I think you just destroyed your own argument. The practical probability of collison so vastly swamps the theoretical one in both systems, that adding complexity to the system to avoid a negligible probability of failure is the Wrong Way to Go.
There are for example Ethernet cards with colliding MAC addresses, because the manufacturers made mistakes.
Really, preferring a system with zero probability of failure over one with a negligible probability will take you the wrong way in security terms.
Re: "PKI needs more than a name"
Date: 2002-06-11 06:26 am (UTC)I think you just destroyed your own argument. The practical probability of collison so vastly swamps the theoretical one in both systems, that adding complexity to the system to avoid a negligible probability of failure is the Wrong Way to Go.
There are for example Ethernet cards with colliding MAC addresses, because the manufacturers made mistakes.
Really, preferring a system with zero probability of failure over one with a negligible probability will take you the wrong way in security terms.