Security? Don’t bother until it’s needed says RFC

http://regmedia.co.uk/2014/05/29/random_string.png?x=648&y=429&crop=1

All-or-nothing approaches to security are part of what’s making it so hard to achieve acceptable protection, a new RFC suggests.

Written by Viktor Dukhovni of Two Sigma, RFC 7435 argues that the way current systems fail is a discouragement to good security. A binary failure – if two peers in a conversation don’t have the same capabilities, the connection fails – can result in users avoiding encryption, for example, because it’s too inconvenient; or administrators switching off because user problems are too frequent.

Tags: 

Read more: Security? Don’t bother until it’s needed says RFC

Story added 15. January 2015, content source with full text you can find at link above.