Live data from Hacker News

Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

korte.co

21–30 of 239 posts

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#22

The fact that government agencies, particularly those that deal with international concerns like these are using non sovereign tech for communications is mind-blowing. They might as well use public gmail.. atleast it would be cheaper. If you want it not exposed directly, host it yourself and take measures to secure it for intended eyes only. This should be common sense.

It's mind blowing that government bureaucrats would be permitted to use commercial providers for official business at all. The provider being foreign is merely the cherry on top.

I was going to ask why something like mail.gov.nl doesn't exist but it turns out [0] (edit: wikipedia is full of lies) that they don't have a reserved second level domain for official government services to use? Is this really one of the countries pushing digital IDs?

> Official second-level domains do not exist.

[0] https://en.wikipedia.org/wiki/.nl

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#23
post #4

The irony that it is data from civil servants that wan to implement the biggest central digital censorship endeavor in the western hemisphere.

Is this about EU Chat Control? Because that was mostly pushed from Denmark no?

Perhaps it originated from there. But EU Chat Control is brought up again and again and again for a vote. They'll continue until some version of it is passed. And then they'll go further with the next privacy infringing regulation to be building on top of it. It is really disheartening for privacy activists, but that is probably the strategy. Wear people out, and push the regulation through when resistance wanes. Note that the Netherlands is on the side of protecting privacy at this point in time. I think it does a great deal to erode trust of EU citizens in the European Union, in a time when that trust is perhaps more important than ever before. For information see: https://fightchatcontrol.eu

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#24
post #14
post #4

The irony that it is data from civil servants that wan to implement the biggest central digital censorship endeavor in the western hemisphere.

Ah, yes. Sure. Proof?

the danish were one of the strongest Chat Control promovers

https://en.wikipedia.org/wiki/Chat_Control

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#28

This is entirely the wrong lesson to take from this. Why are we still using a plaintext protocol in this day and age? Why can we not get an E2EE addition to the email protocol with full backwards compatibility? Yes, I understand that it would be imperfect since inevitably not all servers would support it thus forcing additional understanding and decisions on the end user. No, I don't care that a user other than mysel…

Getting from here to there is going to be tough, but I agree 100%. Not only should email be E2EE, but it should include a certificate scheme such that you know the person purporting to be the sender is actually the sender.

Given that the cryptography would necessarily be asymmetric verifying the sender on a TOFU basis seems like a trivial addition (just sign something). I doubt you can do better than TOFU though unless you tie it to an external ID system (corporate or government or etc issued hardware tokens or similar).

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#29

The fact that government agencies, particularly those that deal with international concerns like these are using non sovereign tech for communications is mind-blowing. They might as well use public gmail.. atleast it would be cheaper. If you want it not exposed directly, host it yourself and take measures to secure it for intended eyes only. This should be common sense.

It's mind blowing that government bureaucrats would be permitted to use commercial providers for official business at all. The provider being foreign is merely the cherry on top. I was going to ask why something like mail.gov.nl doesn't exist but it turns out [0] (edit: wikipedia is full of lies) that they don't have a reserved second level domain for official government services to use? Is this really one of the cou…

That's the most common approach globally. Like most countries, the Dutch Government use .gov.nl.

Re: Digital Sovereignty Becomes an Imperative as the US Reads Dutch Emails

#30
post #19

This is entirely the wrong lesson to take from this. Why are we still using a plaintext protocol in this day and age? Why can we not get an E2EE addition to the email protocol with full backwards compatibility? Yes, I understand that it would be imperfect since inevitably not all servers would support it thus forcing additional understanding and decisions on the end user. No, I don't care that a user other than mysel…

For large organization data the keys would need to be stored within the organization, not with one particular user as in the case of your personal PII needs. And then you'd still need to worry about digital sovereignity for the keys.

I don't follow. Are you saying that BigCorp would demand key escrow? They already deploy custom email solutions today so I don't see the issue.
Post reply on HN