April 12th, 2007

security through obfuscation

I'm deleting the text of this post because it was such a horrible metaphor that I can't even understand it five months later.

The general idea was that I'm always annoyed by the flippant reply that security through obfuscation isn't security.

Of course it is!  All security is through obfuscation. I hide the shape of my door key.  I hide my combination lock.  I hide the two prime numbers used to encrypted my cipher text.  Hiding a key under a rock is the same thing, just a little easier to determine.