[Freedombox-discuss] Announcing Santiago Release Candidate 1

Michael Rogers michael at briarproject.org
Tue May 22 16:26:35 UTC 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 22/05/12 17:15, The Doctor wrote:
> It depends on whether or not any uniquely identifying information 
> (i.e. not part of standard SSL or TLS handshaking) is exchanged
> during setup of the connection.

Looking briefly at the Monkeysphere proposal mentioned earlier in this
thread, there appear to be some fields that could be used to
distinguish Monkeysphere-based handshakes from other handshakes:

* A new signature type is used, NullSignatureUseOpenPGP.
* The signature type's object ID comes from an ID space allocated to
the Monkeysphere project.
* The signature consists of the ASCII bytes "use OpenPGP".

https://lists.riseup.net/www/arc/monkeysphere/2011-03/msg00027.html

As I said before, this isn't necessarily a problem - it just raises
the question of whether it's a design goal for the FreedomBox's
traffic to be hard to distinguish from other traffic.

Cheers,
Michael
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iQEcBAEBAgAGBQJPu747AAoJEBEET9GfxSfMNwgH/29ZmAPaQtjq0nDQDQpJZbYw
1FNUn2n1qJwg0saaP6Uof/ncqgRlskI1IAW2RMpQnu+gibEY4wXix4873K4DAf6l
ZtT26mOVEF3dU4TXaZn5JWoL+7v/6yvyouhqNwwcB77YS33KJEW5MyfIl+beKVU9
7Oeb5bauwg5rI01RNKJLzJe4xhWtODmmqnEDPpYmT7rNOTka8U2M7Sn7N8WV+42H
e47T9cfpXskLIBa0/g7DL0TWr3S1OIsydy//EIGiBsVxM2j+2TWQB1OpwItuNt2q
vWcopK8KtDN9S2CRuAlLFxg5747Fxh3SOa7cOddm/6xCUaddQscH53JRA2URSYA=
=gamw
-----END PGP SIGNATURE-----



More information about the Freedombox-discuss mailing list