Session-Layer Encryption

Matt Blaze and Steven M. Bellovin
<{mab, smb}>
AT&T Bell Laboratories


We describe mechanisms for practical session-layer security for Internet-based terminal sessions. We discuss the tradeoffs of providing security at various layers of abstractions, from the network to the session layer. We describe two new mechanisms: our encrypting, authenticating telnet and our encrypted session manager (esm).

