1998-09-22 - Re: ArcotSign (was Re: Does security depend on hardware?)

Header Data

From: Bruce Schneier <schneier@counterpane.com>
To: Ben Laurie <ben@algroup.co.uk>
Message Hash: e23fbf16a11f7482d6aeae513f7b834503e8e32e79caa9cb20f746ece015fdf9
Message ID: <4.0.2.19980922114219.00928f00@mail.visi.com>
Reply To: <Pine.LNX.3.96.980921133001.20069A-100000@blackbox>
UTC Datetime: 1998-09-22 04:02:21 UTC
Raw Date: Tue, 22 Sep 1998 12:02:21 +0800

Raw message

From: Bruce Schneier <schneier@counterpane.com>
Date: Tue, 22 Sep 1998 12:02:21 +0800
To: Ben Laurie <ben@algroup.co.uk>
Subject: Re: ArcotSign (was Re: Does security depend on hardware?)
In-Reply-To: <Pine.LNX.3.96.980921133001.20069A-100000@blackbox>
Message-ID: <4.0.2.19980922114219.00928f00@mail.visi.com>
MIME-Version: 1.0
Content-Type: text/plain



At 03:24 PM 9/22/98 +0100, Ben Laurie wrote:
>Bruce Schneier wrote:
>> >(I suppose the 'remembered secret' has less bits then the 'password'
>> >that is to be retrieved from the pool of millions with the
>> >'mathematical magic'). So the advantages of the scheme appear to
>> >remain unclear as a matter of principle.
>> 
>> The advantages are that offline password guessing is impossible.
>
>The 'I' word always makes me nervous - do you really mean that, or do
>you just mean "very difficult"?

Intractable, actually.

Bruce
**********************************************************************
Bruce Schneier, President, Counterpane Systems     Phone: 612-823-1098
101 E Minnehaha Parkway, Minneapolis, MN  55419      Fax: 612-823-1590
           Free crypto newsletter.  See:  http://www.counterpane.com





Thread