Article 45 of eIDAS 2.0 will roll back web security by 12 years
eff.org
eff.org
But on the Internet, it doesn't work that way. You can't just do your own thing, lest you kneecap your citizens. How will the Europeans citizens react if their own "free and democratic" governments take away their access to Wikipedia? Or Facebook? Or Tiktok?
Using known suspect TLS Certs would also violate basically every B2B contract. When businesses sign contracts for SaaS applications, it involves some verbiage about encryption and best practices and data security in transit and at rest. What business will WANT to sign a deal that says "Yes, it's ok to use a TLS cert that we know our government can intercept" when they have the option to use a cert from someone else that's secure? Cool, shoot your own businesses in the foot too, while you're at it.
Freaking politicians. Can't be bothered to do anything about the issues we citizens ACTUALLY want, but instead are too busy meddling in shit that no one wants.
The EU thinks they should be
I understand that it helps to have a name for something like this, but there is no "EU". "It" cannot think.
Heed the Meehan quote; "Men are at war because each man is at war with himself". It's not just that human minds are one psychotic insight away from seeing our dissociative identity disorder just beneath the surface... evey institution and collective is the same. What is wrong in the "EU" (principally the Commission) is that it's large and disparate enough for some extraordinary bad actors to hide within it and exercise undue toxic influence. It is by lack of transparency that they cannot easily be rooted out, named, shamed and dislodged.
Meanwhile much of the "EU" functions very well, and cares for its citizens.
It's multiple regular humans doing regular human thinking (in various quantities) and otherwise acting, and interacting, subject to social pressures.
Calling that an organization thinking might be a convenient shorthand, but as I far as I'm concerned the utility stop right there, and forgetting that it is merely a shorthand is potentially badly misleading (which, I take it, was one major point of https://news.ycombinator.com/item?id=38182349 )
I think it is safe to assume that the majority of people running the EU share the aim of "ever closer union" enshrined in EU treaties, which implies aiming to put the interests of the EU above national interests, which I took to be what the comment I was replying to meant by being "one big happy family"
Understood. And I was questioning the concept of "consensus" in that frame.
> I thought (obviously wrongly) that this was obvious
Not at all. I don't think that is obvious. Interestingly some are raising GPT as a metaphor for emergent organisational "thinking". Is it a good analogy? I don't know, but we do see similar phenomena in networks whether they be human brains, machines or other organisms. And one feature is that we are not sure how to locate "consensus". There's lot more than weighted sums at play. And despite official structures and protocols, that's not really how things work, I think we all know.
Thus the emergent identity gets a lot attributed to it, which it may not be "aware of" in large parts of itself. For minds we have the concept of the unconscious. Perhaps in neural networks we will come to recognise something similar. But the concept seems sadly lacking in organisational dynamics where it might help us to stop talking about ideas such as "What Google says" or "What the market demands".
> because an organisation cannot think.
And yet we so often talk as if they can. We see Searle's "Chinese Room" everywhere and wish to encapsulate and name too readily.
The "EU" is "mentally unhealthy" in that sense. in that it's simply too big and disparate to be coherent and consistent. The article about snooping on web TLS certificates could not more clearly contradict other strongly held "beliefs" within the organism about "privacy".
https://www.f5.com/labs/articles/threat-intelligence/kazakhs...
But unlike Kazakhstan, the EU can actually ORDER browser makers to keep approving their backdoored certificates. And then mandate that anyone serving their own citizens use them.
Look at what the UK has already done with its “think of the children” bills. The UK is weaker than the EU
https://www.wired.com/story/the-uks-controversial-online-saf...
But they can’t. Maybe they can order some companies to do so, those companies which would fight tooth and nail in court, whom cumulatively have more money than the EU (probably).. . and certainly more lawyers.
But at the end of the day, they couldn’t force every browser. No company would accept a website that doesn’t work with 30% of the internet. It would, once again, knee cap that company.
And while I’m not sure of every browser, I’m fairly sure you can delete CA’s in most browsers today. You certainly can on an OS level. So as soon as one CA get’s p0wned by the government, the techies would just run around and “help” all their friends and family delete the CA from being trusted.
They might. It's how the US intelligence agencies route around laws that prohibit spying on US citizens. They spy on a 5-eyes nation's citizens (often the UK) who is spying on US citizens. Then they trade connections.
No. Sorry.
> Just because GCHQ shares data with NSA it does not mean the program lacks controls that protect American citizens
This restates my point - how sharing takes place in spite of those controls. At least we can agree on something.
Sharing takes place because countries have mutual data sharing agreements. It is up to the receiving country to comply with domestic laws.
For example if GCHQ has a dish pointed at a foreign communications satellite and receives all downlink communications, they might share that stream of raw data with partner countries. If NSA receives that stream the first thing that happens is it gets decoded into call data and parsed for any hint of US nexus communications at which point it gets tagged USPER and is not accessible to analysts.
You'll forgive me if I remain skeptical.
1. Good luck teaching 99% of people to be wary when they see the blue address bar. People generally do not understand address bars, which is a large part of why browsers removed the EV indicator.
2. There is a strong possibility that a future version of eIDAS will force businesses in the EU to get certificates from an eIDAS CA. At that point, people in the EU will be seeing the blue address bar constantly, and most of the time the certificate will in fact be legit.
Here is what users need from any browser that cares about the user:
- An option to not use OS supplied root certificates. Instead, to customize and set up user allowed certificates on the first run/first site use.
- An easy UI for trusted certificates that give categories and what each certificates scope means.
E.g. 'This certificate is issued by a telco provider on behalf of the Government of Canada, is a blanket certificate for all domains, can let the government see all your encrypted traffic.'
'This certificate is issued by the IT department of your organization and let's them see all encrypted traffic'
- It should appear as a warning when a user sees these blanket certificates used on general purpose websites (like Google services) and have a way to tell whether there is a potential MITM happening.
'Normally this website would use a certificate provided by Google.com Inc but it seems your Government issued certificate is being used to see all encrypted traffic you are sending to Gmail.com'
- Warn meaningfully about algorithm usage choices: 'The algorithm strength is 2048 bits and the year is 2023, and governments already have capable computers that can break this encryption with this strength.'
I'm a bit out of the loop on modern security implementations. In theory though, I thought the purpose of certificates and certificate authorities was to certify that you're actually talking to who you think you're talking to?
A browser can still communicate security with any computer out there, regardless of corporate certs, etc. Or do the corporate firewalls block communications that they cannot inspect?
The certificate is associated with a private key which can decrypt the traffic for a session established using the cert. The issue is that, given a bogus certificate from a trusted authority, someone can impersonate any site they want, then proxy the traffic to the real site and spy on your session.
Longer explanation:
If an organization is able to obtain a certificate that the browser trusts, which matches the domain name you are visiting, then they can easily terminate the TLS at the organization's server, then make a new request to the site, where the encrypted session is between the site and the organization's proxy server. They get an effective man-in-the-middle attack and your browser pretends like everything is secure because there is a trusted certificate matching the domain name you visited. The browser doesn't throw up any red flags because it doesn't differentiate between certificates, only certificate authorities.
So if a 3rd party can acquire an arbitrary certificate for some domain, and the 3rd party has the private key associated with that cert, and the same 3rd party can intercept the traffic between you and the domain in question, then they can get your traffic in the clear and there are no obvious signs that they did it.
Given the current state of TLS and the way browsers deal with certs, the only way for a user to discover that something is amiss is to investigate the details of the cert. Then they might notice that it was issued by a suspicious certificate authority. Unfortunately, the proposed EU law is attempting to prohibit browser vendors from withholding trust (or otherwise scrutinizing) the state-controlled (or state-influenced) certificate authorities, with the intention of preventing browsers from interfering with government's ability to issue illegitimate/insecure (but you must trust them, or else!) certificates.
Yes, you’ve got it. Many corporate firewalls require you to install their own root CA certificate and “transparently” intercept and rewrite traffic leaving the network. It looks like you’re negotiating with the external site, but you’re actually doing TLS negotiation with an on-prem proxy that connects to the destination site on your behalf.
I say “transparently” in quotes because it definitely, in practice, breaks things here and there.
> My computer says
It's not your computer. It's the company's computer and they installed the root certificate on it. For any non-provisioned machine you'd get a certificate error because the corporate-issued certificates are signed by the corporate CA that isn't browser-approved by default.
It's called TLS interception.
Someone has to explain the threat model to me better. If I go to google.com and the certificate says the site is owned by John Doe (France) I should be suspicious. Is the problem that the certificate validates something other than the domain name? Any government can already easily get a domain certificate for google.com.
(Besides, macOS and Windows do let you tweak the trust store from their respective GUIs. There’s nothing stopping you from doing so.)
Corporate users do not have a control over this, nor will people where governments try to propose a law forcing people to accept crony CAs to the trusted list.
If you’re trying to circumvent your corporate laptop’s MITM, you’re playing a lost game. It’s also a game that has nothing to do with ordinary users on ordinary, non-work computers.
See also, cookie consent banners.
While dialogue fatigue is true, browsers can take care of offloading the cookie dialogues if there were a standard for it.
Doing what's necessary for privacy is no excuse to throw bad UI at a user. There has to be a way to customize our transit security and subsequently privacy. It's a step in the right direction.
This is why eIDAS is so nuts - it forbids browsers from rolling out pro-user security measures.
https://www.securityweek.com/turkish-ca-issues-fraudulent-ce...
I may as well add that web browsers are generally open source software and their source code thus a form of speech. Recent actions by the EU have made it clear they are trying to start to exert control over web browsers, which they presumably see as prime estate for exerting control over the internet. The correct answer to this is to distribute web browsers from jurisdictions with strong freedom of speech (code) protections, remove any assets from the EU which the EU might try to take hostage to extort compliance, and respond to the EU's frequent attempts to assert "if anyone in the EU uses your product, you have to comply with our rules" with "you and what army."
I don't quite understand that. How does a browser enforce CT? Even if a browser queries CT logs, they're not that helpful without any context, right? How would a browser get anything useful from the logs beyond knowing a certificate was published to the logs?
Isn't it the job of the domain owner to monitor those logs since they're the only one that's going to know definitively if a certificate is illegitimate?
Unfortunately, Article 45 states that certificates issued by EU-mandated CAs "shall not be subject to any mandatory requirements other than the requirements laid down in paragraph 1" and paragraph 1 does not allow browsers to reject certificates not published in CT logs.
Thus, EU-mandated CAs will be able to issue undetectable MitM certificates.
> The text isn't final yet, but is subject to approval behind closed doors in Brussels on November 8.
I know this isn't a satisfying answer, but blame the EU for drafting legislation in secret.
Laws don't go from secret drafting, straight to law. They get public comments, the parliament has to vote on them, the commission has to vote on them (I think - something like that), they go back to drafting to make an amended version that's more acceptable, etc etc... of course the unfinished draft version isn't acceptable.
This isn't the first time everyone's got upset about an unfinished EU law. All previous times, it was shot down by the EU Parliament, who are supposed to represent the citizens.
Delist European CAs until they get their shit together.
The EU had better invest in its own browser if it intends to outlaw encryption.
Big multinationals have employees and assets everywhere that can be threatened.
However smaller organisations operating from a single jurisdiction can only be threatened by their local government (or at least with the consent of their local government).
Firefox is in the US, right? Pale Moon is too iirc and they forked Gecko to make Goanna.
Oh yeah. I can't believe I didn't put that together. Thanks for spelling it out :-)
The certificate contains signatures from the CT logs. The browser can either accept those signatures or check the CT log itself. This "enforces" CT for the certificate of the site you're accessing, but not necessarily the CA. Of course if a certificate comes up that fails CT logging, that can raise scrutiny of the CA.
This is all based on the incorrect assumption that they can legislate how software is written, both inside and outside their borders.
At every step those that don’t follow the EU’s rules will get fined by the same apparatus as GDPR violators
And here is the rest of the world and the laws they are passing: https://community.qbix.com/t/the-coming-war-on-end-to-end-en...
EDIT: I wrote the above thinking of desktop operating systems. It's much worse on e.g. iOS if the only way to get a browser is through the store, and the store isn't allowed to provide the good browser version in some regions.
But this misunderstands the situation anyway. The overwhelming majority of web clients that interpret CA data are provided by default in devices sold by companies with a clear interest in following the law; because if they don't they can't sell products.
[1] Which I won't engage on, except to say that this seems a lot more like "dumb mistake in the legislation" than "evil plot by an unelected metagovernment" to me. The hyperbole on issues like this gets out of control sometimes, and the EFF seems to be getting worse about it and not better over time. They used to be pretty cerebral.
Their claims center around "the current language is imprecise" and I'm having a really hard time seeing why that's a problem for a bill that hasn't even finished being written yet.
It does make a technically correct claim that QWACs are currently accepted by browsers. However, the reality is that QWACs are only accepted by browsers if the issuer fully complies with both CAB Forum baseline requirements, and Root program rules. The entire purpose of the clause in question is effectively to ensure an EU Bureaucracy is responsible for for setting rules instead of CAB Forum and Root programs.
Another example it is absolutely true that the eIDAS 2.0 regulars impose some certain weaker security requirements than current browsers.
A trivial example is that the response claims QWACs will comply with Brower's Certificate Transparency standards, but those standards are not in the regulation, and the regulation makes it clear that a browser cannot reject QWACS for other reasons not listed in the regulation.
Another example, Mozilla has found that CAs who simply request audits done to ETSI standards (the standards imposed by this regulation) will often end up with audits that are incomplete (unable to audit all relevant controls). This can happen for legitimate reasons, but the audit results don't provide enough details here, hence Mozilla added a requirement for an ETSI Audit Attestation Letter (AAL) that explains these limitations. Even worse, once the impediments are no longer in place, by often ETSI auditors do not re-audit the previously un-auditable controls for the last time period. Mozilla needed to impose additional rules including explaining what if any controls could not be audited, and also rules that the next audit must cover previously un-auditable controls for the previously issued audit, in addition to auditing for the that time period. Describing how to do this audits properly within in the ETSI context is complicated because the ETSI audit standards were not really designed to make such rules (Full audit of all controls over all timespans, re-auditing later if some controls could not be evaluated for any reason the first time) easy.
What the QWAC? an EV Certificate all over again - https://news.ycombinator.com/item?id=38183259 - Nov 2023 (3 comments)
Here's what's happening - the government wants a unified framework for digital identity. They're not saying you have to use it, but they want the framework to be there.
Part of the framework is that you can get a certificate with your name on it, signed by the government saying this is officially you, and you can put this on a website to digitally sign the website.
Obviously the government-issued certificate is going to have certain parameters, and they want browsers to accept these parameters so these websites will work.
How else would you possibly do this, than publishing the certificate parameters and saying browsers must accept these? I don't think they prohibited the browser from saying "this is an EU identity certificate", did they? I imagine it appears as an EV green box showing the person's name and country code.
I don't know why I'd ever want that to appear on my website, but I guess some people do.
Nice strawman. The actual situation is that the government wants to require browsers to accept signatures from CAs that the government selects, and ban them from validating the security of the certs signed by those CAs. In other words, they want the ability to be able to issue their own cert for example.com and forbid the browser from telling you that it's signed by a .gov rather than, say, Comodo.
With this idiotic, mandated arrangement, it would be impossible for an end user to tell whether they were speaking directly to example.com or to the government's MITM proxy.
> and ban them from validating the security of the certs signed by those CAs.
I'm going to need a source on that one, chief. Are you talking about this part?
> To that end, web-browsers should ensure support and interoperability with Qualified certificates for website authentication pursuant to Regulation (EU) No 910/2014. They should recognise and display Qualified certificates for website authentication to provide a high level of assurance, allowing website owners to assert their identity as owners of a website and users to identify the website owners with a high degree of certainty.
Maybe you are talking about this?
> For those purposes web-browsers shall ensure that the identity data provided using any of the methods is displayed in a user friendly manner.
Frankly, displaying the fact that a government issued identity certificate is used seems to me to be the exact opposite of a MITM, but what do I know?
Where does it say that if google.com has Angela Merkel's personal certificate instead of Google's one, the browser shall present it as a secure connection?
If you can't connect the dots and understand why people are upset, I can't help you.
Can you indicate which parts are objectionable on the grounds of leading to a totalitarian surveillance dystopia?
Also, laws can't be reverted in the EU semi-dictatorial regime, so, such things are really dangerous. Each year that goes, I'm thinking of a plan to leave, as our freedoms get lower and lower. Recently, the digital services' EU gauleiter declared that "content calling for rebellion" should be deleted from social media.
Same goes with AML, and with the digital ID, where your government will have a single key allowing to know every service you're registered to. And let's not speak about the CBDC.
You also seem not to read the actual point of the objection everyone has. They want to SPY ON EU citizens! WTF are you not understanding about this? Its all explained in the EFF article and countless others that are on top of HN right now. If you not see the INTENTIONS and the slow creeping dystopia you are blind. I am not going to search some specific text part out for you that proves that, its perfectly obvious for people who follow just a little bit of news and have common sense.
Even if this passes, it will not affect anyone who cares about hosting things correctly.
Governments hide much more from people, and they have much less moral reasov to do so! If anything, it's inside gov't comms that don't deserve protection.
Pissbabies mad that they can't spy and want to abuse policy to force it.
Good luck reverse engineering math, govs. Y'all can't win this one.
I am really curious on how this will play out. Will they mandate a certificate for sites that server the EU that they have control over? This is fucking insane.
We need some new tech that is decentralized, where they just can't do this kind of thing. Hopefully this spawns something. SSL seems to be outdated and unfit for this job, as this clearly shows.
Thanks again EFF for so vigilantly watching against encroachment.
Is there any way to enact a permanent "no"?
In theory this should give sufficient protection, but it becomes a bit complicated if the EU enacts regulations that contradict national laws or even the constitution.
The EU derives its power not from a constitution but from its founding treaties. As best I can tell the EU claims these treaties have precedence, but honestly it's a bit unclear how it could overrule the constitutions that gave the signatories the power to ratify the treaties. I do know that the EU wasn't happy when Poland ruled some parts of these treaties unconstitutional (which is really part of a much bigger political fight, but is illustrative).
An unfortunately there is no good way, no technology board of overseers, who takes away their (smart)phone priviledges when they don't behave.
Does it fail on HTTPS communications or is a similar "rogue" CA that allows law enforcement to decrypt traffic as they need?
Their governments, cackling: Yes, Google is the issue.
- https://gigazine.net/gsc_news/en/20191223-lotus-notes-nsa-ba...
- https://archive.nytimes.com/www.nytimes.com/interactive/2013...
- https://www.nytimes.com/2013/09/06/us/nsa-foils-much-interne...
- https://www.reuters.com/article/us-usa-security-rsa-idUSBRE9...
- https://theintercept.com/2015/12/28/recently-bought-a-window...
- https://web.archive.org/web/20160612190952/http://www.techre...
- https://cyberlaw.stanford.edu/blog/2020/01/earn-it-act-how-b...
- https://mailbox.org/en/post/chat-control-the-latest-eu-plans...
- https://www.techdirt.com/2023/04/18/earn-it-act-is-back-and-...
- https://www.siliconrepublic.com/enterprise/leaked-eu-files-e...
- https://www.laquadrature.net/en/2023/06/05/criminalization-o...
- https://www.newscientist.com/article/2396510-mathematician-w...