Hello,

On 18/10/05, Peter Tomlinson <[EMAIL PROTECTED]> wrote:
>  From the viewpoint of someone involved in advising on technical content
> of the methods to be used to deliver secure services using smart cards
> (i.e. I'm not a software developer), I am very concerned that such a
> function is even being suggested.

What would be the security risk(s) to know how many PIN tries are left
or the total number of tries?

> More generally, I have been looking in
> vain for any security model work in the MCardApplet area, as changes
> should only be made with the agreement of a security group.

This list _is_ the security group :-)

I agree that a security model would be great. Please provide a draft.

Regards,

--
 Dr. Ludovic Rousseau
 For private mail use [EMAIL PROTECTED] and not "big brother" Google

_______________________________________________
Muscle mailing list
[email protected]
http://lists.drizzle.com/mailman/listinfo/muscle

Reply via email to