) using the private key, we can check that Apple sent the message by decrypting with the public key. If the two match up, Apple wrote it. No one but Apple knows the private key, therefore if the public key decrypts it, Apple must have written it. Now, given enough time, brute force methods could discover the private key (how long is up to theorists to decide). Therefore, Apple spawns a new key pair every two years, effectively removing that threat. Apple puts the new public key on its website (which we have an expectation that it isn’t hacked) and sends it out in email, authenticating it with the old key (making that the final use). Now you can verify those security mailing list messages from Apple and know why it works. Don’t you feel better? Primary category: Security Read - Comments (0) Copyright Mac Publishing LLC. This RSS feed is for personal non-commerc ...




Recent Posts





 Facebook     Del.icio.us     Digg     StumbleUpon     Reddit     Google
Copyright © 2008 RSSMicro.com