Wednesday, December 08, 2004

Cryptography Rant

I am beginning a new debate, primarily with myself although others may and have commented. My new position is that all things crypto are fully and simply a method of Identity and Access Management. I say this because the goal of encryption is to ensure or enforce that only specific people or individuals (identity) can read or modify (access) data that is encrypted. It is therefore simply a mechanism - albeit mathematical in its basis - a mechanism to enforce access control. If we think back to the early days of encryption the goal was to protect information from being accessed by the enemy and ensure that only valid recipients received the information. One of the more famous used of encryption was The Enigma Machine the goal of which was to protect German messages from the read by the Allies. Fortunately we were able to crack the code and decipher (access) the data.

No comments: