From: Adam Shostack <adam@lighthouse.homeport.org>
To: anonymous-remailer@shell.portal.com
Message Hash: 4c114c08cdfe11f049f58d500a7dce8c515681bf127b37f24832683e3807b4ab
Message ID: <199511281813.NAA12568@homeport.org>
Reply To: <199511281032.CAA21495@jobe.shell.portal.com>
UTC Datetime: 1995-11-28 19:19:53 UTC
Raw Date: Wed, 29 Nov 1995 03:19:53 +0800
From: Adam Shostack <adam@lighthouse.homeport.org>
Date: Wed, 29 Nov 1995 03:19:53 +0800
To: anonymous-remailer@shell.portal.com
Subject: Re: Cypherpunk Certification Authority
In-Reply-To: <199511281032.CAA21495@jobe.shell.portal.com>
Message-ID: <199511281813.NAA12568@homeport.org>
MIME-Version: 1.0
Content-Type: text
| > Well, signed Alice posts have shown up, so we will just have to assume
| > that the above was a spoof and that the signed Alice posts are the
| > real ones, now won't we?
|
| Perry. Normally I try my best to ignore you.
|
| But I will simply repeat, I have never signed a post, and have no
| intention of beginning to sign any posts, until I establish a secure
| machine in a secure complex that is dedicated to that purpose.
When did PGP claim to be perfect? Its not; and the point is
not to obtain 100% confidence in someone, but a useable level of
confidence. If the remailer chains work, then it would be tough to
find out who you are. If we do find out who you are, your integrity
shell will tell you that your PGP binary was tampered with. If we
don't know who you are, then your machine is safe from just about
anything other than a thorough sweep of all the net connected users in
Canada.
So, please explain the threat that causes you to think that
'pretty good' is worthless in this context.
Adam
--
"It is seldom that liberty of any kind is lost all at once."
-Hume
Return to November 1995
Return to ““Perry E. Metzger” <perry@piermont.com>”