Hacker News new | ask | show | jobs
by scotty79 733 days ago
I don't think end-to-end encryption prevents server backup. It means that decryption keys is in your mind and at most on your personal device.
2 comments

No, the key is also on a piece of paper somewhere safe. On a piece of metal if you care so much, see crypto wallet keys.

This helps against everything except a valid search warrant from your government. If you don't do outright illegal stuff, and don't live under an authoritarian regime, it should be fine. (If you do both, you have bigger problems.)

A server backup is useless if you can’t decrypt it and it’s very easy to accidentally lose the keys for end-to-end decryption. I too have lost my Signal history by migrating to a new phone incorrectly.
The two are not related. Signal has no proper backup and restore, otherwise you could have restored.mulziple times over. It's one of the things that piss me off about signal. Just give me a fucking Backup that I can restore on android and iPhone and desktop alike!
They are related: even if Signal had a backup, you’d have to have some way to recover the key when you lose your device. For example, Matrix does offer backups but you need a key to decrypt the backup if you lose access to all your verified devices.

Without some easy to use out-of-band key backup solution, an E2EE server backup is no backup at all.

But it’s not related to this story. Nobody prevents you from using services that do not operate like signal (and esp with desktop it is now very easy to backup your messages) Just use those. This is just about whether sth like signal should be allowed to exist.
The GP of my post was:

> After losing my phone and not having a way to recover a lot of data, I've come to the realization that I don't want end to end encryption.

Effective backups and key management are 100% related to this thread

I'm confused by this thread. Signal does have backup options (just not on every platform). https://support.signal.org/hc/en-us/articles/360007059752-Ba...

If you have an Android device you can literally backup your Signal message history and move it wherever you want.

I think Windows has an unofficial option. But yea you're out of luck on macOS and iOS it seems.