DARPA Aims to Redo the Internet Protocol
Xaleth Nuada writes "The Defense Advanced Research Projects Agency's (DARPA) is looking to redo the entire Internet Protocol. With the DoD increasingly adopting network-centric warfare the shortcomings in the current IP have become resoundingly clear. Everything works fine for static hardwired networks. But not for dynamic wireless ones. The benefits for your average geek? How about REAL wireless networking? Easier network set-up? Increased wireless security protocol? Increased reliability in sending information?" Don't forget massive incompatibility and upgrade hassles. :)
Unfortunately, if the certificates are stored in DNS then the private keys must be available for validation. (And if a spammer has access to the private keys, then they can generate valid public keys.)
I don't understand this. Email users are given a cert containing their email address. The email address is thus bound to a key pair. Directories contain the certs which contain the public keys. Users sign mail using their private key. Mail servers/gateways verify the sig using the cert and public key. The private key never leaves the user's machine.
Hijacking a machine still doesn't give automatic access to the private key (although the password protecting it may be obtained in time - keystroke logger, etc.).
Certs and PKI still do not provide a rosy solution - the usual issues of cert revocation (CRL lists, OCSP), expiry and management still apply.
The other point is, I believe even if you have the private key, you cannot easily create the public key from it as the author says (that's one of the hard problems).
I can now recharge all my previous employers consultant rates to upgrade to the new system. Muhuhu!
Never could figure out why my girl liked my bitch tits, then I found out she was a lesbian.
Oh yeah, like the US doesn't ever do anything to favor a particular leader or candidate in other countries. But of course someone having a .sig line supporting a US candidate is just too damn intrusive!
It's not enough to bash in heads, you've got to bash in minds. - Captain Hammer
But then again, I like to drink hot sauce, too.
Why are there only 19 people folding@home for slashdot?