Re: [MLS] Deniability as external to the MLS protocol

Benjamin Beurdouche <benjamin.beurdouche@inria.fr> Fri, 13 November 2020 15:41 UTC

Return-Path: <benjamin.beurdouche@inria.fr>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0D7A73A0DF3 for <mls@ietfa.amsl.com>; Fri, 13 Nov 2020 07:41:07 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XB4rF5kXmpNs for <mls@ietfa.amsl.com>; Fri, 13 Nov 2020 07:41:03 -0800 (PST)
Received: from mail2-relais-roc.national.inria.fr (mail2-relais-roc.national.inria.fr [192.134.164.83]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2F13E3A0DEF for <mls@ietf.org>; Fri, 13 Nov 2020 07:41:02 -0800 (PST)
X-IronPort-AV: E=Sophos;i="5.77,475,1596492000"; d="scan'208";a="477427657"
Received: from 82-64-165-115.subs.proxad.net (HELO [192.168.1.48]) ([82.64.165.115]) by mail2-relais-roc.national.inria.fr with ESMTP/TLS/AES256-GCM-SHA384; 13 Nov 2020 16:41:00 +0100
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: Benjamin Beurdouche <benjamin.beurdouche@inria.fr>
Mime-Version: 1.0 (1.0)
Date: Fri, 13 Nov 2020 16:41:00 +0100
Message-Id: <C4A8E825-0535-4AD1-80F4-0CDADF250AF2@inria.fr>
References: <0D8BE327-8F34-4BAB-98E2-3F613853D39A@wire.com>
Cc: Sofía Celi <cherenkov@riseup.net>, mls@ietf.org
In-Reply-To: <0D8BE327-8F34-4BAB-98E2-3F613853D39A@wire.com>
To: Raphael Robert <raphael=40wire.com@dmarc.ietf.org>
X-Mailer: iPhone Mail (18B92)
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/_eDgXpb62QeKJTcpQ3v3rWf_Kug>
Subject: Re: [MLS] Deniability as external to the MLS protocol
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 Nov 2020 15:41:07 -0000

I am supportive of that change as well.
B.

> On Nov 13, 2020, at 4:27 PM, Raphael Robert <raphael=40wire.com@dmarc.ietf.org> wrote:
> 
> Thanks Sofia!
> 
> I think this is exactly what we need to achieve optional deniability for message authorship without touching the authentication guarantees of the the core protocol.
> 
> Raphael
> 
>> On 13 Nov 2020, at 16:01, Sofía Celi <cherenkov@riseup.net> wrote:
>> 
>> Dear all,
>> 
>> As you know, we had many discussions on deniability and solving this
>> problem is not an easy task, as evidence of this thread. To make sure we
>> can work on this optional feature in the future, without modifying the
>> core protocol, we believe that there are no changes needed to be added
>> to the core protocol. Some minor relaxing of the phrasing in the
>> document might be useful, though, and might help for future features as
>> well, so I have submitted PR #437
>> (https://github.com/mlswg/mls-protocol/pull/437). This rephrasing should
>> allow deniability of application messages by allowing the usage of
>> deniable signature keys. Please, let us know of any comments regarding it.
>> 
>> Thank you,
>> 
>> 
>> -- 
>> Sofía Celi
>> @claucece
>> http://claucece.github.io/
>> Cryptographic research and implementation at many places, but mainly at
>> Cloudflare
>> FAB9 3EDC 7CDD 1198 DCFD  4558 91BB 6B45 6F44 2D02
>> 
>> _______________________________________________
>> MLS mailing list
>> MLS@ietf.org
>> https://www.ietf.org/mailman/listinfo/mls
> 
> _______________________________________________
> MLS mailing list
> MLS@ietf.org
> https://www.ietf.org/mailman/listinfo/mls