[LINK] Brazillians have been doing electronic voting for years

Rick Welykochy rick at praxis.com.au
Sun Nov 19 15:39:27 AEDT 2006


Craig Sanders wrote:

> On Sat, Nov 18, 2006 at 09:21:39AM +1100, Kim Holburn wrote:
> 
>>>"We make every line of code available to all political parties for  
>>>auditing," he says. "In the last week, the program is finalised in  
>>>front of them and digital signatures issued for each box's memory  
>>>card. On start-up the box will automatically freeze if the digital  
>>>signature and hash records don't match."
> 
> 
> the same was said of the xbox and the ps2 as well.
> 
> and copy-protection schemes have been a dismal failure ever since they
> were first invented.
> 
> you can not guarantee that when the machine says "digital signature
> verified" that it is actually verifying the signature, rather than just
> printing the all-is-well message....which is a very common technique for
> breaking copyright protection, replace the protection routine with one
> that just returns "everything is OK".

And w.r.t. having access to the source code. Unless the source code is
compiled and linked and then checksummed/compared to the binaries on
the voting box, you cannot be assured that the source code the Diebold
has made available is that which is running on the machine

With true FOSS this can be done and would be a firm requirement of
an open and auditable system.


cheers
rickw



-- 
_________________________________
Rick Welykochy || Praxis Services

Welcome to the department of redundancy department.



More information about the Link mailing list