InvestorsHub Logo
icon url

wavedreamer

04/28/15 10:46 AM

#241775 RE: aleajactaest #241774

alea,

"Confirms what has been said over here. Snowden's revelations are intrinsic to the discussion of Wave. To work, TCG has to fit international demands for security. Against the NSA. Unless that occurs, demand for products that depend on TPM security will be much reduced due to the whiff of sovereign preference."

WD= I agree generally with this comment but keep in mind the technical committees from the 26 participating nations have a say in approving any Protection profile that is developed. If the NSA provides the PP everyone gets to have their say.

I'm glad to see the TPM 2.0 has been going through the Common Criteria Process and was submitted in July 2014 in France. Once it's past, it's one more hurdle out of the way. Another one that is key is the PP for the "authentication Server under development at the NIAP JMO

"“In TPM 2.0, which is now going through the International Organisation for Standardisation process, you get crypto agility, which means governments can choose which algorithm they want in their TPM chips,” said Charney.


WD= The NSA stated last year that the reason they have been active participants in developing these Protection Profiles that IT products will be tested against for the Critical systems is to make sure all the OEM's and ISP's apply the standards in a uniform manner.

Makes me think that there have been problems like what the Mitre researchers found in 2013 with Dell Laptops and the TPM problem.

AJMHO