!vlnjqGLpLJlFmBSkfQ:matrix.org

End-to-end crypto in Matrix

1181 Members
Discussion around implementing and using encryption in Matrix via Olm/Megolm | Spec work and reference impl work in #e2e-dev:matrix.org225 Servers

Load older messages


SenderMessageTime
1 Dec 2024
@deepbluev7:neko.devNicoWell, in that case you can't use it on a phone05:02:21
@solodric:matrix.orgSolodric
In reply to @ity:itycodes.org
What we know agrees with what Nico said about Tor traffic correlation
This is the commonly-available understanding. The problem is that the Tor project only mentioned their new timing algos in a single patch/update press release in 2016, and has barely talked about it since. I had to run down some actual Tor devs to ask about it :/
05:02:29
@ity:itycodes.orgTranquil ItyWelp05:02:41
@deepbluev7:neko.devNicoYou can't have all three of timing safety, low latency and low data usage05:02:51
@deepbluev7:neko.devNicoiirc05:02:53
@solodric:matrix.orgSolodric
In reply to @deepbluev7:neko.dev
You can't have all three of timing safety, low latency and low data usage

This is true! I hadn't even thought about data limits, but you're absolutely right.

Although not everyone's phone has a data limit problem.

05:03:17
@ity:itycodes.orgTranquil Ity
In reply to @deepbluev7:neko.dev
You can't have all three of timing safety, low latency and low data usage
Yea
05:03:27
@deepbluev7:neko.devNicoNo, but a battery05:03:31
@solodric:matrix.orgSolodricHah! that's true too.05:03:40
@solodric:matrix.orgSolodricYou can tell I barely use phones.05:03:44
@solodric:matrix.orgSolodricI2P would definitely put a strain on your data and battery.05:03:58
@ity:itycodes.orgTranquil ItyOurs' battery is dead05:04:00
@ity:itycodes.orgTranquil ItyWish we could change batteries easily05:04:12
@deepbluev7:neko.devNicoMatrix isn't the end all be all. It is somewhere on the secure to convenient scale05:04:20
@solodric:matrix.orgSolodricThe new Purism phones might actually tempt me to use a phone if they become affordable.05:04:23
@ity:itycodes.orgTranquil Ity
In reply to @deepbluev7:neko.dev
Matrix isn't the end all be all. It is somewhere on the secure to convenient scale
Yea ^
05:04:35
@deepbluev7:neko.devNicoThere are examples going further in either direction (or both)05:04:40
@ity:itycodes.orgTranquil Ity
In reply to @solodric:matrix.org
The new Purism phones might actually tempt me to use a phone if they become affordable.
We are NEVER touching Purism
05:04:42
@solodric:matrix.orgSolodric
In reply to @deepbluev7:neko.dev
Matrix isn't the end all be all. It is somewhere on the secure to convenient scale

Yeah. That's why I'm looking at it.

If you want totally bulletproof anonymity, you use P2P over I2P.

05:04:44
@ity:itycodes.orgTranquil ItyA friend of ours used IRC P2P over Tor lol05:05:01
@ity:itycodes.orgTranquil ItyMade us design a protocol specifically for that05:05:10
@ity:itycodes.orgTranquil Ity * Made us design a protocol specifically for that usecase05:05:11
@deepbluev7:neko.devNicoAnyway, gotta go, good luck you two05:05:16
@solodric:matrix.orgSolodricthat's wild.05:05:17
@ity:itycodes.orgTranquil Ityhttps://itycodes.org/directchat-01.html05:05:18
@solodric:matrix.orgSolodric
In reply to @deepbluev7:neko.dev
Anyway, gotta go, good luck you two
Thanks for the help!
05:05:25
2 Dec 2024
@solodric:matrix.orgSolodricWould it be possible to use a protocol similar to Oblivious DNS Over HTTPS to reduce the amount of unencrypted metadata on Matrix? While I don't think such a method could be bulletproof, you could potentially distribute trust between multiple parties in a Tor-esque fashion.04:55:22
@solodric:matrix.orgSolodricAt the bare minimum, it seems like you could use this methodology to minimize what a given homeserver admin can see.04:56:28
@solodric:matrix.orgSolodricBut I might just be foolish for suggesting it. I haven't given careful consideration to which specific metadata would be concealed or how, it's just that this is a known way to try to conceal metadata that I realized could work for an entirely different project (Fediverse stuff)04:57:09
@richvdh:sw1v.orgrichvdhthe principal problem for metadata on Matrix is that all servers have to know the full list of members in a room, so that they can correctly fan out new messages to all the other servers in the room10:23:26

Show newer messages


Back to Room ListRoom Version: 5