Alex Alten (Andrade@netcom.com)
Fri, 07 Aug 1998 21:42:58 -0700
At 05:13 PM 8/7/98 -0400, David P Jablon wrote:
>
>PK seems more valuable for protecting PIN verification over
>the network, from ATM<-->bank, etc. Solutions here include
>both cert-based solutions and PIN-authenticated PK exchange.
>
I disagree with this, but not for security reasons. PK is
just too slow for this. The Visa interchange gateways can
hit 2000 security transactions per second (key setup +
enciphering/deciphering). DES is already slow, especially
key setup, using PK would grind everything to a halt. This
is one of the main technical reasons why SET has failed to
deploy successfully.
- Alex
--Alex Alten
Andrade@Netcom.Com (home--old) Alten@Home.Com (home--new) Alten@TriStrata.Com (work)
P.O. Box 11406 Pleasanton, CA 94588 USA (510) 417-0159
The following archive was created by hippie-mail 7.98617-22 on Sat Apr 10 1999 - 01:10:56