From: smb@research.att.com
To: “J. Michael Diehl” <mdiehl@triton.unm.edu>
Message Hash: 560624f59e2f299c444285f414587d5a94bc4cebeb78c9e3bad82e57516f4671
Message ID: <9310110021.AA04637@toad.com>
Reply To: N/A
UTC Datetime: 1993-10-11 00:26:08 UTC
Raw Date: Sun, 10 Oct 93 17:26:08 PDT
From: smb@research.att.com
Date: Sun, 10 Oct 93 17:26:08 PDT
To: "J. Michael Diehl" <mdiehl@triton.unm.edu>
Subject: Re: Was: POISON PILL
Message-ID: <9310110021.AA04637@toad.com>
MIME-Version: 1.0
Content-Type: text/plain
According to gtoal@gtoal.com:
> :4) if you are really paranoid, Shamir share the keys;
Please explain this to me. What is "Shamir?"
The reference is to the following paper:
@article{sharesecret,
author = {Adi Shamir},
journal = {Communications of the ACM},
number = {11},
pages = {612--613},
title = {How to Share a Secret},
volume = {22},
year = {1979}
}
More generally, see the article on shared control systems:
@incollection{Simmons92,
author = {Gustavus J. Simmons},
title = {An Introduction to Shared Secret and/or Shared Control Schemes
and Their Application},
booktitle = {Contemporary Cryptology: The Science of Information Integr
ity},
year = 1992,
pages = {441--497},
editor = {Gustavus J. Simmons},
publisher = {{IEEE} Press}
}
I'm especially fond of this article:
@article{sealing,
author = {David K. Gifford},
journal = {Communications of the ACM},
number = {4},
pages = {274--286},
title = {Cryptographic Sealing for Information Secrecy and Authentication},
volume = {25},
year = {1982}
}
since it shows how to implement a variety of access mechanisms,
including key-AND, key-OR, m-of-n, etc.
> :6) periodically send messages to the boxes where you have stashed
> :your files, saying "Everything is still cool, don't wipe my files
> :or my keys.";
Folks who contemplate such schemes should investigate the false alarm
rate. Most automated systems experience a much higher rate of false
triggers than true. Of course, as described here, you'd only get one,
since your data would be gone after that...
Return to October 1993
Return to “smb@research.att.com”
1993-10-11 (Sun, 10 Oct 93 17:26:08 PDT) - Re: Was: POISON PILL - smb@research.att.com