Skip to content

Make private gateways use a different identity key pair when communicating via couriers #71

@gnarea

Description

@gnarea

Executive summary

An attacker who controls the courier (#54) and a peer endpoint used by their target (#27) could infer the location of their target because the private gateway's address/fingerprint can found in cargo and parcel messages.

Describe the solution you'd like

This problem would be solved if private gateways used a different identity key pair when communicating with their peers offline (i.e., via couriers or when we eventually support mesh networks).

Related issues

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions