3 ms·
Because that method doesn't imply the key distribution channel will be available 100% of the time. In fact, it implies the opposite: one-time transmission. For
by plugnburn 11y ago
Because that method doesn't imply the key distribution channel will be available 100% of the time. In fact, it implies the opposite: one-time transmission. For the next 4 GiB, it would be wiser to switch the channel. Between these two occasions, we have plenty of time.
- rnovak 11y agoIt doesn't matter. In order for OTP to work, you first have to invent secure communication. It puts the horse before the carriage. Oh, and now you have to maintain perfect secrecy/privacy of a 4gb file. Solved one problem (theoretically), and now you have a multitude of practical issues. So again, OTP is impractical.
- plugnburn 11y agoIt does matter. You can, for example, initially share the key data on a pinlocked pendrive. What would be really impractical is using this pendrive to transmit actual messages. Whether OTP is practical or not, entirely depends on real-world conditions. P.S. Tell all this to the OP, not me. I'm not building an OTP system.
- rnovak 11y agoYou understand that a secure pen-drive (which is what I think you're talking about by 'pinlocked') has a HSM (Hardware Security Module) with hardware implementations of standardized encryption algorithms, right? You literally just suggested using standardized encryption algorithms to protect your OTP key. Or you could...you know...just use standardized crypto across the board. OTP is by definition impractical. I'm sorry that you don't see that.
- plugnburn 11y ago> You literally just suggested using standardized encryption algorithms to protect your OTP key. I suggested using standardized (or non-standardized, but other than OTP) encryption algorithms for an initial key data distribution channel that completely differs from the main communication channel and exists for a relatively short period of time. That's my key point. > Or you could...you know...just use standardized crypto across the board. I'm not going to dive deep into the topic of why I consider "just using standardized crypto" unsafe and prefer rolling another custom end-to-end encryption layer on top of it. > OTP is by definition impractical. I'm sorry that you don't see that. I'm sorry that you can't see beyond the algorithms. We're far ahead of the time when OTP was the only active instrument (aside from straddling checkerboards and Enigmas). Modern crypto can be combined in such a way that every encryption scheme finds its natural place. I honestly don't see why OTP cannot have one.
- rnovak 11y ago> I'm not going to dive deep into the topic of why I consider "just using standardized crypto" unsafe and prefer rolling another custom end-to-end encryption layer on top of it. please, by all means, enlighten us. > I'm sorry that you can't see beyond the algorithms. Please keep in mind that you have no idea what my background is (or what experience I have), so don't assume that I "can't see beyond the algorithms".
- plugnburn 11y agoIf you can really see beyond the algorithms, you should understand what I mean. Exploring a "spherical algorithm in the vacuum" begins being useless at some point. One should explore its properties when used in a real environment. Protocols where OTP usage is plausible and practical definitely exist. I'm not saying that OTP is practical for every possible use case though. In fact, in my first comment here I had asked the OP about how he's going to solve key distribution problem among multiple users. Because when such a simple algorithm is used, the actual protocol matters much more.
- Spooky23 11y agoIt's a hard problem, not an impossible problem. Naval ships would have code books distributed to as recently as the 1970s.