Great Circle Associates Firewalls
(July 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: CISCO network level encryption & key lengths
From: peter @ baileynm . com (Peter da Silva)
Date: Fri, 12 Jul 1996 10:02:33 -0500 (CDT)
To: ckostick @ ashton . csc . com (Chris Kostick)
Cc: adam @ homeport . org, firewalls @ GreatCircle . COM
In-reply-to: <199607120149 . VAA17727 @ mccoy . ashton . csc . com> from "Chris Kostick" at Jul 11, 96 09:49:31 pm

> This is kind of the point I'm driving at. Any bad guy won't do this. The 
> bad guys in question here aren't trying to look at love letters. They want
> to steal some serious information if they're going to the trouble of
> attacking an encryption code. Therefore, I don't think the bad guys would
> risk using other peoples machines to do this.

You underestimate loonies.

Dimitri Vulis forged hundreds of obscene solicitations in the name of one
of Jan Isley's associates to get Jan kicked off Emory University's system.
If someone crazy enough decides you're interesting cracking a lab full of
workstations is nothing. That's way less obtrusive than what Vulis did.

You're also forgetting the massive growth in computer power. "A lab full of
machines" will be "one hot system" in five years, and "everyone's kid's
videogame console" in ten. So if you have a secret that's not going to be
worth anything in five years be my guest and use a 40 bit cypher.



References:
Indexed By Date Previous: POP exploits
From: Rob Sansom <sansom @ connectix . com>
Next: A little off topic - BIOS details for security
From: Kaustubh Kundu <kkundu @ giascl01 . vsnl . net . in>
Indexed By Thread Previous: Re: CISCO network level encryption & key lengths
From: Adam Shostack <adam @ homeport . org>
Next: RE: CISCO network level encryption & key lengths
From: Jim Minie <jminie @ earthlink . net>

Google
 
Search Internet Search www.greatcircle.com