Juniper has announced that it will retire Dual_EC… “in the first half of this year.”
All right, NSA, get busy. You have about nine months to come up with a new insecure algorithm.
They probably lost a contract or two.
OK, so they fixed that one.
But what assurance do we have that there is not still a backdoor of some sort?
(and where can you get hardware that has not been exposed to this corruption?)
[quote]
All right, NSA, get busy. You have about nine months to come up with a new insecure algorithm.[/quote]
They already have. That’s why Juniper finally quit stalling. They think they they have fan danced long enough to set up plausible deniability.
Who would actually select juniper over the competition now?
Edit:
…and why?
Sensibly, everyone who isn’t rolling their own, as all eyes are on Juniper now watching for anything even faintly suspicious whereas the other options are comparatively unknown quantities.
This topic was automatically closed after 5 days. New replies are no longer allowed.