Robot CA at toehold.com

Adrian 'Dagurashibanipal' von Bidder avbidder@fortytwo.ch
Wed Dec 11 17:48:02 2002


--=-xHOpRZoOL2TETH+GtQa5
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

On Wed, 2002-12-11 at 16:33, greg@turnstep.com wrote:

> You miss the point - you may trust your system again, but the public's=20
> perception of the system may suffer an unrecoverable blow. If a major CA=20
> was broken into and compromised, but the company eventually regained=20
> control, all the reassurances in the world would not stop people from=20
> considering using an alternate CA that has not been compromised.

Hmmm. I think people are usually far too optimistic - not many people
changed their attitude towards Verisign as some random hacker gained a
certificate for microsoft.com (or something like that, I don't remember
exactly).

cheers
-- vbi

--=20
this email is protected by a digital signature:  http://fortytwo.ch/gpg

NOTE: keyserver bugs! get my key here: https://fortytwo.ch/gpg/92082481

--=-xHOpRZoOL2TETH+GtQa5
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iHMEABECADMFAj33bJQsGmh0dHA6Ly9mb3J0eXR3by5jaC9sZWdhbC9ncGcvZW1h
aWwuMjAwMjA4MjIACgkQi6Qxi+Wn99aYCQCgjTO19jq9JyVdRd/QGpWZHCDSrqYA
oK8BSHKdCsKG4BJt+Vhbq5bj6nLc
=DTzf
-----END PGP SIGNATURE-----
Signature policy: http://fortytwo.ch/legal/gpg/email.20020822

--=-xHOpRZoOL2TETH+GtQa5--