2 ms·
Some comments from: http://www.theregister.co.uk/2013/09/12/ietf_floats_prismproof_plan_for_harder_internet/ http://www.theregister.co.uk/2013/09/12/ietf_floats
by educating 13y ago
Some comments from: http://www.theregister.co.uk/2013/09/12/ietf_floats_prismproof_plan_for_harder_internet/ http://www.theregister.co.uk/2013/09/12/ietf_floats_prismpro...
'The proposal has just one author - Phillip Hallam-Baker of the Comodo Group – which makes it a little unusual as most IETF proposals are the work of several folks in pursuit of a common goal.'
'Sadly the paper is a little light on for actual ideas about how the internet can be PRISM-proofed, offering “a security policy infrastructure and the audit and transparency capabilities to support it” as one item that should be on any hardening effort's to-do list. More use of cryptography is also proposed, so that “two layers of public key exchange using the credentials of the parties to negotiate a temporary key which is in turn used to derive the symmetric session key used for communications”. That regime should, Hallam-Baker suggests, make it harder to snoop on everyday traffic.'
Heavily emphasis on the should on that last sentence.