Re: migration paradigm (was: Is PGP broken?)

2000-12-07 Thread Arnold G. Reinhold
At 3:43 PM -0600 12/6/2000, Rick Smith at Secure Computing wrote: >Does anyone have a citation as to the source of this 1.33 >bits/letter estimate? In other words, who computed it and how? It's >in Stinson's crypto book, but he didn't identify its source. I >remember tripping over a citation fo

Re: migration paradigm (was: Is PGP broken?)

2000-12-07 Thread Rick Smith at Secure Computing
At 05:04 PM 12/5/00, Ray Dillinger wrote: >If someone wants to enter "sex" as a password, s/he deserves >what s/he gets (although you may put up an "insecure passphrase" >warning box for him/her). The problem is that there's no objective way of knowing when a passphrase becomes 'insecure' since