5 ms·
Signal is for text messaging and fails as an email replacement. It also does not work for signing code and it requires you give over your contacts list to a thi
by datatan 10y ago
Signal is for text messaging and fails as an email replacement. It also does not work for signing code and it requires you give over your contacts list to a third party to work.
Signal is not fit for PGP's use case.
- dublinben 10y agoSignal is actually quite sufficient as an email replacement. You can send media attachments, and even include several recipients. It is unquestionably a better encrypted messaging system than PGP.
- tapoxi 10y agoUnless you actually need to send email with Signal, or want to be anonymous, since Signal uses your phone number.
- mstef 10y agopgp does not provide anonymity at least not in the widely accepted form. every message has the recipient keyid in plaintext, unless you --throw-keyids but then you run into incompatibilities and inconveniences that make the whole exercise user unfriendly and widely unsupported.
- falcolas 10y ago> pgp does not provide anonymity Not quite true. > every message has the recipient keyid in plaintext The keys are not required to be centralized in any particular location. There is no way to tie a key to an individual, unless that individual wants to be associated with that key id. It's common practice to post anonymous, encrypted messages on mailing lists or newsgroups. All you can really tell in those cases is that the recipient is a member of that mailing list or subscribes to the newsgroup (though it's not for sure, with the use of remailers, etc).
- lmm 10y agoIt provides pseudonymity. KeyIDs exist but they're not inherently tied to e.g. your real-world location the way a phone number is (to an attacker with access to the towers). Whereas OpenPGP can reasonably be combined with e.g. Tor.
- datatan 10y ago"It is unquestionably a better encrypted messaging system than PGP." You're going to have to back that up. In no way is Signal more secure or private than PGP. Signal is simply easier to use for a very small use case, text messaging.
- falcolas 10y ago> media attachments How large? > several recipients How many, in what countries? Is the communication anonymous? Can I use it in such a way that obfuscates the message's recipient? Can I send an encrypted message when the Signal servers have been DOSed? If seized, can the controllers of the Signal servers get the contents of my entire phone contact list? I believe that Signal is adequate for a small subset of encrypted message cases, but not as a good replacement for encrypted emails.
- dublinben 10y agoLarger than the 10 MB attachment limit of most email providers. I'm unaware that Signal is geographically limited in any way. Signal is anonymous as your phone number is. PGP isn't anonymous either, so this seems like an irrelevant criticism. Again, you can obfuscate the recipient as much as you can obfuscate a phone number. You can't obfuscate the email address you're sending your encrypted email to. This depends on how they use contacts to match users. I believe they only collect a hash of the phone numbers you choose to share with them.
- krick 10y agoBy the way, is it possible to use Signal to communicate with people using WhatsApp? Probably stupid question, but since they both use Signal protocol, phone number and stuff I would guess it should be possible to write a bridge that reveals to the MITM (FB) only your phone and the fact you are talking to the person they know, and blatantly lie about everything else, such as your contacts, seen messages (if desired), etc.
- geofft 10y agoPGP is, supposedly, "Pretty Good Privacy". Code signing has nothing to do with privacy. It's true that PGP is a very good code signing system, but saying that sounds like an endorsement of PGP as a privacy system. (And there are plenty of other good code signing systems, from TUF to Authenticode to signify.)
- datatan 10y agoYou've intentionally reduced PGP to your narrow use case. PGP/GPG will also sign and not just encrypt. If you're going to debate the subject do so honestly.
- geofft 10y agoYes, that's my point. PGP/GPG's ability to sign things is an "also", but it's the only thing it's good at. Build a version of GPG that only does signing and verification, and nobody will be tempted to use it for privacy.
- falcolas 10y agoSigning is an integral part of a good encryption scheme, to prevent against certain oracle attacks. The two functions are not so easily separated (if you're offering encryption).
- geofft 10y agoIs the sort of signing you want to do for code signing related to the sort of signing you want to do as part of an encryption scheme? This vaguely sounds similar to how RSA decryption/encryption and signing/verification are the same sets of operations, at the primitive level, making it easy to turn a tool that does one in to a tool that also does the other. But the actual high-level signing and encryption systems (e.g. RSA-PSS and RSA-OAEP) are not the same operations at all, and being good at one is no guarantee of being good at another.
- falcolas 10y ago
- corndoge 10y agoI just want to point out that this comment chain is conflating Signal the app with Signal the crypto protocol, which is not specific to SMS