▲ 953 ▼ Under British and UK Legislation anyone using or developing end-to-end encryption is now a “hostile actor” (lemmy.ml) submitted 5 months ago by tastemyglaive@lemmy.ml to c/privacy@lemmy.ml 168 comments fedilink hide all child comments Surveillance strategies in the UK and Israel often go global
[–] affenlehrer@feddit.org 10 points 5 months ago (1 child) Yeah, who needs TLS anyways? permalink fedilink source hideshow 2 child comments replies: [–] gtr@programming.dev 6 points 5 months ago (1 child) TLS is not typically considered end-to-end encryption. It's transport encryption. permalink fedilink source parent hideshow 2 child comments replies: [–] undu@discuss.tchncs.de 2 points 5 months ago (1 child) I understand that in a system with clients and servers having encrypted communications between the server and the clients is not enough to have end-to-end encryption. Even then I find it strange to cobsider TLS not end-to-end, the whole gist of TLS is enabling confidential communications between 2 network nodes without any of the intermediate nodes participating in the communication being able to decrypt the data. permalink fedilink source parent hideshow 2 child comments replies: [–] gtr@programming.dev 2 points 5 months ago Yeah it's confusing. The implicit assumption in E2EE is that it is taking place on the application layer, while transport encryption happens on the, well, transport layer, or somewhere in between. I think the authors in the linked document mentioned chat communications between users which is definitely application layer. permalink fedilink source parent
[–] gtr@programming.dev 6 points 5 months ago (1 child) TLS is not typically considered end-to-end encryption. It's transport encryption. permalink fedilink source parent hideshow 2 child comments replies: [–] undu@discuss.tchncs.de 2 points 5 months ago (1 child) I understand that in a system with clients and servers having encrypted communications between the server and the clients is not enough to have end-to-end encryption. Even then I find it strange to cobsider TLS not end-to-end, the whole gist of TLS is enabling confidential communications between 2 network nodes without any of the intermediate nodes participating in the communication being able to decrypt the data. permalink fedilink source parent hideshow 2 child comments replies: [–] gtr@programming.dev 2 points 5 months ago Yeah it's confusing. The implicit assumption in E2EE is that it is taking place on the application layer, while transport encryption happens on the, well, transport layer, or somewhere in between. I think the authors in the linked document mentioned chat communications between users which is definitely application layer. permalink fedilink source parent
[–] undu@discuss.tchncs.de 2 points 5 months ago (1 child) I understand that in a system with clients and servers having encrypted communications between the server and the clients is not enough to have end-to-end encryption. Even then I find it strange to cobsider TLS not end-to-end, the whole gist of TLS is enabling confidential communications between 2 network nodes without any of the intermediate nodes participating in the communication being able to decrypt the data. permalink fedilink source parent hideshow 2 child comments replies: [–] gtr@programming.dev 2 points 5 months ago Yeah it's confusing. The implicit assumption in E2EE is that it is taking place on the application layer, while transport encryption happens on the, well, transport layer, or somewhere in between. I think the authors in the linked document mentioned chat communications between users which is definitely application layer. permalink fedilink source parent
[–] gtr@programming.dev 2 points 5 months ago Yeah it's confusing. The implicit assumption in E2EE is that it is taking place on the application layer, while transport encryption happens on the, well, transport layer, or somewhere in between. I think the authors in the linked document mentioned chat communications between users which is definitely application layer. permalink fedilink source parent