Re: Backport of the integer overflow in the brk system call

On Wed, Dec 03, 2003 at 11:42:06PM +0100, Bernd Eckenfels wrote:
> On Wed, Dec 03, 2003 at 10:34:13AM +0100, Artur R. Czechowski wrote:
> > What about RSA tokens? This solution does not require any special hardware
> > to connect on the client side.
> This also means it does not provide any additional security, besides the
> costs.
Yes. But I suppose, that this solution is cheaper. I do not know a
production's cost nor stock price, but one of Polish banks requires 200PLN
(about 50USD) for every next token (first is included into product). Another
one (German, operating in Europe) requires a half of it (about 25USD) for
lost/damaged token. And ~9USD yearly fee for token, if not included in
product. I do not know prices for smartcards/readers (I still mean about
client's part, not server software) but maybe someone has data to compare?

BTW, if some day Debian decide to use any method which requires a special
device please consider about secure way to deliver this device to developer.

opadły mgły i miasto ze snu się budzi, góra czmycha już noc
ktoś tam cicho czeka by ktoś powrócił, do gwiazd jest bliżej niż krok
pies się włóczy popod murami bezdomny, niesie się tęsknota czyjaś
                                                       na świata cztery strony

