RE: TLS anyone?
"Florian Overkamp" <[email protected]> Mon, 20 Dec 2004 07:01:14 +0100
| Newsgroups | gmane.mail.zoe.general |
|---|---|
| Organization | ObSimRef BV |
| Message-ID | <E1CgGc7-0005md-00@clio> |
Hi, > -----Original Message----- > > Ok. Playing devil's advocate: what would be the rational of > "securing" > > email's "last mile" when the entire email path is insecure > in its very > > nature? > > Because the last mile might be subject to greater risk in some > circumstances, IMHO. For the rest of the path, my email is generally > mixed with many people's. The chance of getting sniffed is high, but > (hopefully) the chance of getting singled out is not. It's called > security by obscurity. Not exactly a great strategy, I know. Actually it's much worse. Being able to use/abuse your Zoe would allow an attacker to make combinations of information he would probably not have noticed during a single intercept run, even on the last mile. Chances are the tap was not in place all that long but now we allow an attacker to see archives from long before he started his attack. Florian ------------------------------------------------------- SF email is sponsored by - The IT Product Guide Read honest & candid reviews on hundreds of IT Products from real users. Discover which products truly live up to the hype. Start reading now. http://productguide.itmanagersjournal.com/