Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: some tech guy; bert
I think bert is saying (and he will correct me if I am wrong) that any authentication-protected content is either secure or it is not. In the small, localized iPhone system there is a separate processor to hold the (single) salt and perform hashing as part of decrypting the AES key. That processor is not accessible to attackers so the authentication cannot be brute forced or bypassed and the content is secured.

In a large system there can be a HSM. Those are typically only used to store keys rather than perform any authentication steps such as salting and hashing. But they can be used for that. And even large systems without HSMs can have strong security for that step, for example storing salts in a separate secure database firewalled from any other system except for the hashing system.

The caveat with the larger systems is they are comprised of general purpose operating systems, with the exception of the HSM. Those OSs can be hijacked or reimaged to provide a back door. Yet they are considered secure and very often are. Attackers are left with social attacks on the human weak link. Thus if those systems can be secured, an iPhone can also be secured.

50 posted on 03/13/2016 8:06:20 AM PDT by palmer (Net "neutrality" = Obama turning the internet over to foreign enemies)
[ Post Reply | Private Reply | To 49 | View Replies ]


To: palmer

well, actually your well described authentication-protected paragraph was over my head.

I actually had in mind say the EPA and EXXON. I see no difference between the FBI demanding Apple break the encryption on the I phone and say the EPA confiscating EXXON computers and demanding Dell or Microsoft break the encryption to reveal e mail or proprietary secrets thought to be climate change subversive

I see no difference between the hand held and the desk bound computers


51 posted on 03/13/2016 8:35:07 AM PDT by bert ((K.E.; N.P.; GOPc;+12, 73, ....carson is the kinder gentler trump.)
[ Post Reply | Private Reply | To 50 | View Replies ]

To: palmer

I never thought I’d meeting someone who “gets it” on FR. Thank you FRiend.


53 posted on 03/13/2016 8:42:26 AM PDT by some tech guy (Stop trying to help, Obama)
[ Post Reply | Private Reply | To 50 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson