severity 549431 wishlist
thanks

On Sat, Oct 3, 2009 at 1:13 PM, Frank A. Kingswood
<fr...@kingswood-consulting.co.uk> wrote:
> Package: pidgin-otr
> Version: 3.2.0-4
> Severity: important
>
>
> pidgin-otr has a configuration to disable logging in the plugin preferences.
> This configuration appears to be disabled by default, so that conversations
> will be logged by default.
>
> The whole point of Off-the-Record is to avoid keeping a record of
> conversations, so this default is wrong, insecure.

That's not the whole point of OTR. See http://www.cypherpunks.ca/otr/
and http://www.cypherpunks.ca/otr/otr-codecon.pdf
It's perfectly valid to log OTR conversations since whatever is logged
can be denied.

HTH

-- 
Thibaut VARENE
http://www.parisc-linux.org/~varenet/



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to