dotgnu-general
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [DotGNU]Commerce Internet


From: Kent Nguyen
Subject: Re: [DotGNU]Commerce Internet
Date: Mon, 16 Jul 2001 13:27:23 +0000

On Monday 16 July 2001 12:45, you wrote:
> Kent Nguyen wrote:
> | I also did some brainstorm on trust in the PKI ecosystem.  The paper is a
> | bit sketchy.
> |
> | http://www.geocities.com/newyen/pki.html
>
> For a thought-provoking discussion of the PKI "ecosystem" and some
> others, see <http://www.anu.edu.au/people/Roger.Clarke/II/PKIMisFit.html>.
>

Excellent reference.  "Web of Trust" is what I use in this PKI ecosystem.  
The only argument against Web of Trust is the frequency it is used.  Big 
Brother can monitor the number of times an individual or business need to use 
"Web of Trust" to conduct transaction.  This is not an inherent problem with 
"Web of Trsut" per se but the architectural design of the Internet that allow 
sniffing of information packets.

To thwate the use of "sniffing", one can bring the security down to IP 
protocol layer.  Security at the IP protocol layer will render Big Brother 
useless in learning the frequency of a transaction, and the number of host 
require for the transaction to occur.  A commonly used implementation is 
IPSEC.  IPSEC is in SWAN, Checkpoint, and many other VPN product.

IPv6 has builtin IPSEC.  

--kent


reply via email to

[Prev in Thread] Current Thread [Next in Thread]