On 06/09/07, Peter Saint-Andre <stpeter stpeter.im> wrote:
> Also I don't think we want to tie Jingle and ESessions
together. What if
> we design some other way to do e2e encryption (e.g.,
"XTLS")? Do we then
> need to define how that works with Jingle too?
>
> Proper layering seems important here.
Probably best to keep things as separate as possible, but
there should
be something binding Jingle to the mechanisms used in e2e
encryption.
If I have verified another users encryption keys using some
out-of-band method, I want that verification to cover any
jingle
sessions as well.
--
Niklas
|