Received: from sog-mx-2.v43.ch3.sourceforge.com ([172.29.43.192] helo=mx.sourceforge.net) by sfs-ml-1.v29.ch3.sourceforge.com with esmtp (Exim 4.76) (envelope-from ) id 1XJnhZ-0007Jf-VC for bitcoin-development@lists.sourceforge.net; Tue, 19 Aug 2014 18:00:09 +0000 Received: from mail-pa0-f47.google.com ([209.85.220.47]) by sog-mx-2.v43.ch3.sourceforge.com with esmtps (TLSv1:RC4-SHA:128) (Exim 4.76) id 1XJnhY-0000Ek-Mc for bitcoin-development@lists.sourceforge.net; Tue, 19 Aug 2014 18:00:09 +0000 Received: by mail-pa0-f47.google.com with SMTP id kx10so10566443pab.20 for ; Tue, 19 Aug 2014 11:00:02 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to :cc:subject:references:in-reply-to:openpgp:content-type; bh=T4lKlULH73CzuhduTbMUyl0guYxz0lejkbZJx7XufZs=; b=hXVgCMzFqNeHusEY73TzPTkwdUaSCK+7FK6tWpGacLNs79QwMglWh3ZrS9C78L+cuR 1WB8yew/Uqjxsx0HgY4Ho136+e/MVJQE8Ds9pLDHfikD0ZssbLR/AHSMrPdYBNKUgdc/ AgcW0DMDrv3IFA+5Vc0tVdH6SxgL+eNGrJiW2Y6Ni+CW2lwHMOrl9uwuSG9sKD+AVBbs ROgpM9cSvdq1l/lP49jhdTso48s+nU0plzyOGnx28GyMVz0jTqbgLtBX/gBx017A5Twe fCuMcaMC6D3XpyJgIPXb2qnEb30v41Dd+1NeEAlnsGA1V25OD0eCxOAhQxglVGQbNOHA 7u4Q== X-Gm-Message-State: ALoCoQn5+CMlimuVS9vbqwXHtzNBYeje4h40CgPBStn9/26UotSaNqhmiU8bMHmqh+TEJohEdui1 X-Received: by 10.66.139.36 with SMTP id qv4mr46503640pab.53.1408469708304; Tue, 19 Aug 2014 10:35:08 -0700 (PDT) Received: from [192.168.1.3] (64-142-68-61.dsl.static.sonic.net. [64.142.68.61]) by mx.google.com with ESMTPSA id dk2sm30283746pdb.10.2014.08.19.10.35.06 for (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 19 Aug 2014 10:35:07 -0700 (PDT) Message-ID: <53F38AC9.4000608@corganlabs.com> Date: Tue, 19 Aug 2014 10:35:05 -0700 From: Johnathan Corgan User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.0 MIME-Version: 1.0 To: Gregory Maxwell , Justus Ranvier References: <0C0EF7F9-DBBA-4872-897D-63CFA3853726@ricmoo.com> <33D4B2E3-DBF0-444E-B76A-765C4C17E964@ricmoo.com> <53F37635.5070807@riseup.net> In-Reply-To: OpenPGP: id=671DA2F7 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="l6quux49jQa51rAdColeVC7hfT9E8JlKF" X-Spam-Score: 0.0 (/) X-Spam-Report: Spam Filtering performed by mx.sourceforge.net. See http://spamassassin.org/tag/ for more details. X-Headers-End: 1XJnhY-0000Ek-Mc Cc: Bitcoin Development Subject: Re: [Bitcoin-development] Proposal: Encrypt bitcoin messages X-BeenThere: bitcoin-development@lists.sourceforge.net X-Mailman-Version: 2.1.9 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 19 Aug 2014 18:00:10 -0000 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --l6quux49jQa51rAdColeVC7hfT9E8JlKF Content-Type: multipart/mixed; boundary="------------090701010208010803060302" This is a multi-part message in MIME format. --------------090701010208010803060302 Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: quoted-printable On 08/19/2014 09:38 AM, Gregory Maxwell wrote: > We've dodged several emergency scale vulnerabilities by not having TLS.= I'm still trying to understand the original premise that we want encrypted communications between nodes. I can certainly see the value of having *authenticated* traffic with specific nodes, using an HMAC for the protocol messages in place of the current checksum. --=20 Johnathan Corgan, Corgan Labs SDR/DSP Training and Development Services http://corganlabs.com --------------090701010208010803060302 Content-Type: text/x-vcard; charset=utf-8; name="johnathan.vcf" Content-Transfer-Encoding: quoted-printable Content-Disposition: attachment; filename="johnathan.vcf" begin:vcard fn:Johnathan Corgan n:Corgan;Johnathan org:Corgan Labs adr:Suite 70-111;;6081 Meridian Ave.;San Jose;CA;95120;US email;internet:johnathan@corganlabs.com title:Managing Partner tel;work:+1 408 463 6614 url:http://corganlabs.com version:2.1 end:vcard --------------090701010208010803060302-- --l6quux49jQa51rAdColeVC7hfT9E8JlKF Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iF4EAREIAAYFAlPziskACgkQRzB3vGcdoveoRAD/b2tq3mgeHkPp+8MraMTgj0lQ Ab3fEelanOxlljaa+mMA/A7eE4Fda2l3X2J05lE7Y+nEX9YjVYcD/P1mhVe5pFEo =OQ6e -----END PGP SIGNATURE----- --l6quux49jQa51rAdColeVC7hfT9E8JlKF--