mjoras / SCONE-PROTOCL

Repository for files related to the topic formerly known as SADCDN.
Other
7 stars 6 forks source link

What are the privacy properties of the signal? #67

Open SpencerDawkins opened 2 months ago

SpencerDawkins commented 2 months ago

If making the signal available to applications is the goal, does that have unwanted properties?

This is related to questions from the BOF about the implications of entirely encrypted channels being available between endpoints and network elements (and from PLUS).

danwing commented 2 months ago

The privacy concern is the other way around: from the user's device to the ISP. Such as: is the application name disclosed to the ISP? Is the server name disclosed to the ISP (contravening TLS encrypted SNI)? Is the specific video disclosed to the ISP ("watch the new $moviename without consuming your monthly bandwidth!", "the government asked the ISP to disclose if you're watching the video of last week's protest").

ihlar commented 1 month ago

@danwing those are valid concerns, but there are concerns in both directions I believe, e.g., can the network expose unique user identities to the application (e.g., MSISDN), the type of subscription the user has, user location.. and what does that mean for user privacy?

SpencerDawkins commented 1 month ago

Now that we have added deliverables to the charter, I propose this issue should be addressed in the "SCONEPRO protocol" deliverable.