[145530] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Five Theses on Security Protocols

daemon@ATHENA.MIT.EDU (Chris Palmer)
Sat Jul 31 18:05:10 2010

Date: Sat, 31 Jul 2010 12:35:23 -0700
From: Chris Palmer <chris@noncombatant.org>
To: "Perry E. Metzger" <perry@piermont.com>
Cc: cryptography@metzdowd.com
In-Reply-To: <20100731123239.2efc2f51@jabberwock.cb.piermont.com>

Usability engineering requires empathy. Isn't it interesting that nerds
built themselves a system, SSH, that mostly adheres to Perry's theses? We
nerds have empathy for ourselves. But when it comes to a system for other
people, we suddenly lose all empathy and design a system that ignores
Perry's theses.

(In an alternative scenario, given the history of X.509, we can imagine that
PKI's woes are due not to nerd un-empathy, but to
government/military/hierarchy-lover un-empathy. Even in that scenario, nerd
cooperation is necessary.)

The irony is, normal people and nerds need systems with the same properties,
for the same reasons.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post