git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Per-object encryption (Re: Git Merge contributor summit notes)

From
Jonathan Nieder <jrnieder@gmail.com>
Date
Mar 26, 2018, 20:54 UTC
Message-ID
<20180326205349.GA21735@aiede.svl.corp.google.com>
In-Reply-To
<874ll3yd75.fsf@evledraar.gmail.com>
Hi Ævar,
Ævar Arnfjörð Bjarmason wrote:
Show 8 quoted lines
> It occurred to me recently that once we have such a layer it could be
> (ab)used with some relatively minor changes to do any arbitrary
> local-to-remote object content translation, unless I've missed something
> (but I just re-read hash-function-transition.txt now...).
>
> E.g. having a SHA-1 (or NewHash) local repo, but interfacing with a
> remote server so that you upload a GPG encrypted version of all your
> blobs, and have your trees reference those blobs.
Interesting!

To be clear, this would only work with deterministic encryption. Normal GPG encryption would not have the round-tripping properties required by the design.

If I understand correctly, it also requires both sides of the connection to have access to the encryption key. Otherwise they cannot perform ordinary operations like revision walks. So I'm not seeing a huge advantage over ordinary transport-layer encryption.

That said, it's an interesting idea --- thanks for that. I'm changing the subject line since otherwise there's no way I'll find this again. :)

Jonathan
Previous: Junio C HamanoNext: Ævar Arnfjörð Bjarmason
Message 16 of 17 in “Git Merge contributor summit notes”
  1. Alex VandiverMar 10, 2018
  2. Ævar Arnfjörð BjarmasonMar 10, 2018
  3. Junio C HamanoMar 11, 2018
  4. Jeff KingMar 12, 2018
  5. Brandon WilliamsMar 13, 2018
  6. Jeff KingMar 12, 2018
  7. Ævar Arnfjörð BjarmasonMar 25, 2018
  8. Jeff HostetlerMar 26, 2018
  9. Stefan BellerMar 26, 2018
  10. Jeff HostetlerMar 26, 2018
  11. Brandon WilliamsMar 26, 2018
  12. Jakub NarebskiApr 7, 2018
  13. Including object type and size in object id (Re: Git Merge contributor summit notes)Jonathan Nieder, Mar 26, 2018
  14. Jeff HostetlerMar 26, 2018
  15. Junio C HamanoMar 26, 2018
  16. Per-object encryption (Re: Git Merge contributor summit notes)Jonathan Nieder, Mar 26, 2018
  17. Ævar Arnfjörð BjarmasonMar 26, 2018

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.