[cryptography] SSL is not "broken by design"

Peter Gutmann pgut001 at cs.auckland.ac.nz
Sun Sep 18 14:22:40 EDT 2011

Ian G <iang at iang.org> writes:

>When it came to actual failures ... they are silent.  Still.  But they love
>their merry-go-round :)

There are ways to get off the merry-go-round.  I've now put the slides for the
talk I'd mentioned last week, that I did at EuroPKI, up at
http://www.cs.auckland.ac.nz/~pgut001/pubs/pki_risk.pdf.  This discusses a
whole catalogue of ways to get off the merry-go-round, some of which have been
around for years.

(These are background slides for a one-hour talk, so not all of the material 
is present there).


