communi / communi-sailfish

The first and foremost IRC client for Sailfish OS
BSD 3-Clause "New" or "Revised" License
37 stars 18 forks source link

Blowfish Encryption #150

Open apozaf opened 4 years ago

apozaf commented 4 years ago

Fish encryption / blowfish would be a great feature to add in sfos irc. https://github.com/roop/qblowfish#readme please add

Thaodan commented 4 years ago

Explain the purpose of this please.

apozaf commented 3 years ago

The purpose is securing chats with friends, having a very secure protection against man in the middle sniffers in private chats and channels. SSL is utterly meaningless on public servers since they act as a man in the middle. Fish (by Bruce Schneider) has never been broken for centuries. Common IRC clients (f ex HexChat) have it by default, even on Android (AndroIRC, IRC for Android).

Thaodan commented 3 years ago

It has been broken that is why its removed from OpenSSL. Maybe you should look if Twofish is possible which is the recommended successor.

apozaf commented 3 years ago

And? It still is the standard for encrypting on device in irc. Logs cannot be read. I do not care if it is 64bit or 128bit like in Twofish. Hexchat, XChat. mIRC supports CBC and ECB fish and NOT TWOFISH. that is is and so should communyirc. I see you do not want to update it, last update is 5 years old.I will look into it or pay someone on feever. I wrote to you that I would pay you for it. You did not respond. Name a price if you are interested.

Thaodan commented 3 years ago

First you do not get anywhere by attacking me for not responding to your email/updating so be nice.

I'm not interested since I do not work on it full time and mostly do it for my own/to improve where needed (even if so you could not effort the hours if they were billed).

If you want to work on it I'm happy to review else I don't think this will happen.

apozaf commented 2 years ago

Dear Thaodan. 1st of all I'd never attack anyone for not responding. Even my response took half a year. If you felt offended in any way, I am really very sorry, I had zero intent to do so. Maybe, if I have time (hmm, in 20 years maybe) I'll look into it :) Believe me, paying for any bill would not be the problem, I'm glad to be in the lucky position that money is not an issue. I know how much one hour coding is. I got IRSSI for SFOS 64bit with blowfish working for my daily needs, suboptimal but ok. Sorry again