[OTR-dev] Extra symmetric key

Kjell Braden kb at pentabarf.de
Mon Jan 14 12:04:38 EST 2013


On 01/14/2013 05:36 PM, Dev Random wrote:
> On 01/14/2013 03:34 AM, Kjell Braden wrote:
>> [sent this off-list earlier, sorry]
>>
>> The TLV8 is used to indicate to your partner's client that you intend
>> to use the key, not to exchange key material (both sides know the key
>> already). The contents are entirely application-defined.
>
> Yes, I realize that.  But what is the point of the key, if the content
> of the TLV is *already encrypted* with the message key?
>
> Is the extra key meant to be used for out of band data?

Yes, the key is not meant to be used in OTR-encrypted messages.

-- 
  Kjell



More information about the OTR-dev mailing list