Skip to content

[p2p] Why rollout homemade transport security instead of TLS/Noise? #238

Discussion options

You must be logged in to vote

Great question (and thanks for sharing some context from Cosmos)!

From the reasons stated in the questions above, it's unclear why risking rolling out new transport security is worth it. Is this because of the need to reuse consensus identity for peering without translation? To my knowledge, one can simultaneously use ed25510 keys for both peer and consensus identities.
It may require translating and using self-signed certificates for TLS, but the problem is unclear, especially compared to the risk of creating a new security protocol. I favor reducing layers of abstraction and dependencies but not for something as low-level and critical as transport security, especially when the standart…

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@patrick-ogrady
Comment options

patrick-ogrady Dec 12, 2024
Maintainer Author

@patrick-ogrady
Comment options

patrick-ogrady Dec 12, 2024
Maintainer Author

Answer selected by patrick-ogrady
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant