This is an old revision of this page, as edited by David Gerard (talk | contribs) at 19:44, 14 February 2004 (tweak problems section; remove "bongle" (see talk)). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.
Revision as of 19:44, 14 February 2004 by David Gerard (talk | contribs) (tweak problems section; remove "bongle" (see talk))(diff) ← Previous revision | Latest revision (diff) | Newer revision → (diff)A dongle is a small hardware device that connects to a computer and acts as an authentication key for a particular piece of software. When the dongle is present, the software will run properly; when it is not, the program will run in a restricted mode or refuse to start. Dongles are used by some proprietary vendors as a form of copy protection or digital rights management because it is much harder to copy the dongle than to copy the software it authenticates.
(Dongle also refers to an RJ-45 jack attached via a wire to a small edge connector, which is used to connect an Ethernet cable to a PCMCIA network card, into which the edge connector plugs. This type of dongle has no copy protection purpose. These are falling out of favour as more laptops include a built-in RJ-45 socket.)
Dongles are typically used with very expensive packages and vertical market software, such as CAD/CAM software, Digital Audio Workstation applications and some translation memory packages. Efforts to introduce dongle protection in the mainstream software market have met with stiff resistance from users.
History
Dongles became common in the 1980s and into the 1990s. Originally taking the form of simple passive devices that connected a parallel port in a predetermined manner, they rapidly evolved into active devices that contained a serial transceiver (UART) and even a microprocessor to handle transactions with the host. Later versions adopted the USB interface in preference to the serial interface.
Modern dongles include built-in strong encryption and special fabrication techniques designed to thwart reverse engineering. Typical dongles also now contain a reasonable amount of non-volatile memory — key parts of the software may be actually stored on the dongle.
Problems with dongles
Dongles tie up a port on the host machine. This has been ameliorated to some extent by the adoption of USB, but is still a serious drawback. To get around this, most practical dongles include a replacement port, so as to become an inline device.
A related problem is running more than one piece of dongle-protected software. Manufacturers claim that multiple dongles can be successfully stacked or daisy-chained, but operational problems with stacked dongles are common in practice. The number of dongles can also become physically problematic.
There is also the potential for weaknesses in the implementation of the protocol between the dongle and the protected software. It requires considerable cunning to implement this in a fashion that is not easy to crack. For example, naïve implementations might simply define a function to check for the dongle, returning "true" or "false" accordingly, reducing the protection to a single bit value at one point in the program.
There is also the obvious problem of losing the dongle, rendering the protected software useless.
Origin of the word "dongle"
The word "dongle," as a word for something unnamed (akin to "doodad" or "whatchamacallit") has been used since the 1970s. Its origin is unknown. The American Heritage Dictionary, 4th edition, says it is "probably arbitrary coinage." Assertions that it was derived from the name "Don Gall" are an urban myth popularized by an advertising copywriter; see Eric S. Raymond's Jargon File.
Vendors of dongles and dongle-protected software often use more dignified terms such as "hardware key" or "security device" in their written literature. Outside of such literature, "dongle" is the usual term for the device (and is used even by dongle vendors in informal parlance).