Re: what should "k-bit security" mean?

From: David Wagner (daw_at_mozart.cs.berkeley.edu)
Date: 08/30/03


Date: Sat, 30 Aug 2003 19:57:47 +0000 (UTC)

Douglas A. Gwyn wrote:
>David Wagner wrote:
>> ... If we
>> rule out all the security metrics that cannot actually be measured,
>> we're left with almost nothing.
>
>Surely it would be better to acknowledge the limitation
>rather than mislead people into thinking that they have a
>genuine security guarantee.

No argument there. But as I stated earlier, we can factor out *what*
we're trying to measure (in principle) from *how* we're going to
measure it. Even if we don't know how to measure security according to
the advantage measure, the advantage measure can still be a very useful
way of understanding the "right" goal to shoot for.



Relevant Pages

  • Re: Thou shalt have no other gods before the ANSI C standard
    ... Douglas A. Gwyn wrote: ... > help sell products more than security does. ...
    (sci.crypt)
  • Re: Secure C library
    ... > Douglas A. Gwyn wrote: ... the goal of the safer-functions TR is not to ensure that ... >>all functions are bulletproof, ... If mindless substitution is a higher priority than security, ...
    (comp.std.c)
  • Re: Has anyone really cracked anything recently?
    ... > Douglas A. Gwyn writes: ... >> At one time they did, with cryptosystem designs being vetted ... >> by having experienced cryptanalysts attack them, and security ...
    (sci.crypt)
  • Re: Outlook Express
    ... Open OE & click Tools, Options, Security. ... Uncheck the "Do not allow ... attactments to be opened" box. ... "gwyn" wrote in message ...
    (microsoft.public.windowsxp.security_admin)
  • Re: what should "k-bit security" mean?
    ... Douglas A. Gwyn wrote: ... >> When discussing the security of a crypto scheme, theorists talk about ...
    (sci.crypt)

Quantcast