> Crypto solves certain problems very well.  Against others, it's worse
> than useless -- "worse", because it blocks out friendly IDSs as well as
> hostile parties.
Yawn.  IDS is dead, has been for a while now.  The bottom line discovery
has been that:

1) Anomaly detection doesn't work because anomalies are normal, and
2) Unless you're scrubbing up and down the application and network
stacks, you just have no idea what the host endpoint is parsing.

At the point where crypto shows up, it's already too late.


