For every opportunity presented by the information age, there is an opening to invade the privacy and threaten the security of the nation, U.S. businesses, and citizens in their private lives. The more information that is transmitted in computer-readable form, the more vulnerable we become to automated spying. It's been estimated that some 10 billion words of computer-readable data can be searched for as little as $1. Rival companies can glean proprietary secrets . . . anti-U.S. terrorists can research targets . . . network hackers can do anything from charging purchases on someone else's credit card to accessing military installations. With patience and persistence, numerous pieces of data can be assembled into a revealing mosaic.
Cryptography's Role in Securing the Information Society addresses the urgent need for a strong national policy on cryptography that promotes and encourages the widespread use of this powerful tool for protecting of the information interests of individuals, businesses, and the nation as a whole, while respecting legitimate national needs of law enforcement and intelligence for national security and foreign policy purposes. This book presents a comprehensive examination of cryptography—the representation of messages in code—and its transformation from a national security tool to a key component of the global information superhighway. The committee enlarges the scope of policy options and offers specific conclusions and recommendations for decision makers.
Cryptography's Role in Securing the Information Society explores how all of us are affected by information security issues: private companies and businesses; law enforcement and other agencies; people in their private lives. This volume takes a realistic look at what cryptography can and cannot do and how its development has been shaped by the forces of supply and demand. How can a business ensure that employees use encryption to protect proprietary data but not to conceal illegal actions? Is encryption of voice traffic a serious threat to legitimate law enforcement wiretaps? What is the systemic threat to the nation's information infrastructure? These and other thought-provoking questions are explored.
Cryptography's Role in Securing the Information Society provides a detailed review of the Escrowed Encryption Standard (known informally as the Clipper chip proposal), a federal cryptography standard for telephony promulgated in 1994 that raised nationwide controversy over its "Big Brother" implications. The committee examines the strategy of export control over cryptography: although this tool has been used for years in support of national security, it is increasingly criticized by the vendors who are subject to federal export regulation.
The book also examines other less well known but nevertheless critical issues in national cryptography policy such as digital telephony and the interplay between international and national issues. The themes of Cryptography's Role in Securing the Information Society are illustrated throughout with many examples—some alarming and all instructive—from the worlds of government and business as well as the international network of hackers. This book will be of critical importance to everyone concerned about electronic security: policymakers, regulators, attorneys, security officials, law enforcement agents, business leaders, information managers, program developers, privacy advocates, and Internet users.
National Research Council. 1996. Cryptography's Role in Securing the Information Society. Washington, DC: The National Academies Press. https://doi.org/10.17226/5131.
|A Road Map Through This Report||15-16|
|Part I - Framing the Policy Issues||17-18|
|Growing Vulnerability in the Information Age||19-50|
|Cryptography: Roles, Market, and Infrastructure||51-78|
|Needs for Access to Encrypted Information||79-110|
|Part II - Policy Instruments||111-112|
|Escrowed Encryption and Related Issues||167-215|
|Other Dimensions of National Cryptography Policy||216-246|
|Part III - Policy Options, Findings, and Recommendations||247-248|
|Policy Options for the Future||249-292|
|Syntehsis, Findings, and Recommendations||293-340|
|A - Contributors to the NRC Project on National Cryptographic Policy||341-352|
|B - Glossary||353-363|
|C - A Brief Primer on Cryptography||364-395|
|D - An Overview of Electronic Surveillance: History and Current Status||396-413|
|E - A Brief History of Cryptography Policy||414-420|
|F - A Brief Primer on Intelligence||421-429|
|G - The International Scope of Cryptography Policy||430-449|
|H - Summary of Important Requirements for a Public-Key Infrastructure||450-454|
|I - Industry-Specific Dimensions of Security||455-468|
|J - Examples of Risks Posed by Unprotected Information||469-473|
|K - Cryptographic Applications Programming Interfaces||474-476|
|L - Other Looming Issues Related to Cryptography Policy||477-484|
|M - Federal Information Processing Standards||485-488|
|N - Laws, Regulations, and Documents Relevant to Cryptography||489-676|
The Chapter Skim search tool presents what we've algorithmically identified as the most significant single chunk of text within every page in the chapter. You may select key terms to highlight them within pages of each chapter.
The National Academies Press (NAP) has partnered with Copyright Clearance Center's Rightslink service to offer you a variety of options for reusing NAP content. Through Rightslink, you may request permission to reprint NAP content in another publication, course pack, secure website, or other media. Rightslink allows you to instantly obtain permission, pay related fees, and print a license directly from the NAP website. The complete terms and conditions of your reuse license can be found in the license agreement that will be made available to you during the online order process. To request permission through Rightslink you are required to create an account by filling out a simple online form. The following list describes license reuses offered by the National Academies Press (NAP) through Rightslink:
Click here to obtain permission for the above reuses. If you have questions or comments concerning the Rightslink service, please contact:
Rightslink Customer Care
Tel (toll free): 877/622-5543
To request permission to distribute a PDF, please contact our Customer Service Department at 800-624-6242 for pricing.
To request permission to translate a book published by the National Academies Press or its imprint, the Joseph Henry Press, pleaseclick here to view more information.