I've just downloaded Pretty Good Privacy Latest Windows beta
freeware.......i was planning to use it as a folder lock for my windows
explorer. I have not instaled it yet but this new version appears to
have been designed for the non techie type like me.
Its a real big size prog and i am having second thoughts about if i can
adopt something so big (20MB).....i was assuming this prog is the best
way to protect sensitive files???.....please advise if this is not a
good idea and i would be better off using a smaller freeware prog.....
not sure if i understand how PGP works but i dont like the idea of
attracting the attention of hackers with high tech progs....if this is
an issue with PGP, i will uninstall it for something less hard core.
The way i understand it, PGP uses an external organisation to decrypt
stuff?.....does this mean they also have the potential to view what i
encrypt??
appreciate advice on this issue and perhaps a suggestion for a less
hard core program if you think this more apropriate when the above is
taken into account.
Thanks......A
http://truecrypt.sourceforge.net/
<snip>
>The way i understand it, PGP uses an external organisation to decrypt
>stuff?.....does this mean they also have the potential to view what i
>encrypt??
Incorrect. Only the holder (you) with the appropriate key and/or
password can decrypt files encrypted by you. If you use PGP to
encrypt email, then only the person whose public key was used to
encrypt it, can decrypt it. Not even the sender (you) can decrypt the
email, once encrypted, to someone else's public key.
Instead of assuming, you might want to read the manual.
>
>appreciate advice on this issue and perhaps a suggestion for a less
>hard core program if you think this more apropriate when the above is
>taken into account.
If you do not need PGP's email encryption capability, then you might
have a look at "Blowfish Advanced CS." It is an excellent file
encryption program, using secure algorithms.
--
jimbok
> If you do not need PGP's email encryption capability, then you might
> have a look at "Blowfish Advanced CS." It is an excellent file
> encryption program, using secure algorithms.
>
> http://bfacs.sourceforge.net/
By what test are they secure?
--
Drop the alphabet for email
By surviving continuous structural attacks, for years, by many of the
best cryptographers and cryptanalists in the free world. The program
is also open source, with its code available for peer review. If you
would care to review the code, it is available from the program's
author.
--
jimbok
>>> http://bfacs.sourceforge.net/
>>
>>By what test are they secure?
>
> By surviving continuous structural attacks, for years, by many of the
> best cryptographers and cryptanalists in the free world. The program
> is also open source, with its code available for peer review. If you
> would care to review the code, it is available from the program's
> author.
Thanks. I did not see any of the test attacks and results, perhaps I missed
those.
> I really like Blowfish Advanced CS, because of its jobs capability,
> file renaming, flexibility, etc. It includes many algorithms including
> AES(Rijindael), Twofish, Serpent, Blowfish, CAST, etc. I believe all
> the algorithms conform to standards, plus, how do you know the new PGP
> is absolutely "secure"?
> Don't get me wrong, I do use PGP 9. I sometimes encrypt something
> using PGP, then go over it with Serpent.
Appreciate the opinion. Yes, how does one know it or any other system of
encryption is secure? Are there standards that must be passed, a certain
number of attacks of certain types or is it pretty much "have at it" until
everyone (for the time being) gives up?