On 06/09/07, Peter Saint-Andre <[EMAIL PROTECTED]> wrote: > Also I don't think we want to tie Jingle and ESessions together. What if > we design some other way to do e2e encryption (e.g., "XTLS")? Do we then > need to define how that works with Jingle too? > > Proper layering seems important here.
Probably best to keep things as separate as possible, but there should be something binding Jingle to the mechanisms used in e2e encryption. If I have verified another users encryption keys using some out-of-band method, I want that verification to cover any jingle sessions as well. -- Niklas
