Live data from Hacker News

Mullvad: Diskless infrastructure using stboot in beta

mullvad.net

1–10 of 135 posts

Re: Mullvad: Diskless infrastructure using stboot in beta

#4
post #3

This is hardly a new thing in VPN providers though. I know that perfect privacy[1] and azire vpn[2] both advertise this feature already. [1] https://www.perfect-privacy.com/en/features/without-logs [2] https://www.azirevpn.com/docs/environment

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys.

There's just no good answer to perfect trust-no-one private internet access.

If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your own VPN endpoint on a server you control which provides better privacy guarantees compared to a centralised commercial VPN whose business model will eventually involve selling your data (once user growth stops but shareholders demand continued revenue growth).

But if you need to hide your traffic from anybody but your peer on the internet and you need to hide the fact that you talked to that peer, then, I'm afraid, your out of luck.

Re: Mullvad: Diskless infrastructure using stboot in beta

#5
post #4
post #3

This is hardly a new thing in VPN providers though. I know that perfect privacy[1] and azire vpn[2] both advertise this feature already. [1] https://www.perfect-privacy.com/en/features/without-logs [2] https://www.azirevpn.com/docs/environment

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys. There's just no good answer to perfect trust-no-one private internet access. If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your ow…

Is no-trust ever possible? I thought people create their threat models and verify they can trust those they have to trust.

Re: Mullvad: Diskless infrastructure using stboot in beta

#6
post #4
post #3

This is hardly a new thing in VPN providers though. I know that perfect privacy[1] and azire vpn[2] both advertise this feature already. [1] https://www.perfect-privacy.com/en/features/without-logs [2] https://www.azirevpn.com/docs/environment

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys. There's just no good answer to perfect trust-no-one private internet access. If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your ow…

That is the great thing about mullvad. They don't have shareholders except the actual owners.

https://mullvad.net/en/blog/2021/9/16/ownership-and-future-m...

Re: Mullvad: Diskless infrastructure using stboot in beta

#7
post #4
post #3

This is hardly a new thing in VPN providers though. I know that perfect privacy[1] and azire vpn[2] both advertise this feature already. [1] https://www.perfect-privacy.com/en/features/without-logs [2] https://www.azirevpn.com/docs/environment

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys. There's just no good answer to perfect trust-no-one private internet access. If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your ow…

> There's just no good answer to perfect trust-no-one private internet access.

What about Tor?

Re: Mullvad: Diskless infrastructure using stboot in beta

#8
post #4

Earlier quoted context omitted.

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys. There's just no good answer to perfect trust-no-one private internet access. If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your ow…

Is no-trust ever possible? I thought people create their threat models and verify they can trust those they have to trust.

> people create their threat models and verify they can trust those they have to trust

What kind of people?

How do you verify you can trust some company?

Re: Mullvad: Diskless infrastructure using stboot in beta

#9
post #6
post #4

Earlier quoted context omitted.

if only there was any proof of this actually being the case and there not being some "accidental" debug log enabled, or some other network level component having "accidental" access to the keys. There's just no good answer to perfect trust-no-one private internet access. If you need to hide all of your traffic from other users in your local network, you can accomplish that in a trust-no-one fashion by running your ow…

That is the great thing about mullvad. They don't have shareholders except the actual owners. https://mullvad.net/en/blog/2021/9/16/ownership-and-future-m...

which is true until one or more of their owners decide to sell their shares.
Post reply on HN