-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathlec22_past.mhtml
729 lines (556 loc) · 23.8 KB
/
lec22_past.mhtml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
706
707
708
709
710
711
712
713
714
715
716
717
718
719
720
721
722
723
724
725
726
727
728
729
From: <Saved by Blink>
Snapshot-Content-Location: http://css.csail.mit.edu/6.858/2018/questions.html?q=q-email&lec=22
Subject: 6.858 / Spring 2018 / Paper Reading Questions
Date: Tue, 21 May 2018 01:46:13 -0000
MIME-Version: 1.0
Content-Type: multipart/related;
type="text/html";
boundary="----MultipartBoundary--nVjnY5gzFk0tRPkLBcVCDCYHUczlIBuZhndNoDgyeJ----"
------MultipartBoundary--nVjnY5gzFk0tRPkLBcVCDCYHUczlIBuZhndNoDgyeJ----
Content-Type: text/html
Content-ID: <[email protected]>
Content-Transfer-Encoding: quoted-printable
Content-Location: http://css.csail.mit.edu/6.858/2018/questions.html?q=q-email&lec=22
<html><head><meta http-equiv=3D"Content-Type" content=3D"text/html; charset=
=3DUTF-8">
<title>
6.858 / Spring 2018
/ Paper Reading Questions
</title>
<meta http-equiv=3D"pragma" content=3D"no-cache">
<link rel=3D"stylesheet" type=3D"text/css" href=3D"http://css.csail.mit.edu=
/6.858/2018/style.css">
</head>
<body bgcolor=3D"#ffffff" text=3D"#000000">
<table cols=3D"3" width=3D"100%" height=3D"100%" border=3D"0" cellspacing=
=3D"0" cellpadding=3D"0">
<tbody>
<!-- Header row -->
<tr height=3D"40px">
<td colspan=3D"3">
<table width=3D"100%" height=3D"40px" border=3D"0" cellspacing=3D"0" cellp=
adding=3D"0">
<tbody>
<tr>
<td bgcolor=3D"#000000">
<div align=3D"left" style=3D"padding-left:58px; padding-top: 2px;">
<font style=3D"font-size: 28px; color: #ffffff">
<a name=3D"top">
<b>6.858</b>: Computer Systems Security
</a>
</font>
</div>
</td>
<td bgcolor=3D"#8a0a0a" halign=3D"center" valign=3D"center" width=3D"25=
0px">
<div align=3D"center" style=3D"padding-top: 2px; padding-bottom: 4px;"=
>
<font style=3D"font-size: 28px; color: #ffffff">
Spring <b>2018</b>
</font>
</div>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
<!-- horiz line -->
<tr>
<td colspan=3D"3" height=3D"5px" bgcolor=3D"#8a0a0a">
</td>
</tr>
<tr>
<!-- Menu -->
<td bgcolor=3D"#8a0a0a" valign=3D"top" width=3D"180px">
<table cols=3D"2" rows=3D"1" border=3D"0" cellspacing=3D"0" cellpadding=3D=
"0" width=3D"100%" height=3D"100%">
<tbody>
<tr>
<td valign=3D"top">
<table cols=3D"1" rows=3D"1" border=3D"0" cellspacing=3D"0" cellpadding=
=3D"0" width=3D"100%">
<tbody>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/" class=3D"menuItem=
">Home</a>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/general.html" class=
=3D"menuItem">General information</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/schedule.html" clas=
s=3D"menuItem">Schedule</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/reference.html" cla=
ss=3D"menuItem">Reference materials</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"https://piazza.com/mit/spring2018/6858" class=3D"menuIt=
em">Piazza discussion</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/handin.html" c=
lass=3D"menuItem">Submission</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/quiz.html" class=3D=
"menuItem">Quizzes</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a class=3D"menuItem">Labs</a><br>
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/lab1.html" cla=
ss=3D"menuItem">1</a>
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/lab2.html" cla=
ss=3D"menuItem">2</a>
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/lab3.html" cla=
ss=3D"menuItem">3</a>
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/lab4.html" cla=
ss=3D"menuItem">4</a>
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/lab5.html" cla=
ss=3D"menuItem">5</a>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://ist.mit.edu/network/rules" class=3D"menuItem">MI=
T network rules</a>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2018/projects.html" clas=
s=3D"menuItem">Final projects</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a href=3D"http://css.csail.mit.edu/6.858/2017/" class=3D"menuItem=
">2017 class materials</a><br>
</div></td></tr>
<tr><td><div class=3D"menuHead">
<a rel=3D"license" href=3D"http://creativecommons.org/licenses/by/=
3.0/us/"><img alt=3D"Creative Commons License" style=3D"border-width:0" src=
=3D"http://css.csail.mit.edu/6.858/2018/cc-by.png"></a>
</div></td></tr>
</tbody>
</table>
</td>
<td width=3D"3px" bgcolor=3D"#8a0a0a">
</td>
</tr>
</tbody>
</table>
</td>
<!-- End Menu -->
<td colspan=3D"2">
<table border=3D"0" cellspacing=3D"0" cellpadding=3D"0" width=3D"100%" heig=
ht=3D"100%">
<tbody><tr><td style=3D"padding-left:10px; padding-right:10px; padding-top:=
10px; padding-bottom: 10px" valign=3D"top" align=3D"left">
<!-- Begin Page Content -->
<!--
To add a new question, just put in within a <div> tag, give it
some identifier (i.e., 'id=3D"qXX"'), and then add it to the questions
array variable below. To link directly to the question, just use a
link to 'questions.html?q=3DqXX'.
-->
<h1>
Paper Reading Questions
</h1>
<a name=3D"top"></a>
<p>
For each paper, your assignment is two-fold. Before lecture:
</p><ul>
<li>Submit your answer for each lecture's paper question via the
<a href=3D"http://css.csail.mit.edu/6.858/2018/labs/handin.html">submis=
sion web site</a> in a file named
<code>lec<var>n</var>.txt</code>, and
</li><li>Submit your own question about the paper (e.g., what you find most=
confusing about
the paper or the paper's general context/problem) in a file named
<code>sq<var>n</var>.txt</code>.
You cannot
use the question below. To the extent possible, during lecture we will=
try to
answer these questions. Below, we have included the questions we've re=
ceived
from students in past years (when available), along with answers to tho=
se
questions, in case you find it helpful.
</li></ul>
<p id=3D"submit-links" style=3D"visibility: visible; position: static;">
Once you submit your own question and answer (or after the deadline
has passed), you can view the
<a href=3D"https://6858.csail.mit.edu/lec-questions/22" id=3D"question-=
view-link">questions</a>
and
<a href=3D"https://6858.csail.mit.edu/lec-answers/22" id=3D"answer-view=
-link">answers</a>
that other students submitted.
</p>
<p></p>
<div id=3D"questions">
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
=20
<div id=3D"q-email" class=3D"questionbox"><p><b>Lecture 22</b></p>
<p>
As you are reading the paper on secure messaging schemes, try to
figure out: how does email stack up against the proposed criteria
for messaging? How hard would it be to adopt the techniques used
in the various messaging systems to improve email security? What
makes email different, if anything?
</p>
</div>
=20
=20
=20
</div>
<style>
div.responsebox {
margin: 1pc 4% 0pc 4%;
padding: 0.5pc 0.5pc 0.5pc 0.5pc;
background-color: #e0e0ff;
border: 1px dashed red;
}
pre.responsepre {
white-space: pre-wrap;
}
</style>
<div id=3D"responses">
<div class=3D"lecture-responses">
<h2>Questions and answers for lecture 22 from past years</h2>
<div class=3D"responsebox"><pre class=3D"responsepre">The evaluation =
scheme is not particularly interesting, and I doubt
anyone used it.
The interesting part of the paper is its discussion of a wide range of
different encrypted messaging schemes, what properties they try to
provide, and what their limitations are.
Nickolai.
On Sun, May 7, 2017 at 1:45 PM, Anonymous wrote:
> Samantha Briasco-Stewart; [email protected]
> 6.858 Paper Question 19; Due 2017.05.07 @ 10:00PM
>
> - This paper was written in 2015. Since then, has anyone actually use=
d this
> scheme to evaluate a newly proposed messaging scheme? If so, when/w=
here?
>
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">The IEEE Securi=
ty & Privacy conference, where this was published, has
a separate track of "systematization of knowledge" (SoK) papers that
aren't expected to be doing something innovative but are instead
expected to lay out the state of some aspect of computer security in a
clear way that benefits the community.
Nickolai.
On Sun, May 7, 2017 at 8:29 PM, Anonymous wrote:
> What does SoK stand for?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">I think the pap=
er means setting up initial shared secrets, without
relying on some third party like a Kerberos KDC or a certificate
authority.
Nickolai.
On Sun, May 7, 2017 at 8:13 PM, Anonymous wrote:
> Why is it that the paper says that shared secrets require existing soc=
ial relationships? (This is mentioned under trust establishment's usability=
properties). I thought that in class we went through examples where we cou=
ld establish a shared secret between 2 parties without them ever having to =
meet in real-life? Is the type of shared secrets that they are referring to=
different than what we talked about?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">As far as I kno=
w, it's the same design.
Nickolai.
On Sun, May 7, 2017 at 4:22 PM, Anonymous wrote:
> In the paper TextSecure (now called Signal) is given good ratings and =
it is mentioned that WhatsApp uses this protocol. How does WhatsApp=E2=80=
=99s design compare with Signal Messenger=E2=80=99s design in terms of secu=
rity?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">Any of those ap=
proaches could work. One possibility is to copy the
same key when installing a new device. Another possibility is to
register a new key for each device, and have a list of active devices
per account. (And if key distribution is via a central CA-like
server, then it would distribute these per-device keys to a user's
friends.) Another possibility is to use one master device and proxy
all communication through it.
Nickolai.
On Sun, May 7, 2017 at 12:40 PM, Anonymous wrote:
>> Multi-Device Support: A user can participate in the conversation u=
sing
> multiple devices at once. Each device must be able to send and receive
> messages. Ideally, all devices have identical views of the conversatio=
n. The
> devices might use a synchronized long-term key or distinct keys.
>
> How are long term keys securely synchronized between devices?
> If they use distinct keys, does the central server just keep track of =
all the
> public keys that belong to a specific user?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">I don't know of=
any deployed messaging system that uses DC-nets. So
far, they are mostly research prototypes. They have very nice
security properties, but as you mention, they have significant
performance issues.
Some of the research cited in this paper tries to tackle the
scalability problems (e.g., the Dissent system), and seems to scale to
maybe thousands of participants, but it's not clear what use case
corresponds to those parameters.
Nickolai.
On Sun, May 7, 2017 at 6:21 PM, Anonymous wrote:
> It seems like the DC-net relies on flooding the network of nodes in ea=
ch round to provide anonymity. It seems to me that the only practical situa=
tion in which this flooding does not encroach too much on the performance a=
spect is if the network of nodes is relatively small. However, in this case=
, the pool of participants is much smaller and thus much easier to observe =
which nodes are partcipating in a round, possibly compromising the anonymit=
y aspect. Given this, in what situations are DC-nets desirable to use? Are =
there any working implementations of DC-nets in real life?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">This paper was =
published pretty recently, so not much time has elapsed
for something like that to form. :-)
That said, there's some work towards the "transparency logs" part:
https://github.com/google/keytransparency
Nickolai.
On Sun, May 7, 2017 at 7:50 PM, Anonymous wrote:
> Lecture 19 Reading - Student Question:
>
> The paper mentions that "An open standard for secure messaging, combin=
ing the most promising features identified by our survey, would be of immen=
se value." It then continues with "We consider the most promising approach =
for trust establishment to be a combination of central key directories, tra=
nsparency logs to ensure global consistency of the key directory=E2=80=99s =
entries, and a variety of options for security-conscious users to verify k=
eys out of band to put pressure on the key directory to remain honest."
>
> I wonder if as of today there currently exists an open standard for se=
cure messaging as the authors hoped for (or if there has been any substanci=
al progress towards acheiving it)? In particular was there any attempt at i=
mplementing their suggested "most promising" approach?
</pre></div>
<div class=3D"responsebox"><pre class=3D"responsepre">I believe Whats=
App is pretty much identical to TextSecure / Signal,
since it's the same design under the covers.
Nickolai.
On Sun, May 7, 2017 at 12:06 AM, Anonymous wrote:
> Max Lancaster
> Lecture 19 Question
>
> I wonder how WhatsApp would fare against the properties outlined in th=
is paper? They claim to offer end-to-end encryption that seems like it woul=
d achieve most of the security, usability and adoption properties. I guess =
since it would fare similarly to the TextSecure protocol since it's incorpo=
rated in WhatsApp?
</pre></div>
</div>
</div>
<!-- End Page Content -->
</td></tr>
<tr bgcolor=3D"#999999" height=3D"20px">
<td style=3D"padding-left:10px; padding-top: 10px; padding-bottom: 10px">
<font style=3D"font-size: 12px;">
<p>Questions or comments regarding 6.858? Send e-mail to the course staff =
at
<a href=3D"mailto:[email protected]"><i>[email protected]=
.mit.edu</i></a>.
</p></font><p><font style=3D"font-size: 12px;"><b><a href=3D"http://css.csa=
il.mit.edu/6.858/2018/questions.html?q=3Dq-email&lec=3D22#top">Top</a><=
/b> //
<b><a href=3D"http://css.csail.mit.edu/6.858/2018/">6.858 home</a></b> //=
=20
<i>Last updated Thursday, 26-Apr-2018 08:28:18 EDT</i>
</font>
</p></td></tr>
</tbody></table>
</td>
</tr>
</tbody>
</table>
</body></html>
------MultipartBoundary--nVjnY5gzFk0tRPkLBcVCDCYHUczlIBuZhndNoDgyeJ----
Content-Type: text/css
Content-Transfer-Encoding: quoted-printable
Content-Location: http://css.csail.mit.edu/6.858/2018/style.css
@charset "utf-8";
body { background-color: rgb(255, 255, 255); margin: 0px; padding: 0px; fon=
t-family: verdana, arial, helvetica, sans-serif; }
p { font-size: 13px; }
ol { font-size: 13px; }
ul { font-size: 13px; }
pre { font-family: "courier new", courier, mono; color: rgb(202, 10, 10); f=
ont-size: 13px; }
.menuHead { text-align: center; padding-top: 8px; padding-bottom: 8px; }
.menuItem { color: rgb(255, 255, 255); text-decoration: none; font-weight: =
bold; font-size: 16px; }
table.calendar { font-family: arial, helvetica; font-size: 10pt; empty-cell=
s: show; border: 1px solid rgb(0, 0, 0); }
table.calendar tr td { border: 1px solid rgb(170, 170, 170); }
table.calendar tr { vertical-align: top; height: 75px; background: rgb(238,=
238, 238); }
table.calendar tr.header { font-weight: bold; font-size: 13px; background-c=
olor: rgb(68, 68, 68); color: rgb(255, 255, 255); height: 25px; text-align:=
center; }
.lecture { background: rgb(255, 255, 170); }
.holiday { background: rgb(204, 255, 204); }
.special { background: rgb(170, 170, 255); }
.lab { background: rgb(0, 204, 204); }
.important { background: rgb(255, 170, 170); }
.reading { color: rgb(51, 51, 255); }
.handout { color: rgb(0, 153, 0); }
.deadline { color: rgb(255, 0, 0); }
.note { color: rgb(136, 136, 0); }
.assignment { color: rgb(10, 160, 10); }
.date { color: rgb(68, 68, 68); }
div.questionbox { margin: 1pc 4% 0pc; padding: 0.5pc; background-color: rgb=
(224, 224, 255); border: 1px dashed red; }
------MultipartBoundary--nVjnY5gzFk0tRPkLBcVCDCYHUczlIBuZhndNoDgyeJ----
Content-Type: image/png
Content-Transfer-Encoding: base64
Content-Location: http://css.csail.mit.edu/6.858/2018/cc-by.png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------MultipartBoundary--nVjnY5gzFk0tRPkLBcVCDCYHUczlIBuZhndNoDgyeJ------