Encryption U-turn slammed as naive and foolish

NEWS The Department of Trade and Industry (DTI) revealed proposals that will allow the authorities "to gain legal access" to encryption keys "or other information protecting the secrecy of stored or transmitted information." The proposals outlined plans for the controversial Trusted Third Parties policy: a voluntary scheme where third parties would be licenced to provide or facilitate encryption services including keys to encrypted data. "This is an absolute disaster" according to Brian Gladman, an independent information security consultant with thirty years experience working for the Ministry of Defence. "By implementing this undeniable U-turn, the government is making a target of these Trusted Third Parties (TTPs)." He added: "It is impossible to set up the sort of enormous system needed to house all these encryption keys without the risk of security breaches." A point echoed by James Gardiner, marketing manager at Demon Internet. "Using third parties to protect data is a licence to leak." He explained: "If you put your faith in a system that has all the data in one place and it gets hacked, all your private data will be compromised. It's a foolish plan. There's no need for third parties." The proposals are comparable with the US government's much maligned encryption policy - a policy Whitehouse officials recently admitted is "a failure". It also represents a U-turn on the government's pre-election manifesto which states: "Attempts to control the use of encryption technology are wrong in principle, unworkable in practice and damaging to the long-term economic growth of the information networks." Asked if the government had done a U-turn, a DTI spokesperson said: "The previous government did a private consultation and the response was that a voluntary scheme was definitely the way forward." But Yaman Akdeniz of the UK's civil liberties organisation Cyber-Rights and Cyber-Liberties said the U-turn is a result of pressure from an EC document called the 'Communication Paper on Encryption and Electronic Signatures' which was released last November and supports TTPs. "The government is naive and is simply falling into line with the European directive," he said. Gladman believes the U-turn goes deeper: "This has been influenced by civil servants in the upper echelons of government who simply want to maintain a means by which they can access private data." A claim refuted by the DTI spokesperson: "The government simply wants to bring the online world into line with the rest of the world. This system is like a guarantee. It's voluntary. So if you want to use a plumber, you'll look for the Corgi sign to guarantee you quality. This system is the same. If you want privacy guaranteed this system will guarantee it."

Post your comment

In order to post a comment you need to be registered and logged in

Log in or create your ZDNet UK account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Membership FAQ

ZDNet UK Live

dava4444

this spam bot is exasperating

39 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

:D I think the server exchange does slow down a bit round 5 to 7/8 pm but I find I mostly get 3 to 4 MBps on downloads and by that time there...

40 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

night before last

41 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

5MBps, I saw 5.8

41 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

honestly I do get

41 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

thank you for the support. ..but in

42 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

if you download a BIG file from the MS site then THAT is your *true* speed.

42 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

Hi Fat Pop Do Wop!

42 minutes ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

it filters the word 'aittude' mis spelled intentionally

46 minutes ago by dava4444 on How to build a GUI for a toaster
dava4444

but with a fair amount of work, possibly. God Bless Dava

48 minutes ago by dava4444 on How to build a GUI for a toaster
dava4444

But I think Googles idea could be developed into an able paradigm. right now, no.

48 minutes ago by dava4444 on How to build a GUI for a toaster
dava4444

took there repos down for Ubuntu (I think there back now but they took a few months). I don't think there is a perfect answer,

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

but the community coding and ideas would be gratis, maybe that's why OEM's can be 'slackers' when it comes to Linux. they just sit back and let...

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

continued the bad point about that is hardware, a rival OEM can take your development and use it themselves and to retaliate you would have to go...

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

continued Okay how about something like Google's approach 'semi-open source'? . the OEM pours cash in to development and code, whilst opening it...

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi Adrian em, interesting, yeah okay I can get this vibe, if I wanted VRec on my Tele I would need an embedded and tiny OS and you're totally...

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi Adrian been trying to post for three days .this spam bot is a nightmare. Dava

3 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi James I totally agree. The new site makes me want to come and post, but the spam bot refers me at every turn. I even at one point, thought I...

4 hours ago by dava4444 on Spam? Filter Changed?
sameerhere

the future of mobile will be location and context aware. This means, you will have apps that will suggest you depending where you are right...

6 hours ago by sameerhere on Symbian^3 will do resistive multitouch, says Nokia
kenye2009

hello i would like to have some form of a answer to this question as it concerns the goverment i want to know why if your on state benefits as a...

6 hours ago by kenye2009 on ITN to launch ITV online news service

Featured white papers

Achieving PCI Compliance for:Privileged Password Management & Remote Vendor Access

For multi-store outlets, including retail, banking, grocery, gas, hospitality, convenience stores and others, reducing (or avoiding) the cost of in-store system support and maintenance while maintaining compliance with PCI and other requirements has become a strategic challenge.

Download now

Web 2.0 Security Threats: How to Protect Your Enterprise Network

Speaker: Dr. Chenxi Wang, Principal Analyst, Security and Risk Management, Forrester Research, Inc. As Enterprises are increasingly connected to the Internet and as hard organizational boundaries are fast disappearing, security professionals are facing fresh challenges in Enterprise computing.

Download now

MindManager - Tutorial for New Users - Short

This tutorial is for new MindManager users and teaches you how to get started, by creating maps, reading maps and organizing your information.

Download now