nanog mailing list archives

Re: PGP/SSL/TLS really as secure as one thinks?


From: David Walker <davidianwalker () gmail com>
Date: Sat, 8 Jun 2013 07:13:46 +0930

On 08/06/2013, Jeroen Massar <jeroen () massar ch> wrote:
On 2013-06-07 06:50, Dan White wrote:
[..]

A nice 'it is Friday' kind of thought....

Caring about secrecy (or obscurity) of algorithms is a fools errand.
http://en.wikipedia.org/wiki/Kerckhoffs%27s_principle

Taking Shannon's maxim "the enemy knows the system" to it's ultimate
conclusion, the NSA put a premium on any and all looking at their
algorithms. They'd prefer us to have a crack or they're not doing
their job.

As you say, they "have the top crypto people in the world" and this is
a cherished paradigm of doing business in crypto land.
Any useful system will survive that process.


Current thread: