ietf-openpgp
[Top] [All Lists]

Re: Czech attack to PGP

2001-03-22 17:28:43
alphabeta(_at_)beta2(_dot_)freedom(_dot_)net writes:

Then there is the issue that if we are changing the packet format, maybe
we should make other changes as well.  Then, if we're changing the secret
key packet format, should the public key packet be changed as well,
which introduces interoperability and backwards-compatiblity problems.

It's certainly better to break compatibility explicitly than to
introduce a new interpretation of an existing data format (e.g. based
on packet length).  The former will result in clear error messages for
users of old software, the latter will cause obscure errors and
messages.

-- 
Florian Weimer                    
Florian(_dot_)Weimer(_at_)RUS(_dot_)Uni-Stuttgart(_dot_)DE
University of Stuttgart           http://cert.uni-stuttgart.de/
RUS-CERT                          +49-711-685-5973/fax +49-711-685-5898