End to End Encryption SIG - 2021-09-20


  1. Seve has joined

  2. DebXWoody has joined

  3. eab has left

  4. eab has joined

  5. Millesimus has left

  6. Millesimus has joined

  7. Millesimus has left

  8. sam2943 has left

  9. belong has left

  10. Millesimus has joined

  11. DebXWoody has left

  12. belong has joined

  13. purplebeetroot has joined

  14. purplebeetroot

    you know of this WG right? https://datatracker.ietf.org/group/mls/about/ It's about creating a standart for message encryption in groups their MUC: xmpp:mls@jabber.ietf.org?join

  15. L29Ah

    another one?

  16. L29Ah

    nice thing about standards

  17. purplebeetroot

    they hope to reach interoperability.

  18. L29Ah

    like OTR?

  19. L29Ah was surprised when he learned that OTRv4 didn't include multi-user chats

  20. dequbed

    L29Ah: MLS is designed to be agnostic over the chat protocols in use and instead defines terminology and features in a high-level way.

  21. L29Ah

    so like OTR

  22. dequbed

    I guess? I haven't looked much at OTR

  23. dequbed

    But MLS is specifically designed for reasonable big group chats in the style of Matrix' megOlm. And at least the OTR that I used didn't really do that whole more than two party all that well :)

  24. beforeigner has left

  25. dequbed

    The worst outcome anyway is that it ends up like SASL where everybody implements it by hand anyway and then only does the subset of features they specifically want meaning stuff isn't interoperable again. The best outcome is it ends up like TLS where just about everything that's vaguely stream-orientated can now be transport encrypted with very little efford on the developers part and as a result almost all chat is now fully e2ee.

  26. dequbed

    The worst outcome anyway is that it ends up like SASL where everybody implements it by hand anyway and then only does the subset of features they specifically want meaning stuff isn't interoperable again. The best outcome is it ends up like TLS where just about everything that's vaguely stream-orientated can now be transport encrypted with very little efford on the developers part and as a result of MLS being that way almost all chat is now fully e2ee.

  27. beforeigner has joined

  28. purplebeetroot has left

  29. vanitasvitae

    Originally the MLS folks planned to design MLS such that it would work cross-protocol, but I believe thats no longer a high-priority goal for them

  30. vanitasvitae

    Cross-protocol support would have been awesome though

  31. vanitasvitae

    Imagine e2ee cross bridges

  32. belong has left

  33. belong has joined

  34. DebXWoody has joined

  35. dequbed

    Well its still possible if I haven't misread the spec. The bridge has to translate a few things between hither and yonder but it doesn't have to MITM the encryption

  36. belong has left

  37. belong has joined

  38. DebXWoody has left

  39. DebXWoody has joined

  40. DebXWoody has left

  41. belong has left

  42. belong has joined

  43. larma has left

  44. larma has joined

  45. belong has left

  46. Millesimus has left

  47. Millesimus has joined

  48. belong has joined

  49. melvo has left

  50. Millesimus has left

  51. Millesimus has joined

  52. Millesimus has left

  53. Millesimus has joined

  54. belong has left

  55. belong has joined

  56. vanitasvitae

    Well, there is no common message format (apart from some old rusty thing called XMPP)