Honestly, it sounds kind of relaxing. Good excuse to get some sunshine. On a more serious note, I can't help but think David Cameron is employing the technique of attempting something extreme so that he can do something less extreme (but still really bad) later with less oversight. Of course you can't ban strong encryption. His advisers know that, he knows that, _everyone_ knows that. It will be very interesting to s…
Given current trends, I'm guessing national root certificate as a license to MITM all traffic.
If David Cameron bans secure encryption he can't intercept
31–40 of 104 posts
Re: If David Cameron bans secure encryption he can't intercept
#32Except Cameron wants to backdoor end-to-end encryption like iMessage/Whatsapp, rather than mess with something like SSL. With SSL they can just get a warrant (or you know, don't get a warrant) and look at the server, where everything is in plain text. One possible way to backdoor it might be mandate that companies keep copies of the encrypted messages, tagged with a device ID. Then to decrypt you need to get the pers…
Re: If David Cameron bans secure encryption he can't intercept
#33There won't be a ban, it will be licensed. Big companies like banks etc will get their licence right away, so your secure banking will be fine. Routers will still have wifi encryption because they'll have a licence. The licence will be implemented as a fee for a digital certificate that properly authenticates. So, you're a small startup with an idea for a secure messaging app. want a licence. no problem, its £10M. ha…
Re: If David Cameron bans secure encryption he can't intercept
#34Earlier quoted context omitted.
It's not really the elected government, it's the security services asking for an expanded remit and being granted one by uncritical politicians and an apathetic media.
Who are the security services employed by? I certainly wouldn't call them private industry! Did you mean to say it's not elected government officials? Just curious, because I definitely consider a country's intelligence apparatus to be completely and wholly part of its "government", and would be surprised to find someone who didn't.
Re: If David Cameron bans secure encryption he can't intercept
#35The most unrealistic part is > Youtube fails to load with a secure connection error. YouTube still refuses to use anything more recent than RC4 encryption, so, if Cameron would ban all secure encryption, YouTube would probably still work.
The connection uses TLS 1.2.
The connection is encrypted and authenticated using AES_128_GCM and uses ECDHE_ECDSA as the key exchange mechanism."
Re: If David Cameron bans secure encryption he can't intercept
#36Earlier quoted context omitted.
Yeah I was going to have that as an example in my comment, but even then that seems unrealistic to me. Why wouldn't the big tech companies simply not do that? The UK needs them more than they need the UK, and if you took away the country's access to Facebook for more than an hour you'd have a riot on your hands.
I'd assume they'd go along with government policy, like they have done in e.g. China. And the government proposed taking down twitter and BBM during the London riots a few years ago.
Re: If David Cameron bans secure encryption he can't intercept
#37Earlier quoted context omitted.
Who are the security services employed by? I certainly wouldn't call them private industry! Did you mean to say it's not elected government officials? Just curious, because I definitely consider a country's intelligence apparatus to be completely and wholly part of its "government", and would be surprised to find someone who didn't.
Read about the Dulles brothers. They forged very strong connections between overt and covert foreign policy and industry.
The book does veer somewhat into unfounded conspiracy territory, but I think it's an interesting read so far and the author doesn't come across as crazy so much as skeptical.
Re: If David Cameron bans secure encryption he can't intercept
#38Earlier quoted context omitted.
I'd assume they'd go along with government policy, like they have done in e.g. China. And the government proposed taking down twitter and BBM during the London riots a few years ago.
I'm afraid you might be a tad ambitious regarding the weight the UK market carries with global corporate interests, as compared to the Chinese
Re: If David Cameron bans secure encryption he can't intercept
#39It's pretty clear that the UK government doesn't have the power to ban encryption. This is just a distraction so that we are happy to accept whatever "less bad" proposals they come up with to increase their surveillance powers. I can't help but feel that peoples dislike of Cameron is a pointless distraction too. This is not Cameron. This is government. We will still be having this same discussion in 50 years, unless…
It's not really the elected government, it's the security services asking for an expanded remit and being granted one by uncritical politicians and an apathetic media.
Re: If David Cameron bans secure encryption he can't intercept
#40Earlier quoted context omitted.
Given current trends, I'm guessing national root certificate as a license to MITM all traffic.
What's to stop companies from additionally encrypting their channels end to end while passing through the backbone? They can decrypt the backbone all they want.