Robert Sandilands wrote:
> 
[SNIP]
>
> Until people start really demanding security, companies like Microsoft
> will be buzzword complaint but not really secure without a lot of extra
> work and tools. There will always be the message box that you can press
> that it is Ok to delete all your files or to mail the virus to everybody
> or to accept the illegal certificate.
> 
> Until people become willing to give up functionality for security this
> will always be a problem.

At the same time, I remember thinking how ludicrous it was when I first
used a Win2k box, needed to look in the c:\winnt\ directory, and was
told flat out "No user serviceable parts inside!"

A more elegant solution might be just for interface designers to improve
their dialog boxes.  To use the previous "delete all files example":

"Deleting all of your files is bad!
This action will not be performed."
        OK              OVERRIDE

(with OK as the default -- stupid users always assume the defaults are
correct)

-Sean

-- 
 +-----=[export-a-crypto-system-sig RSA-3-lines-PERL]=-----+
 |#!/bin/perl -sp0777i<X+d*lMLa^*lN%0]dsXx++lMlN/dsM0<j]dsj|
 |$/=unpack('H*',$_);$_=`echo 16dio\U$k"SK$/SM$n\EsN0p[lN*1|
 |lK[d2%Sa2/d0$^Ixp"|dc`;s/\W//g;$_=pack('H*',/((..)*)$/)  |
 +--------=[http://www.cypherspace.org/~adam/rsa/]=--------+
"Most people would rather die than think, and most people do." 
                                       -- Bertrand Russell
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to