2010-10-15 05:29:13 +00:00
|
|
|
======================
|
|
|
|
Statement on Backdoors
|
|
|
|
======================
|
|
|
|
|
|
|
|
October 5, 2010
|
|
|
|
|
|
|
|
The New York Times has recently reported that the current U.S. administration
|
|
|
|
is proposing a bill that would apparently, if passed, require communication
|
|
|
|
systems to facilitate government wiretapping and access to encrypted data:
|
|
|
|
|
2010-12-12 20:11:15 +00:00
|
|
|
`<http://www.nytimes.com/2010/09/27/us/27wiretap.html>`_ (login required; username/password pairs
|
|
|
|
available at `bugmenot <http://www.bugmenot.com/view/nytimes.com>`_).
|
2010-10-15 05:29:13 +00:00
|
|
|
|
2010-12-12 20:11:15 +00:00
|
|
|
Commentary by the
|
|
|
|
`Electronic Frontier Foundation <https://www.eff.org/deeplinks/2010/09/government-seeks>`_,
|
|
|
|
`Peter Suderman / Reason <http://reason.com/blog/2010/09/27/obama-administration-frustrate>`_,
|
|
|
|
`Julian Sanchez / Cato Institute <http://www.cato-at-liberty.org/designing-an-insecure-internet/>`_.
|
2010-10-15 05:29:13 +00:00
|
|
|
|
|
|
|
The core Tahoe developers promise never to change Tahoe-LAFS to facilitate
|
|
|
|
government access to data stored or transmitted by it. Even if it were
|
|
|
|
desirable to facilitate such access—which it is not—we believe it would not be
|
|
|
|
technically feasible to do so without severely compromising Tahoe-LAFS'
|
|
|
|
security against other attackers. There have been many examples in which
|
|
|
|
backdoors intended for use by government have introduced vulnerabilities
|
|
|
|
exploitable by other parties (a notable example being the Greek cellphone
|
2010-12-12 20:11:15 +00:00
|
|
|
eavesdropping scandal in 2004/5). RFCs `1984 <http://tools.ietf.org/html/rfc1984>`_
|
|
|
|
and `2804 <http://tools.ietf.org/html/rfc2804>`_ elaborate on the security case
|
|
|
|
against such backdoors.
|
2010-10-15 05:29:13 +00:00
|
|
|
|
|
|
|
Note that since Tahoe-LAFS is open-source software, forks by people other than
|
|
|
|
the current core developers are possible. In that event, we would try to
|
|
|
|
persuade any such forks to adopt a similar policy.
|
|
|
|
|
|
|
|
The following Tahoe-LAFS developers agree with this statement:
|
|
|
|
|
|
|
|
David-Sarah Hopwood
|
|
|
|
|
|
|
|
Zooko Wilcox-O'Hearn
|
|
|
|
|
|
|
|
Brian Warner
|
|
|
|
|
|
|
|
Kevan Carstensen
|
|
|
|
|
|
|
|
Frédéric Marti
|
|
|
|
|
|
|
|
Jack Lloyd
|
|
|
|
|
|
|
|
François Deppierraz
|
|
|
|
|
|
|
|
Yu Xue
|
|
|
|
|
|
|
|
Marc Tooley
|
2010-10-15 05:32:42 +00:00
|
|
|
|
|
|
|
Peter Secor
|
|
|
|
|
|
|
|
Shawn Willden
|
|
|
|
|
|
|
|
Terrell Russell
|