Author Topic: For you computer security geeks out there:  (Read 815 times)

0 Members and 1 Guest are viewing this topic.

Offline Sushi

  • Art Critic
  • 211
For you computer security geeks out there:
"The Story of Alice and Bob"
http://www.johngordonsweb.co.uk/concept/alicebob.html

Should be appreciated by anyone who's ever taken a course or read a book on computer security & cryptography. My favorite excerpt below:

Quote
Since it is difficult to design a good cipher, and since the apparatus is very expensive, a lot of work has been done recently to try to standardise on them. Even as I speak the International Standards Organization is meeting to decide on this very issue. Since there is a lot of confusion on this point I have been asked to make the position clear. The purpose of language is to convey information. This only works if both sender and receiver of information both use the same system. In other words language only works precisely because it is standardised.

The purpose of cryptography on the other hand is to make the message unintelligible except to one person. In other words cryptography only works precisely because it is NOT standardised.

So what they do is to make most of the cipher standardised, and to concentrate the non-standardization into one part called the key.

So far so good. But of course the key, the non-standardised part, must be nonstandard in only standardised ways. And also key management must conform to certain standards. In other words standards are being formulated whereby the nonstandard parts, which must conform to certain standards of non-standardization are also to be handled only in a standardised nonstandard way in order to standardise on the overall non-standardization.

I hope this makes the position clear.

 

Offline Flipside

  • əp!sd!l£
  • 212
Re: For you computer security geeks out there:
LOL This is why I skipped all the encryption questions on my Networking Protocols and Architecture course ;)

That and the fact I hate doing Binary CRC's by hand.

  

Offline Rick James

  • Scathed By Admins
  • 27
Re: For you computer security geeks out there:
Quote
In other words standards are being formulated whereby the nonstandard parts, which must conform to certain standards of non-standardization are also to be handled only in a standardised nonstandard way in order to standardise on the overall non-standardization.

My eyes are crossing.

Boystrous 19 year old temp at work slapped me in the face with an envelope and laughed it off as playful. So I shoved him over a desk and laughed it off as playful. It's on camera so I can plead reasonable force.  Temp is now passive.