GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Pirate Praveen (praveen@social.masto.host)'s status on Friday, 01-Nov-2024 08:56:06 JST Pirate Praveen Pirate Praveen

    Drafting a method for verifying new devices for #XMPP end to end encrypted chats.

    This is a very early draft/brain dump, once a few people validates, it can be submitted to official review process.

    #Matrix already implements cross signing and this makes encryption experience very smooth, but in XMPP using multiple devices in encrypted rooms is really a mess.

    XMPP already have a concept of master key per identity defined in OpenPGP for XMPP. We can combine these two.

    https://cryptpad.fr/pad/#/2/pad/edit/V6nDcrMy6b+2+cIIFXZUF5pO/

    In conversation about 8 months ago from social.masto.host permalink
    • Kari'boka likes this.
    • Kari'boka repeated this.
    • Embed this notice
      Pirate Praveen (praveen@social.masto.host)'s status on Friday, 01-Nov-2024 08:56:32 JST Pirate Praveen Pirate Praveen
      in reply to
      • Prav App

      This is one of the high priority issues identified by @prav community and we hope to focus on this once we finish https://prav.app/donate/custom-username/

      Once the XEP gets validated by XMPP community, we plan to run another crowd funding campaign to implement this (we submitted a proposal to NLNet for this, but was not accepted).

      #Prav #XMPP #FreeSoftware

      In conversation about 8 months ago permalink

      Attachments


      Kari'boka likes this.
    • Embed this notice
      Julian Andres Klode 🏳️‍🌈 (juliank@mastodon.social)'s status on Friday, 01-Nov-2024 08:57:00 JST Julian Andres Klode  🏳️‍🌈 Julian Andres Klode 🏳️‍🌈
      in reply to

      @praveen Encryption in matrix is more what I'd call an absolute cluster fuck. Inevitably you end up with failures to decrypt messages all the time. It's virtually unusable.

      In conversation about 8 months ago permalink
    • Embed this notice
      Pirate Praveen (praveen@social.masto.host)'s status on Friday, 01-Nov-2024 08:57:00 JST Pirate Praveen Pirate Praveen
      in reply to
      • Julian Andres Klode 🏳️‍🌈

      @juliank I think one major pain point currently in #XMPP is adding new devices. Matrix encryption issues I have experienced are less frequent compared to XMPP. IMHO, device cross signing can improve the situation to a large extend.

      In conversation about 8 months ago permalink
      Kari'boka likes this.
    • Embed this notice
      Pirate Praveen (praveen@social.masto.host)'s status on Friday, 01-Nov-2024 08:57:11 JST Pirate Praveen Pirate Praveen
      in reply to
      • lbja

      @lbja I think that is too complicated to implement. At least that is what I remember Daniel Gultsch's comment about it.

      In conversation about 8 months ago permalink
    • Embed this notice
      lbja (lbja@mastodon.social)'s status on Friday, 01-Nov-2024 08:57:14 JST lbja lbja
      in reply to

      @praveen Have you seen https://xmpp.org/extensions/xep-0450.html ? There is already an implementation of it: https://www.kaidan.im/2022/08/31/e2ee-trust-management/

      In conversation about 8 months ago permalink

      Attachments

      1. No result found on File_thumbnail lookup.
        Automatic Trust Management (ATM)
        from Melvin Keskin
        This document specifies a way to automatically manage the trust in public long-term keys used by end-to-end encryption protocols.
      2. No result found on File_thumbnail lookup.
        Kaidan's End-to-End Encryption Trust Management - Kaidan
        We worked several months on Kaidan’s upcoming end-to-end encryption and trust management.Once Kaidan 0.9 is released, it will provide the latest OMEMO Encryp...

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.