The OSI model should add a specific, mandatory, date encryption layer (probably between existing presentation and session layers), rather than the current "just another optional Presentation Layer service" it exists as. And this should be incorporated into the TCP/IP stack within it's application layer as mandatory (or in RFC-speak a "MUST" requirement).

