4 ms·
> iMessages you send are signed by your private key, which is probably not something you want. Why not?
by arcameron 13y ago
> iMessages you send are signed by your private key, which is probably not something you want.
Why not?
- mehrdada 13y agoBecause they can be used against you and you won't be able to deny the message has originated from you, which is a desirable security/privacy property in a messaging app setting. OTR, and mpOTR[1] in particular, try hard to remove non-repudiability from messages. [1]: http://www.cypherpunks.ca/~iang/pubs/mpotr.pdf http://www.cypherpunks.ca/~iang/pubs/mpotr.pdf
- nileshtrivedi 13y agoI always thought non-repudiability was desirable and what whistleblowers need is anonymity. Thanks for that link.
- mehrdada 13y agoTo be clear, it's a desirable property that parties engaging in a conversation are able to verify authenticity of messages and that they indeed originated from their authors. It is undesirable that the parties of the conversation are able to definitively prove to a third party, not involved in the conversation, that a message was indeed originated from a specific person.