约翰霍普金斯大学的Matthew Green教授致函一位TrueCrypt开发者,询问fork的可行性。
这位TrueCrypt开发者简短的回答:(墙外原文在此:http://pastebin.com/RS0f8gwn )
创建分支是不可能的。
他说,创建分支不是一个好主意,因为TrueCrypt的代码需要重写。他们一直想重写代码。他认为,从头开始写一个加密软件所耗费的时间并不比学习和理解现有的TrueCrypt代码库长。他表示参考TrueCrypt的源代码不会有什么问题。
对于这个奇怪的“不可能的”回答,也有一些读者的看法:
He says:
“I am sorry, but I think what you’re asking for here is impossible.”As a developer, he uses the term “impossible”. Nobody says
“impossible” in a development framework. You could
say “difficult” or “expensive” but not “impossible”.
He says “impossible” because he is telling us in
specific terms:It is “impossible” to use the current code base because
it has been compromised. He can’t talk about it. He is
under court order or some fucking thing.Since he cant tell us where the compromise is
he says fuck it all and start from scratch.
He is very specific.Look, if the developer of an encryption product
says the product is not secure and it is impossible
to fix, I take that as:“Stay the fuck away from this thing”.
To be forewarned…
而具体的真相,也许以后才能知道,我们只能说,如果可能,还是改弦易辙吧。
参考:http://www.solidot.org/story?sid=40023 http://it.slashdot.org/story/14/06/19/145219/truecrypt-author-claims-that-forking-is-impossible
原创文章,作者:ItWorker,如若转载,请注明出处:https://blog.ytso.com/48499.html