Matches for ninjashogun, 1788 total results Sorted by newest | relevance
Sat Mar 22 21:06:53 UTC 2014 <ninjashogun> asciilifeform, I did learn from it, yes. Clearly Risk Compensation is not a law :) :) It is possible to mitigate fallout in some ways without automatically getting an exact compensation.
Sat Mar 22 21:04:22 UTC 2014 <asciilifeform> ninjashogun: i am sad to say that you appear to have learned nothing from our conversation.
Sat Mar 22 21:03:13 UTC 2014 <ninjashogun> So, if we know, for sure, that in some cases Cardanos will be lost or stolen - is it possible that an architectural change MAY make the Cardano more secure oerall by reducing the immediate fallout from these cases?
Sat Mar 22 21:02:10 UTC 2014 <ninjashogun> (asciilifeform had an example of how soviet submarines did not self-regulate their nuclear reactors but always had a person in the loop, who therefore understood the gravity of his situatoin.)
Sat Mar 22 21:01:20 UTC 2014 <ninjashogun> soviet*
Sat Mar 22 21:01:04 UTC 2014 <ninjashogun> asciilifeform, in which case any change to that (by making it "safer") would in fact result in worse effects.
Sat Mar 22 21:00:43 UTC 2014 <ninjashogun> asciilifeform, it is a good question because in the case of the Soviety Submarines, it is possible that none will ever melt down due to user error, ever.
Sat Mar 22 21:00:02 UTC 2014 <ninjashogun> asciilifeform, let me ask you this. Will any Cardano ever be lost or stolen?
Sat Mar 22 20:56:29 UTC 2014 <ninjashogun> benkay, I understand this.
Sat Mar 22 20:56:16 UTC 2014 <benkay> ninjashogun: that's the whole point of "you guarantee physical security, cardano guarantees electrical security."
Sat Mar 22 20:56:12 UTC 2014 <ninjashogun> I don't think it's possible to make a true tamper evident device.
Sat Mar 22 20:56:00 UTC 2014 <ninjashogun> I personally don't like tamper evident seals at all.
Sat Mar 22 20:55:39 UTC 2014 <ninjashogun> benkay, fair enough :). However if you are not aware that it has been out of your possession for a few minutes or hours this does not help.
Sat Mar 22 20:55:12 UTC 2014 <ninjashogun> Oh, this is what I understood from asciilifeform
Sat Mar 22 20:54:53 UTC 2014 <ninjashogun> So under the current Cardano architecture, there is 0 mitigation for even accidental loss, or theft. There is no pass phrase that is possible without rewriting the firmware yourself.
Sat Mar 22 20:54:18 UTC 2014 <asciilifeform> in my earlier conversation with ninjashogun, i tried to explain the concept of only solving technical problems that can be solved -well-.
Sat Mar 22 20:54:11 UTC 2014 <ninjashogun> benkay, not so. This is asciilifeform's current argument for refusing to add any fallout mitigation for stolen Cardano's (including use of a passphrase that gets discarded after a while and memory cycled.).
Sat Mar 22 20:53:19 UTC 2014 <ninjashogun> even though it would cause people to treat their Cardano's in a slightly more coveted manner.
Sat Mar 22 20:53:04 UTC 2014 <ninjashogun> benkay, but you see it would be wrong to do so. That is too much added insecurity.
Sat Mar 22 20:52:47 UTC 2014 <ninjashogun> benkay, yes it's just a thought experiment. Clearly to SOME extent people would treat their cardano's slightly more securely physically if the printed key were on it.