Home Office response on Burden of Proof
William H. Geiger III
whgiii at openpgp.net
Fri, 06 Aug 1999 12:42:17 -0500
In <3.0.5.32.19990805174426.00b1c9c0@mail.netkonect.co.uk>, on 08/05/99
at 05:44 PM, Nicholas Bohm <nbohm@ernest.net> said:
>At 12:09 PM 8/5/1999 +0100, Andrew Meredith wrote:
>>Nicholas Bohm wrote:
>>>
>>> Clearly not. There will be cases where possession of the key
>>> can be proved by the Crown quite easily (e.g. where the accused
>>> has responded to encrypted messages in a way that proves he can
>>> decrypt them) [...]
>>
>>Imagine for a moment that Ben's forged key was being used by its actual
>>holder on an anonymous communications channel of some sort (Mixmaster
>>email, smutty newsgroups etc). The email address (if present) in the key
>>would not be used to direct responses. The holder of the key would then
>>be in a position to reply (with a signed and/or encrypted message) to
>>the (signed/encrypted) messages sent using the PGP key, without
>>reference to Ben. The message that was the subject of the decryption
>>order could have an authenticated response showing a comprehension of
>>the content, but Ben would not have been involved.
>Proving that the holder of the key responded is not the same as proving
>that the person on whom the decryption notice was served is the holder of
>the key. I imagine a "sting" case where the victim is sent an encrypted
>email inviting him to collect a prize, which turns out to be a decryption
>notice.
Still all this proves is *past* possesion of the decryption key. It shows
nothing of the current possesion of that key. Considering that a key can
be destroyed in a fraction of a second this is a very important
distinction.
--
---------------------------------------------------------------
William H. Geiger III http://www.openpgp.net
Geiger Consulting Cooking With Warp 4.0
Author of E-Secure - PGP Front End for MR/2 Ice
PGP & MR/2 the only way for secure e-mail.
OS/2 PGP 5.0 at: http://www.openpgp.net/pgp.html
Talk About PGP on IRC EFNet Channel: #pgp Nick: whgiii
Hi Jeff!! :)
---------------------------------------------------------------