Desktop: End-to-End Encryption enabled automatically

Created on 3 Dec 2018  Â·  9Comments  Â·  Source: nextcloud/desktop

I'm just sitting in front of my computer and without interacting with the sync client this window pops up:

image

I didn't enabled any end-to-end encryption. Could it be triggered by someone else enabled end-to-end encryption on a shared folder?

bug feature end to end encryption

Most helpful comment

Now it happened to me also.
As I have 4 accounts, I now do not know for which account the mnemonic is…
--> please also include account name into this dialog

All 9 comments

I didn't enabled any end-to-end encryption. Could it be triggered by someone else enabled end-to-end encryption on a shared folder?

Just to clarify: on the server e2ee app was enabled again (was disabled in a past upgrade).

normally the key creation has to be triggered by the client and the client should only trigger it once I set at least one folder to e2e not just because the app was enabled on the server

Could it be triggered by someone else enabled end-to-end encryption on a shared folder?

This should not be possible right now, as it is not supported at all.
If someone can really share a e2e folder, than this is a bug right now.

Discussing this with @tobiasKaminsky I think the client detects the new capability and tries to fetch an existing key from the server, which makes sense, because if the user has some encrypted folders they want to access it. But in case there is no existing key, the initial creation should not be triggered and instead postponed until the user enabled encryption for one folder.

Now it happened to me also.
As I have 4 accounts, I now do not know for which account the mnemonic is…
--> please also include account name into this dialog

There is a ticket already about this somewhere. This was how is was specified:
See https://github.com/nextcloud/end_to_end_encryption_rfc/blob/master/RFC.md#adding-an-end-to-end-encrypted-device and https://github.com/nextcloud/end_to_end_encryption_rfc/blob/master/RFC.md#further-devices

We could improve here sure. But it is not high on the list of things to fix.

@tobiasKaminsky had the same confusion about the mnemonics: https://github.com/nextcloud/desktop/issues/753

Also, this should not just pop up, but only when it’s relevant. For me it showed when I connected the account, where it’s very irrelevant.

It should show only when I either want to encrypt a folder myself, or receive an encrypted folder as a share and want to open it.

Otherwise we ask people to write something down that they will not care about at that moment and then not have anymore when they really need it.

Hello,

I think this issue is properly addressed with PR #1241 so closing now.

Regards.

Was this page helpful?
0 / 5 - 0 ratings

Related issues

anatekar picture anatekar  Â·  53Comments

unix0r picture unix0r  Â·  43Comments

rbu picture rbu  Â·  76Comments

biva picture biva  Â·  44Comments

carlfriedrich picture carlfriedrich  Â·  67Comments