[Enigmail] Drama!

Robert J. Hansen rjh at sixdemonbag.org
Mon Feb 18 07:36:24 PST 2008


Lachezar Dobrev wrote:
> I would have presumed people with more open minds would dwell on such
> a list...

An open mind is not all that it's cracked up to be.  If your mind is
open to everything, period, then you're going to wind up with a whole
lot of crackpot beliefs most of which contradict each other.  Living
near power lines causes cancer, the CIA was behind 9/11, etc., etc.

The cure for this is to put a filter on your mind.  To not allow things
in unless they meet some kind of evidentiary test.  You're not
presenting any evidence for your assertions, so you're getting bounced.

> Both distribution of p**nography and snooping personal calls are 
> illegal. The Police however has decided those laws do not concern 
> them. I am not comfortable with that.

Snooping personal calls may be legal, depending on the laws of your area
and how the snooping is done.  You never claimed the Bulgarian police
were doing this in violation of Bulgarian law or EU privacy directives,
much less presented evidence for that.

> Court transcripts are not yet available. I am not about to monitor 
> some lawsuit.

Right, because clearly you already know what you know, and thus there's
no need to get evidence.  All evidence could do is contradict what you
know, and where's the fun in that?

> 2. I am yet to find some free time to browse the net to find the 
> needed references.

As soon as you find them, let us know.  Until that time, I'm going to
consider it to be unfounded rumormongering.

> As far as AES/Rijndael is concerned: I was only able to see 
> references to that in the words of Skype people only.

http://www.skype.com/security/files/2005-031%20security%20evaluation.pdf
http://www.linecity.de/INFOTECH_ACS_SS05/acs5_top1_paper.pdf
http://www.tml.tkk.fi/Publications/C/22/papers/Korpela_final.pdf

I found those in literally two minutes of Googling.  All of those are
outside, independent reviews.  (One of them is hosted at Skype, however.)

AES256 (not 128 as I previously said--my error!), RSA1024 and RSA2048
are both used in the system.

> This question is not resolvable unless the protocol is opened/leaked.

Or unless academia begins to look at it, which academia already has.
Because Skype is a pretty darn cool protocol and they do a couple of
things that are really quite interesting.



More information about the Enigmail mailing list