silly question here: by creating and serving the client private RSA key, wouldn’t it be a security…
Nicolas Santini

It is really important to store private key in security place. In this example we just put the key to text area for comfortable work with an article example. In fact we should store private key closed with password and it shouldn’t be accessed by anyone, besides client side. Otherwise, sniffer can really decode our aes key and receive access to encrypted messages.

