[aerogear-dev] iOS Crypto findings II

Matthias Wessendorf matzew at apache.org
Wed Oct 16 09:18:06 EDT 2013


at least a heads-up on the IRC channel, and asking if folks want to join
the hangout would have been more transparent.

Otherwise is more like talking secrets behind closed doors

-M


On Wed, Oct 16, 2013 at 3:15 PM, Corinne Krych <corinnekrych at gmail.com>wrote:

> No meeting more hang out stuff to slip tasks. Let's do an iOS team meeting
> on Friday.
>
> ++
> Corinne.
>
> On Oct 16, 2013, at 2:15 PM, Matthias Wessendorf <matzew at apache.org>
> wrote:
>
> >
> >
> >
> > On Wed, Oct 16, 2013 at 12:42 PM, Corinne Krych <corinnekrych at gmail.com>
> wrote:
> > Hello All,
> >
> > With Christos we sit down to see remaining tasks/questions to achieve
> symmetric encryption.
> > See team agenda:
> > http://oksoclap.com/p/iOS_Security_Meeting.16.10.03
> >
> >
> > Oh, today there was a meeting? Was there a reason why the meeting was
> not made public ?
> >
> >
> >
> > Here is the output:
> >
> > - We created initial unit test for encryption/decryption
> >
> > - Password derivation is done.
> >
> > - Random generation helper done. Refactor of AGRandomGenerator. Split
> into different classes. Christos on it.
> >
> > any repo to share the results/work ?
> >
> >
> > - Corinne created an initial encryptionimplementation using block
> encryption see
> >
> https://github.com/cvasilak/aerogear-crypto-ios/blob/master/crypto-sdk/AGCryptoBox.m#L115
> > We would like to move to stream encryption using CCCryptorUpdate.
> Christos on the case. Work in Pogress.
> >
> > - Encryption/Decryption could be a coslty operation we would like to do
> async work on different thread (dispatch_async->cipher->dispatch_main_queue
> )
> > Corinne to look at it.
> > => impact on API, we would like to go forward with
> "encrypt:success:failure" async versions to avoid developer to use e.g.
> >
> > - Question: where do we want to store random IV, encryption key (or just
> salt) used for encryption and neeeded to decrypt?
> >
> > - What do we want for a demo?
> > Corinne to start a separate demo thread on ML: as the demo should be
> shared across JS/Android/iOS/cordova
> >
> > On a different thread Bruno did suggest a password manager; I had the
> impression that this is something for all the different platforms.
> >
> > -M
> >
> >
> > ++
> > Corinne
> >
> >
> >
> >
> > _______________________________________________
> > aerogear-dev mailing list
> > aerogear-dev at lists.jboss.org
> > https://lists.jboss.org/mailman/listinfo/aerogear-dev
> >
> >
> >
> > --
> > Matthias Wessendorf
> >
> > blog: http://matthiaswessendorf.wordpress.com/
> > sessions: http://www.slideshare.net/mwessendorf
> > twitter: http://twitter.com/mwessendorf
> > _______________________________________________
> > aerogear-dev mailing list
> > aerogear-dev at lists.jboss.org
> > https://lists.jboss.org/mailman/listinfo/aerogear-dev
>
>
> _______________________________________________
> aerogear-dev mailing list
> aerogear-dev at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/aerogear-dev
>



-- 
Matthias Wessendorf

blog: http://matthiaswessendorf.wordpress.com/
sessions: http://www.slideshare.net/mwessendorf
twitter: http://twitter.com/mwessendorf
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/aerogear-dev/attachments/20131016/ef0ba0b3/attachment.html 


More information about the aerogear-dev mailing list