[11650] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Cryptogram: Palladium Only for DRM

daemon@ATHENA.MIT.EDU (Greg Rose)
Mon Sep 16 22:50:24 2002

Date: Tue, 17 Sep 2002 10:12:25 +1000
To: AARG!Anonymous <remailer@aarg.net>
From: Greg Rose <ggr@qualcomm.com>
Cc: ggr@qualcomm.com, cryptography@wasabisystems.com
In-Reply-To: <a1020460bf5f784c6f5af1822e7b1e50@aarg.net>

At 04:47 PM 9/16/2002 -0700, AARG! Anonymous wrote:
> From what has been said by Microsoft about Palladium, it is not true that
>Pd prevents users from auditing the program.  While it is on the disk,
>the program is an ordinary file and not encrypted [1].  This will allow
>it to be disassembled and inspected.

... and how long before someone realises that it can be a five line 
program, that says "load this 3 Mb buffer from this encrypted data file, 
then jump to it"?

You also didn't address the point that the user's copy of the auditable 
data is no longer accessible to the user, making a mockery of the audit 
process.

Your rebuttal lacks substance. The issue is loss of control and accountability.

Greg.

Greg Rose                                       INTERNET: ggr@qualcomm.com
Qualcomm Australia          VOICE:  +61-2-9817 4188   FAX: +61-2-9817 5199
Level 3, 230 Victoria Road,                http://people.qualcomm.com/ggr/
Gladesville NSW 2111    232B EC8F 44C6 C853 D68F  E107 E6BF CD2F 1081 A37C


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com

home help back first fref pref prev next nref lref last post