Ask Security/Cryptography Expert Paul Kocher
Paul Kocher is unquestionably one of the highest-profile computer and network security experts around. He's president of Cryptography Research, Inc. and one of the architects of SSL 3.0. The floor is now open. Please try not to ask questions that can be answered with a few minutes' worth of online research. We'll post Paul's answers to 10 of the highest-moderated questions soon after he gets them back to us. Update: 03/13 18:18 GMT by M : Let's try this one more time, this time with feeling.
please ignore
*_g_o_a_t_s_e_x_*_g_o_a_t_s_e_x_*_g_o_a_t_s_e_x_*_ _ __ __ __ __ __ __ __ __ __ __ __ __ __ __ __ __ __ __ _
s`________|_____________|________\|_______|_____s
e_\_______|_/_______/__\\\___--___\\_______:____e
x__\______\/____--~~__________~--__|_\_____|____x
*___\______\_-~____________________~-_\____|____*
g____\______\_________.--------.______\|___|____g
o______\_____\______//_________(_(__>__\___|____o
a_______\___.__C____)_________(_(____>__|__/____a
t_______/\_|___C_____)/Insert\_(_____>__|_/_____t
s______/_/\|___C_____)__Head_|__(___>___/__\____s
e_____|___(____C_____)\_Here_/__//__/_/_____\___e
x_____|____\__|_____\\_________//_(__/_______|__x
*____|_\____\____)___`----___--'_____________|__*
g____|__\______________\_______/____________/_|_g
o___|______________/____|_____|__\____________|_o
a___|_____________|____/_______\__\___________|_a
t___|__________/_/____|_________|__\___________|t
s___|_________/_/______\__/\___/____|__________|s
e__|_________/_/________|____|_______|_________|e
x__|__________|_________|____|_______|_________|x
*_g_o_a_t_s_e_x_*_g_o_a_t_s_e_x_*_g_o_a_t_e_x_*_
Important Stuff: Please try to keep posts on topic. Try to reply to other people's comments instead of starting new threads. Read other people's messages before posting your own to avoid simply duplicating what has already been said. Use a clear subject that describes what your message is about. Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) If you want replies to your comments sent to you, consider logging in or creating an account.
Important Stuff: Please try to keep posts on topic. Try to reply to other people's comments instead of starting new threads. Read other people's messages before posting your own to avoid simply duplicating what has already been said. Use a clear subject that describes what your message is about. Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) If you want replies to your comments sent to you, consider logging in or creating an account.
Important Stuff: Please try to keep posts on topic. Try to reply to other people's comments instead of starting new threads. Read other people's messages before posting your own to avoid simply duplicating what has already been said. Use a clear subject that describes what your message is about. Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) If you want replies to your comments sent to you, consider logging in or creating an account.
Important Stuff: Please try to keep posts on topic. Try to reply to
fp
Mr. Kocher, are you or are you not a fudge packer?
How do you sleep at night knowing your products protect terrorists, child molestors, and pirates?
I'm guessing you piss the bed often...
What is the best way to protect against DDOS? Going from what I have seen there have been a number of ideas such as getting any inbound routers to check that they have a path for any incoming packets and Filter RF1918 address space. Also rate limiting helps but none seem to be a total cure. What else can be done?
Cheap UK and US VPS
Hey, it matters, people. You going to use homo encryption? I mean, think about it!
Paul,
What alternatives do you think we should move to in order to breathe life back into this stinking carcass of a once great web board? I myself have been trying to encourage "Naked Posts" based on the logic that with NPs, you don't have to be first, you just have to be naked.
Anyone else care to comment?
Is Rot13 secure? How long would a Rot13 encrypted string take to break with a 128qubit computer?
lets
encrpyt
something
that
every one
really
is
seriously
attacking
like
i nternet
virus
encryption
nope
encryption
ve ils
everything
read
about
giant
ants
invad ing
new york
Ok. I guess the mod missed the point that it was to be "humorous".
Ah well.
Mr. Kosher?
Because it's lame? 't seems the only thing getting caught by the lameness filter is by definition "not lame". Blame Slashdot.
This mind-numbingly overrated site? Would you like to purchase a subscription so that you can spell- fact- and dupe-check articles for the editors? See, they're too busy, uh... hmmm... well they're too busy to do this themselves. Probably because they're wankers.
Also, Paul, if you happen to find an error for the editors, please make sure to email them immediately because the only reason they actually read the comments is to mod down anyone who isn't toeing the Slashdot party line. They tend to skip over comments like, "BROKEN LINK", "DUPLICATE ARTICLE", "NO TEXT IN ARTICLE" and "SHUT UP WITH THE COMMENTARY, YOU FUCKING TWATS". (Yes, it's censorship, but good luck getting it through Rob Malda's SPAM-encrusted skull).
But by all means, make your email asskissingly polite otherwise you'll be heaped upon by "friends of Slashdot" (i.e. Rob's little brother).
Sincerely,
MondoMor
Slashcode didn't throw up a warning like "you've already moderated in this thread - it will be lost if you post to it" or something? Sounds like an improvement could be made here. I know the instructions tell you this will happen, but obviously accidents do happen; while repeated "are you sure?" messages tend to get annoying as software tries to protect people from themselves, the warning could be disabled in one's profile...
"Time is an abstract concept devised by carbon-based lifeforms to monitor their ongoing decay." - Thundercleese
She's now the executive in charge of computer security throughout the entire company.
Man, she obviously doesn't know shit, so she sure must give one hell of a blow job.
Background: Two trains leave their separate stations at precisely Noon. One has twice as many passengers and the other, while the other has twice as many Swedish babes as the first.
Q: How soon (in minutes) will the trains collide? (Not necessarily with each other.)
.