[OTR-users] Stylometry?
Michael Richardson
mcr at sandelman.ottawa.on.ca
Sun Jan 2 14:53:24 EST 2005
-----BEGIN PGP SIGNED MESSAGE-----
>>>>> "Gregory" == Gregory Maxwell <gmaxwell at gmail.com> writes:
Gregory> Beyond style masking, I had another idea... what if in
Gregory> addition to the RSA private key, each party maintained a
Gregory> separate long term DH key. At the beginning of every
Gregory> conversation, a DH key negotiation takes place (inside the
Gregory> secure channel) and a key is generated to encrypt their log
Gregory> file of the conversation. When the OTR session is torn
Gregory> down they toss the key. A user, in isolation, would be
Gregory> unable to reveal the logs even under duress.
Okay, that addresses the situation where a user is under duress.
But, the problem you are trying to solve is akin to what the "content"
industry thinks they can solve: that you can every secure information
*against* the owner of the computer you are transmitting it to.
I think that a routine to shovel all your text out to
google/alta-vista/babel translators through three languages and back to
your native one would be better.
All meaning in your words would be gone :-)
Gregory> If I were designing an IM system, I would find it idiotic
Gregory> to make all client to client traffic go through some
Gregory> servers I ran, both from a traffic perspective and from the
Gregory> liability of being asked to monitor the traffic.... But
well, got to rid the world of NATs :-)
- --
] ON HUMILITY: to err is human. To moo, bovine. | firewalls [
] Michael Richardson, Xelerance Corporation, Ottawa, ON |net architect[
] mcr at xelerance.com http://www.sandelman.ottawa.on.ca/mcr/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Finger me for keys
iQCVAwUBQdhRLYqHRg3pndX9AQGA3wQApGC9RV+uGV/1EKsDaeYBptHfRpJIo0nc
lnNjOaNtvbCKF/lyN8awYmPSXHgRCe8hhvXtvHCQfA7nc1KnwGRUnYF350wByrS5
f7p9RWNaeXIXgxvF6KOP5lZ4wJZPSSYPRDIwN4w4LzgsObz9Ua0cRsY/9Ndd6Lam
oUFASxW7SHc=
=mGq7
-----END PGP SIGNATURE-----
More information about the OTR-users
mailing list