To: ToySoldier who wrote (28122 ) 9/15/1999 12:52:00 AM From: Scott C. Lemon Read Replies (1) | Respond to of 42771
Hello Toy, This is a *huge* area ... and a lot of money is going to made in developing this whole infrastructure ... > So I would have to think that all the data in my vault/safes would > have to be encrypted and then some means of providing a key to > selected outsiders for each specific attribute in my vault/safe > would have to be developed. As you know, with key management this can become a nightmare. So each attribute would be encrypted, and only I would have the key to "write" this attribute, and then I give rights to people to "read" the encrypted value, and then a key to decrypt it? So the second person I want to be able to read it gets the key ... now, in this scenario, when I change the value of the attribute how do I "revoke" the key from the first person if I want to limit their access? Do I change the key on the new value? Then I have to redistribute keys to the remaining people who are supposed to have the key ... The simplest way I can think of is to only put information in "trusted" places. Then sharing of information is one level where you don't have to worry about encryption because the user accessing the data is already authenticated. This is like standard file or database access. Encryption, IMHO, is best used for limited storage or backup purposes. > This would also further ensure that some "Trusted Host" does not > have a backdoor into my vault/safes (although even that might not > be fully ensured). So this will be completely determined where the keys are kept. Just for you, we'll have the US Government keep the keys for all the worlds citizens ... ;-) (Or atleast some US bank ... ;-) > Very interesting comments Scott. This is going to be a huge area of growth ... I keep looking for where the investment opportunites are going to come from! > It is unfortunate that you cannot discuss your opinions of > Digital-Me, but I understand why you cannot. I actually think we are on the same ground here ... my reason is the same as yours ... neither of us has seen the release! Neither of us can talk about something that we've never experienced. Once we do, we will be able to experiment and will know a lot more about it! There are a lot of good engineers on the project, and I know that a lot of people are looking forward to the release! Scott C. Lemon