[146380] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: [Cryptography] Good private email

daemon@ATHENA.MIT.EDU (Tamzen Cannoy)
Mon Aug 26 13:09:34 2013

X-Original-To: cryptography@metzdowd.com
From: Tamzen Cannoy <tamzen@cannoy.org>
In-Reply-To: <CAFH29tp-c4qTu4ax5CHjy8LvoWYE1rKdgk+DNEVDDFWBFAD9aA@mail.gmail.com>
Date: Mon, 26 Aug 2013 10:08:32 -0700
To: Cryptography <cryptography@metzdowd.com>
Errors-To: cryptography-bounces+crypto.discuss=bloom-picayune.mit.edu@metzdowd.com

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Aug 26, 2013, at 4:12 AM, Richard Salz <rich.salz@gmail.com> wrote:

> I don't think you need all that much to get good secure private email.
> You need a client that can make PEM pretty seamless; reduce it to a
> button that says "encrypt when possible."  You need the client to be
> able to generate a keypair, upload the public half, and pull down
> (seamlessly) recipient public keys.  You need a server to store and
> return those keys. You need an installed base to kickstart the network
> effect.
> 

Repeat after men. "Encryption is not the problem."

What you described is pretty much PGP Universal. Traffic analysis is the problem. Individual computers can be tracked thru the internets with mere timing signatures on the packets given off by their clocks. Watch this. And that was academic research 7 years ago. You think things haven't progressed since then?

http://www.youtube.com/watch?v=eYwYC4x4gtU

Tamzen




-----BEGIN PGP SIGNATURE-----
Version: PGP Universal 3.2.0 (Build 1672)
Charset: us-ascii

wj8DBQFSG4uS5/HCKu9Iqw4RAo4WAJ9+TqsB6a8LUxzGWzItKvqDALCdCwCgxaaF
0sts0HaO3fSw7ZdR+Vp7B8A=
=yv/q
-----END PGP SIGNATURE-----
_______________________________________________
The cryptography mailing list
cryptography@metzdowd.com
http://www.metzdowd.com/mailman/listinfo/cryptography

home help back first fref pref prev next nref lref last post