Re: [cryptography] [Cryptography] Email encryption for the wider public

2014-09-25 Thread Andrew Skretvedt

On 2014-Sep-18 20:39, grarpamp wrote:

On Thu, Sep 18, 2014 at 10:16 AM, Jonathan Thornburg jth...@astro.indiana.edu

business to E-mail me a receipt/confirmation/whatever.)  Getting the
spelling of $spouse's (8-letter, but odd to many people) E-mail correct
over a poor-quality phone connection is hard enough already!


http://en.wikipedia.org/wiki/NATO_phonetic_alphabet

Caveat lack of UTF-8 coverage...


There's enough in there to send hex or octal representations ;-).



smime.p7s
Description: S/MIME Cryptographic Signature
___
cryptography mailing list
cryptography@randombit.net
http://lists.randombit.net/mailman/listinfo/cryptography


Re: [cryptography] The Trouble with Certificate Transparency

2014-09-25 Thread Nicolai
On Wed, Sep 24, 2014 at 11:17:28AM -0700, Greg wrote:
 http://blog.okturtles.com/2014/09/the-trouble-with-certificate-transparency/

Hi Greg,

It seems to me that CT could benefit security only in a trickle down
sense: if a cert is improperly issued against a major domain like
google.com, that CA can be punished by Chromium/Chrome, with the logs
providing political/legal cover.  And maybe the benefit trickles down.

But what about normal people?  I have to check up to 1000 different logs
to see if I've been attacked?  And if I find out that's the case, would
people care about little old me enough to burn a CA such as Comodo?

It seems CT could potentially be of benefit to some large organizations
while having little to no impact on ordinary people like myself.  If
that's wrong I'd like to know how/why.

When LibreSSL has a non-preview release or two under its belt I'd like
to try DNSChain, but for now I'm unwilling to touch major TLS libraries.
DNSChain and MinimaLT seem like they could be a great match...

Nicolai
___
cryptography mailing list
cryptography@randombit.net
http://lists.randombit.net/mailman/listinfo/cryptography