[13464] in cryptography@c2.net mail archive
Re: Maybe It's Snake Oil All the Way Down
daemon@ATHENA.MIT.EDU (James A. Donald)
Fri Jun 6 14:46:47 2003
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Wed, 04 Jun 2003 16:25:29 -0700
From: "James A. Donald" <jamesd@echeque.com>
In-reply-to: <kj65nlakun.fsf@romeo.rtfm.com>
To: EKR <ekr@rtfm.com>
Cc: pgut001@cs.auckland.ac.nz (Peter Gutmann),
bill.stewart@pobox.com, cryptography@metzdowd.com,
cypherpunks@lne.com, rsalz@datapower.com, sguthery@mobile-mind.com
--
James A. Donald
> > Or to say the same thing in different words -- why can't
> > HTTPS be more like SSH? Why are we seeing a snow storm
> > of scam mails trying to get us to login to e-g0ld.com?
Eric Rescorla
> Because HTTPS is designed to let you talk to people you've
> never talked before, which is an inherently harder problem
> than allowing you to talk to people you have.
In attempting to solve the hard problem, it fails to make
provision for solving the easy problem.
--digsig
James A. Donald
6YeGpsZR+nOTh/cGwvITnSR3TdzclVpR0+pr3YYQdkG
bZy6QJLI0fL6IOhhS8lxNx/EUctBs0cj1se8YRt5
4LvAbyVinp/3mbNkE+8/qx6UYDSxykTEFMpTXzsoD
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com