Discussion
Loading...

Discussion

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
The one with the Вовк 🐺
@braid@alpaka.garden  ·  activity timestamp 2 weeks ago

All settled ! Finished my slides and polished my talk on #MLS on the #MatrixConf !

Curious ? It'll be tomorrow's first talk in the Lynn Conway room at 11.20 a.m. !

See you there !

https://cfp.2025.matrix.org/matrix-conf-2025/talk/review/R87KQCS9UCT7ML8QMTNDCLBTAAYA3B8A

#matrix #matrixconf2025

Beyond Olm: About challenges and opportunities in Messaging Layer Security (MLS) Matrix Conference 2025

[matrix] as an end-to-end encrypted communication standard has its flaws. Flaws in privacy, flaws in complexity. With the standard of Messaging Layer Security (MLS), the [matrix] ecosystem has the opportunity to address old flaws, rethink room state and increase interoperability. In this talk, I will provide a beginner's guide on challenges of [matrix] 3.0.
  • Copy link
  • Flag this post
  • Block
The one with the Вовк 🐺
@braid@alpaka.garden replied  ·  activity timestamp 2 weeks ago

Here's my recording on MLS and [matrix] !

https://media.ccc.de/v/matrix-conf-2025-71182-beyond-olm-about-challenges-and-opportunities-in-messaging-layer-security-mls

#matrix #MatrixConf2025 #MatrixConf

@matrix

Beyond Olm: About challenges and opportunities in Messaging Layer Security (MLS)
  • Copy link
  • Flag this comment
  • Block
Hubert Chathi
@hubert@social.uhoreg.ca replied  ·  activity timestamp 2 weeks ago
@braid Thanks for giving the talk. I just watched the recording of it. You covered a lot in a short amount of time. One clarification that I'd like to add: I wouldn't say that the approach taken by MSC2883 was outright rejected by the IETF people. Some people did raise concerns, but some people also see some potential in it. In the mean time, there are a some recent IETF drafts that try to address the issue of MLS's linear ordering requirement. One is datatracker.ietf.org/doc/draft… which I believe should be compatible with the MSC2883 approach and would fix one of the big concerns with the MSC2883 approach. And another one is datatracker.ietf.org/doc/draft… which is a very different approach.
IETF Datatracker

Distributed MLS

The Messaging Layer Security (MLS) protocol enables a group of participants to negotiate a common cryptographic state for messaging, providing Forward Secrecy (FS) and Post-Compromise Security (PCS). Still, there are some use cases where message ordering challenges may make it difficult for a group of participants to agree on a common state or use cases where reaching eventual consistency is impractical for the application. This document describes Distributed-MLS (DMLS), a protocol for using MLS sessions to protect messages among participants without negotiating a common group state.
IETF Datatracker

Decentralized Messaging Layer Security

Messaging Layer Security (MLS) provides strong end-to-end security guarantees for group messaging including Forward Secrecy (FS) and Post-Compromise Security (PCS). MLS requires a Delivery Service (DS) component to facilitate agreement between group members on the order of Commit messages. In decentralized settings without an authoritative entity to enforce ordering, group members will likely have to retain key material so they can process commits out-of-order. Retaining key material, however, significantly reduces the FS of the protocol. This draft specifies Decentralized MLS (DMLS), based on the the Fork-Resilient Continuous Group Key Agreement protocol FREEK proposed by Alwen et al. [FRCGKA]. In essence, DMLS extends MLS such that key material can be retained to process Commits out-of- order with recuded impact to FS, thus allowing safer deployment in decentralized environments.
  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.3.21 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login