NODE 81ef1726should we use same nym on multiple servers?
nobody@REPLAY.COM (Anonymous)Tue, 20 Feb 1996 16:01:58 +0800
With the additional nym servers coming on the scene comes the
question of whether or not to "claim" our alpha.c2 nym on the other
ones, too. E.g., if we are foobar@alpha.c2.org, should we also become
foobar@nym.gondolin.org and foobar@nym.alias.net, too?
That would let us have a very stable nym, and prevent confusion over
who's "who" if someone else were to have the same id with another nym
server. But, it makes it harder to keep our real ID secret. (E.g.,
an oversimplified scenario would be if an attacker sends a message to
all three nyms, then watches three PGP conventionally encrypted
messages arrive in our mailbox.)
A "safer" way would be to have the other two nyms have a fake
address, but then we couldn't receive mail with it. A trickier way
would be to have the reply block point to alt.anonymous, but then we'd
have to constantly be watching for a message "to" us.
Another angle, though, is that the nym servers may be unstable, and
multiple nyms would allow us to post, if out "favorite" is down.
Anyways, I'm a beginner, and think that the most useful use of
remailers is to ask dumb questions. :-)
NODE b8482ea3Re: should we use same nym on multiple servers?
don@cs.byu.eduTue, 20 Feb 1996 17:19:45 +0800
-----BEGIN PGP SIGNED MESSAGE-----
> With the additional nym servers coming on the scene comes the
> question of whether or not to "claim" our alpha.c2 nym on the other
> ones, too. E.g., if we are foobar@alpha.c2.org, should we also become
> foobar@nym.gondolin.org and foobar@nym.alias.net, too?
*shrug* sounds good
> an oversimplified scenario would be if an attacker sends a message to
> all three nyms, then watches three PGP conventionally encrypted
> messages arrive in our mailbox.)
>
> A "safer" way would be to have the other two nyms have a fake
> address, but then we couldn't receive mail with it. A trickier way
> would be to have the reply block point to alt.anonymous, but then we'd
Traffic analysis can happen even with only one address. (just spam attack
the one, or whatever)
You can protect yourself somewhat by putting lots of latency into your reply
block, including random. You could have one nym point to another.
ObMindWandering
Since expiration dates were "supposed" to be added to type I, and there's at
least some spam-detection code, why not add "Hi, I'm reply block #XYZ. Watch
for spam attacks from me." warnings inside the reply block. (To be lost on
the next hop, of course)
If good spam-detection code ever catches on in type I, it would be nice to be
able to trigger it yourself.
ObSnakeOil: Post your source code or go away, you're wasting bandwidth.
ObNoiseInGeneral: skipping it in leaps and bounds. MUCH quieter. =)
- --
<don@cs.byu.edu> fRee cRyPTo! jOin the hUnt or BE tHe PrEY
PGP key - http://students.cs.byu.edu/~don or PubKey servers (0x994b8f39)
June 7&14, 1995: 1st amendment repealed. Junk mail to root@fryser.dk.net
* This user insured by the Smith, Wesson, & Zimmermann insurance company *
-----BEGIN PGP SIGNATURE-----
Version: 2.6.2
iQB1AwUBMSmE/cLa+QKZS485AQHbigL+Ja1krN2TUFyR+aFR6C0wI5zj4160Iz0q
0tLKSA7X+px+lUwCLdRuEk4wskcNhXFP5ESpCxpQKw2CZRjNlJ4vZA54wE9PBlxf
ibR4ZpktxfFsYr+rkdwt0JWUj/+65d6P
=Pwji
-----END PGP SIGNATURE-----
NODE 39a3b113Re: should we use same nym on multiple servers?
John Perry <perry@vishnu.alias.net>Tue, 20 Feb 1996 21:08:53 +0800
>>>>> "Anonymous" == Anonymous <nobody@REPLAY.COM> writes:
Anonymous> harder to keep our real ID secret. (E.g., an
Anonymous> oversimplified scenario would be if an attacker sends a
Anonymous> message to all three nyms, then watches three PGP
Anonymous> conventionally encrypted messages arrive in our
Anonymous> mailbox.)
What's wrong with having a nym point to yet another nym on a
different server? Has anyone thought of that?
NODE 4e0e3dfbRe: should we use same nym on multiple servers?
John Perry <perry@vishnu.alias.net>Tue, 20 Feb 1996 21:22:09 +0800
>>>>> "John" == John Perry <perry@vishnu.alias.net> writes:
>>>>> "Anonymous" == Anonymous <nobody@REPLAY.COM> writes:
John> What's wrong with having a nym point to yet another
John> nym on a different server? Has anyone thought of that?
Ha. Blew that nym.. :) Oh well, that'll teach me to have coffee before
email instead of the other way around.. :)
John Perry - KG5RG - perry@vishnu.alias.net - PGP-encrypted e-mail welcome!
WWW - http://www.alias.net
PGP 2.62 key for perry@vishnu.alias.net is on the keyservers.