5 ms·
> why? If you have E2EE but then one the two ends can be substituted for a new one, does it really qualifies as E2EE? If I have a hard requirement on E2EE, it
by nicoco 4y ago
> why?
If you have E2EE but then one the two ends can be substituted for a new one, does it really qualifies as E2EE?
If I have a hard requirement on E2EE, it probably means I don't want encrypted messages stored forever on remote servers, and easily decrypted on new devices.
Or it can also mean I don't really understand what encryption mean, and I'm only interested in having a nice looking lock icon next to my messages.
>> If I sent encrypted messages to a trusted device of yours, I suppose I don't really want any new device of yours to get these messages.
> I actually do
> I am sure I do want E2EE.
Then what you are looking for is opengpg-type encryption (which is available via XMPP's most popular clients too). It's a lot less convenient to set up but this is how you switch from "device key" to "personal key".
> I have to also trust the servers of all my contacts. Where did I imply that?
Where did I imply that? I just gave you an example use case that is generally not tagged as E2EE but where no one but you and your contact can read your messages (self hosting).
> being able to read my messages on all my devices?
I can read all my OMEMO encrypted messages on all my devices. If I use a new device, I cannot read history. But that's because OMEMO isn't just for show (the nice lock icon), but actually something that makes it nearly impossible for anyone but you or your communication partner to read what you exchanged.
Also, most XMPP clients also allow to export local history, which could then be imported again, so if keeping all chat history really matters to you, it's also possible. But again, if you plan to store messages forever, you increase the chance of it being read by third parties significantly.
> safe from anyone being able to read my messages except me and my communication partners
If that is all that matters to you, facebook messenger has E2EE and it should suit your needs. It has the nice lock icon you're looking for.
I think that who you talk to and how often you do is also rather important for privacy concerns, that's why I self host my XMPP server.
You seem to like the matrix protocol, where even if you self host, a lot of data is sent to the mother ship, cf https://hackea.org/notas/matrix.html https://hackea.org/notas/matrix.html
- Arathorn 4y ago> You seem to like the matrix protocol, where even if you self host, a lot of data is sent to the mother ship, cf https://hackea.org/notas/matrix.html https://hackea.org/notas/matrix.html That article is bullshit and FUD (as its subheading seems to acknowledge). No data is sent back to matrix.org if you selfhost (unless you point your config at matrix.org, obviously).
- nicoco 4y agoSorry for spreading it if it is FUD indeed (cannot edit anymore). I'll concede that I am not skilled or motivated enough to verify all that is asserted there; I think my other points about E2EE still stand, don't they? There is a lot of FUD about XMPP in comments on HN, and I feel bad for (potentially) doing the same thing about matrix, this was not my goal.
- Arathorn 4y ago> Sorry for spreading it if it is FUD indeed np; thanks for listening :) > I think my other points about E2EE still stand, don't they? I think the question is whether the recipient should be able to move message keys between their devices so they can decrypt messages from the server when they log in on a new device. Given the recipient already has the plaintext of the messages, they can obviously copy the plaintext to the new device (as Signal and Wire do, for instance). Alternatively, if the recipient has the message keys (as in Matrix), they can copy those to the new device and use them to redecrypt the history off the server. This gives the same end result, but with less data being transferred between the clients. It doesn’t violate any E2EE; it’s just the recipient chosing to process their history as they like.
- singpolyma3 4y agoOMEMO let's you move keys to a new device no problem, if you buy a new phone and will no longer use the old one for instance.
- kitkat_new 4y ago> If you have E2EE but then one the two ends can be substituted for a new one, does it really qualifies as E2EE? it's not only two ends, but as many ends as there are people belonging to a conversation. And yes, replacing or adding one device for one end with a device that belongs to the "end", still qualifies e2ee. > If I have a hard requirement on E2EE, it probably means I don't want encrypted messages stored forever on remote servers, and easily decrypted on new devices. "probably" it doesn't mean that. It means that no one except the (intended) ends (all legitimate people in the conversation respectively their devices) can read my messages. > Where did I imply that? I just gave you an example use case that is generally not tagged as E2EE but where no one but you and your contact can read your messages (self hosting). I don't know why we are talking about this. It requires everyone to self host btw. Not realistic. > But again, if you plan to store messages forever, you increase the chance of it being read by third parties significantly. True, but I think that should be a choice of the user. Don't want to have slightly increased risk? Delete the messages. For all devices (you are still storing them forever if you only do that for one device). Perhaps even delete automatically after some time after arrival/viewing the message.