553
Order (programming.dev)
you are viewing a single comment's thread
view the rest of the comments
[-] koper@feddit.nl 24 points 1 year ago

The real question is do you encrypt-and-sign or sign-and-encrypt?

[-] Eufalconimorph@discuss.tchncs.de 31 points 1 year ago

Encrypt then sign. Always authenticate before any other operations like decryption. Don't violate the cryptographic doom principle.

[-] tvbusy@lemmy.dbzer0.com 29 points 1 year ago

Encrypt then sign. Verification is often much faster than (or at worst as fast as) decryption. Signature can also be verified without decryption key, making it possible to verify the data along the way.

this post was submitted on 10 Aug 2023
553 points (97.9% liked)

Programmer Humor

19198 readers
1123 users here now

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

founded 1 year ago
MODERATORS