[Cryptography] Large companies sued for using Elliptic Curve TLS?

Phillip Hallam-Baker phill at hallambaker.com
Tue Dec 1 08:09:53 EST 2015


On Tue, Dec 1, 2015 at 7:07 AM, Perry E. Metzger <perry at piermont.com> wrote:

> Anyone know anything about this? The claim is huge numbers of
> companies (that is, end users like Macy's and GoPro) are being sued by
> a patent troll for using elliptic curve cryptography on their web
> sites.
>
> http://www.theregister.co.uk/2015/12/01/cryptopeak_sues_/
>
> If this is true, it could be a very serious situation.
>
>
The claims all specify a proof that the keys were generated with a specific
algorithm.

As DJB points out 'nobody does that'.

It might be something you should arguably do for ECDHE but the spec doesn't
support that.

https://patents.google.com/patent/US6202150B1/en
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20151201/f8ea07f9/attachment.html>


More information about the cryptography mailing list