>Are you going to set up encryption for each new product (eg DCE/DFS)?
>Isn't it better to solve the problem once for all cases?

Well, that's assuming that I _want_ to encrypt everything; that's not
necessarily true.  We do a fair amount of stuff with streaming video
(we are pushing literally hundreds of megabits over our network), and
we can't afford the overhead of encrypting that.

I'm not interested in _aribtrary_ encryption, actually ... I'm really
only interested in encryption in conjunction with Kerberos
authentication (that gets rid of the hassle of distributing session
keys).  And since it's unlikely we're going to ever "upgrade" to
DCE/DFS, that's a non-issue.

--Ken

Reply via email to