scary certificate for www.update.microsoft.com

Peter Fairbrother zenadsl6186 at zen.co.uk
Tue Jun 19 00:37:29 BST 2012


Ian Batten wrote:

> 
> But the moment there is the slightest suggestion that your hypothesis
> is true, PFS is there to thwart it.  

That's just the ephemeral DHE key exchange I talked about a day or so ago.

It may well thwart it - but it isn't commonly, or even often, used.

Spending £1.8bn on something to
> which there's a trivial counter-measure might rebound on the people
> asking for the budget.

Was that $1.8tn ...?

$1.8 billion is so small, it's maybe not enough to break 2,000 1Kbit 
RSAs per year..

:)

-- Peter Fairbrother
> 
> ian
> 




More information about the ukcrypto mailing list