[114687] in cryptography@c2.net mail archive
Re: TLS-SRP & TLS-PSK support in browsers (Re: Dutch Transport Card Broken)
daemon@ATHENA.MIT.EDU (=?UTF-8?Q?Ivan_Krsti=C4=87?=)
Wed Feb 6 13:23:17 2008
Cc: Frank Siebenlist <franks@mcs.anl.gov>,
Peter Gutmann <pgut001@cs.auckland.ac.nz>,
cryptography@metzdowd.com
From: =?UTF-8?Q?Ivan_Krsti=C4=87?= <krstic@solarsail.hcs.harvard.edu>
To: Ian G <iang@systemics.com>
In-Reply-To: <47A38241.4040600@systemics.com>
Date: Mon, 4 Feb 2008 05:54:06 -0500
On Feb 1, 2008, at 9:34 PM, Ian G wrote:
> * Browser vendors don't employ security people as we know them on =20
> this mailgroup [...] But they are completely at sea when it comes =20
> to systemic security failings or designing new systems.
I don't know about other browsers, but Mozilla's CSO-type is Window =20
Snyder who I'd easily describe as a pretty top-notch "security person".
--
Ivan Krsti=C4=87 <krstic@solarsail.hcs.harvard.edu> | http://radian.org=
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com