Feeds

So, what shall we ban next?

John Keegan

  • alert
  • submit to reddit

The Power of One Brief: Top reasons to choose HP BladeSystem

Bomb the ISPs - Daily Telegraph


Surely this mean that we should ban shortwave radio? Ham radio? These are also methods of communicating securely when combined with that all time favourite a pen, pad and codebook! Ban biros - they can be used for cryptography.

Oh, and we'll have to ban going for walks, these can be used for dead-drops, we'll have to ban books because of book code and I suppose we'll ban all recordable media because of the steganographic potential. Further to this, why not ban all books about cryptography, all cryptographic papers, Radioshack and radioshackalikes, photography, computers and playing cards!

I jest of course. But it's all very much like Gore Vidal and cellphones. Further to this there is bugger all anyone can do about any of the above apart from working out effective methods of penetrating terrorist organisations. You can't ban a pen and paper after all... Well it would piss a few hacks off anyway.

If anything banning crypto on ISPs will have the opposite effect. Serious criminals will find more devious ways of hiding.

John Everitt




What about the menace of web cafes, and webmail? Maybe Mr Keegan hasn't noticed those strings of people queuing all over central London to hand over untraceable cash to log into their own personal, non-localised, anonymous communications systems. Some of them look suspiciously foreign.

Just as long as those cruise missiles aimed at easyeverything in Oxford Street don't hit the New York Port Authority offices a couple of doors down in Stratford Place, which would presumably not be acceptable collateral damage.

Guy E.S. Herbert




It's too late to retract the encryption genie.

The global economy, including all financial institutions, relies heavily on digital certificates, SSL, VPNs, ssh, PGP, strong symmetric andasymmetric encryption products, and to a lesser extent, S/MIME.

This journo's insane rant is completely impractical: any decent security person will be able to get around any type of automatic ingress/egress filtering that an ISP would be able to use without disabling itself.

C&W's internal global network is now a MPLS VPN using its own Internet infrastructure, and it is encrypted. Who would tell a major multinational, let alone all the millions of business relying on this cost-lowering and business enabling technology (it takes seconds and no dollars to add another subsidiary) that they can no longer use the Internet safely?

Just as we shouldn't have anyone trolling through an exchange at random to listen on in on calls, we shouldn't have anyone randomly trying to listen to the Internet (a la Carnivore), although I'm sure it does happen.

Encryption is not the problem people think it is: if you have been granted a warrant to establish a tap, it shouldn't be that hard to get permission to get a keyboard intercept, which allows the private key pass phrase to be recorded. This protects us against extra-judicial eavesdropping, and is legal and valid under all the major legal systems.

The idea of going back to the old ways is not practical nor do-able in any time frame.

Andrew van der Stock

Eight steps to building an HP BladeSystem

More from The Register

next story
NSA man: 'Tell me about your Turkish connections'
Spooks ask Dabbsy to suggest a nice hotel with pool
Carlos: Slim your working week to just three days of toil
'Midas World' vision suggests you retire later, watch more tellie and buy more stuff
Motorist 'thought car had caught fire' as Adele track came on stereo
'FIRE' caption on dashboard prompts dunderheaded hard shoulder halt
Yahoo! Japan! launches! service! for! the! dead!
If you're reading this email, I am no longer alive
Plucky Rockall podule man back on (proper) dry land
Bold, barmy Brit adventurer Nick Hancock escapes North Atlantic islet
Russia sends SEX-CRAZED GECKOS to SPAAAAACE!
In space... no one can hear you're green...
Brit Rockall adventurer poised to quit islet
Occupation records broken, champagne corks popped
Accused! Yahoo! exec! SUES! her! accuser!, says! sex! harassment! never! happened!
Allegations were for 'financial gain', countersuit claims
prev story

Whitepapers

Top three mobile application threats
Prevent sensitive data leakage over insecure channels or stolen mobile devices.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.