sprint for privacy goal
Open, Needs TriagePublic

Description

Goal:

Topics:

People that would like to attend:

Suggestions for place and time:

Other relevant things:

lydia created this task.May 1 2018, 1:51 PM
aacid added a subscriber: aacid.May 1 2018, 7:54 PM
aacid added a comment.Jun 13 2018, 9:51 PM

FWIW I may be interested in attending, i didn't add myself to the list above because I would not want to be a "voter" on the place/date but i would be interested in being notified when the place/date is chosen to see if i can join :)

knauss added a subscriber: knauss.Aug 16 2018, 3:20 PM

I would stepup for planing such a sprint.
I've a place in mind in France near Grange Neuve, but I have to find the flyer with the correct name...
I think about doing the print next spring.

knauss added a comment.Sep 9 2018, 1:05 PM

Together with @stolborg , we are evaluatiing currently two options:

  • Les Magnas (France, Provence, Pierrerue): http://auxsaisons.free.fr/
    • 2h by train/bus reachable from Marseilles (nearest airport)
    • how people get from the bus station to the venue ( shuttle service needed)
  • local scout huts in Denmark (likely far out and lessluxurious)
    • do we need to cook by ourselfs (I know people, who like to cook for us)
    • how people reach the venue?
    • can people sleep in small rooms?

Any other ideas for a venue?
We'll switch discussion now to this task so others can participat, too.

here's an (in danish only, sorry) overview of scouts houses in dk http://hyttefortegnelsen.dk/
but, most require you to be rather scouty, as it is 3 layered bunk beds with 5-6 beds in a room - there's usually a big kitchen (though we would have to cook for ourselves) and only 1 common room, so the work room and eating area would be the same room (unless you want to use the outdoors, which is always dicey with the weather)

if we're really interested in this, there is actually one in the middle of Copenhagen https://spejdercenterholmen.bookhus.dk/Velkommen/Faciliteter.aspx?pageID=34b0af69-ee1f-4ddc-8b09-67df05fb58ad (yes danish, the English flag doesn't work but ill be happy to translate)
in this one you can rent some combination of the sleep house and meeting house, so there's an option for a work room. But still, bunkbeds, and we would have to get a cooking team for the food

I've heard that linuxhotel in Essen might be an option (I've no idea what it is)

in short, i liked your idea knauss :)

The Linux Hotel in Essen-Host (https://www.linuxhotel.de, German only) is are really nice location. I was there once some years ago and forgotten about it :D I ask them today by phone, but they can only host at maximum 25 persons. And this only if several share a two bed room. They proposed to asl "Unperfekt Haus" in Essen Cetrum (https://www.unperfekthaus.de, German only).

the only suggestion where people aren't sharing rooms is the french one then :)

AFAIK two people in two beds in a room is the default that KDE eV sponsored solution since basically halves the price for hotels in rooms, sharing more then 2 people in a room gets annoying and usually is avoided and only one person per room is too expensive and only granted in some cases, but please confirm with the board what i'm saying is true.

@aacid: right, for a lot a big shared room is fine and for most a two persons room is fine. But I think we also need the possibility for people to have a single room one or two.

Currently figuring out, if we can do the sprint in Leipzig. Got very interesting connection so far. Hadn't got any reponse form the France location so far.

knauss added a comment.Oct 3 2018, 1:40 PM

I'll got ACK from Les Magnas that they are fully free before April.

To go on, we should now start to think about who we want to have on the sprint and ask those persons this way we better know about the size and when we do the sprint

For that we need some ideas about what are our (concrete) goals:

  • have a way to exchange urls without doing a request on the server ( click at a link in kmail and firefox opens)
  • using torbrowser as default browser
  • having an interface to torify/vpn applications
  • detect wiki login pages - do not access internet before
  • have a way to allow/dissallow applications interact with inet for specific wifis
  • detecting bad SSL standards aka only TLS 1.0...
  • more helpful SSL problem dialog (properly if you have a wifi login page)
  • Encrypting headers of mails to give less metadata to surveillance T742.
  • Make it possible to search in encrypted mails, as until now, the encrypted data are a binary blob for the search. The search important to find mails again T8447.
  • Make Akregator webviewer protect against ad trackers T7528.
  • Add GnuPG TOFU (Trust On First Use) trust model support for KMail. With TOFU you will get more security without exchanging the gpg fingerprints. To make it clear, exchanging fingerprints gives better security, but is exhausting.

So maybe ask following groups:

  • Plasma / Plasma mobile
  • Vault
  • Falcon
  • Choqok
  • KDE Pim
  • Frameworks

What are your thoughts?

Here my first email draft for the doodle. Please proofread and change like you think:

We volunteered to organize a KDE Privacy Sprint. We wanted to make it happen in March. We think at a sprint of five days. The main goal for the sprint is to locate privacy issues and fix them. Until now, no date is fixed, that's why we doodle for one:

<doodle like url>

Please add yourself to the doodle fast, so that we can have a fixed date within the next weeks.

The sprint will either be located in Leipzig(Germany) or Les Magnas (France) http://auxsaisons.free.fr/. At the moment both options are still open, but soon we need to decide. What is your preference of place?

Some issues that came into my mind:

  • currently when clicking on a link in an email the url is accessed within Plasma and than forward this to Firefox. If the user wants to use TorBrowser as default browser it is a Privacy Breach.
  • having an interface to torify/vpn applications

Wifi:

  • detect wiki login pages - do not access internet before, e.g. you are using inet of a hotel
  • have a way to allow/dissallow applications interact with inet for specific wifis, e.g. you are using inet of a hotel

TLS:

  • detecting bad SSL standards aka only TLS 1.0...
  • more helpful SSL problem dialog (properly if you have a wifi login page)

Mails:

  • Encrypting headers of mails to give less metadata to surveillance T742.
  • Make it possible to search in encrypted mails, as until now, the encrypted data are a binary blob for the search. The search important to find mails again T8447.
  • Add GnuPG TOFU (Trust On First Use) trust model support for KMail. With TOFU you will get more security without exchanging the gpg fingerprints. To make it clear, exchanging fingerprints gives better security, but is exhausting.
  • Make Akregator webviewer protect against ad trackers T7528.

For more information look at https://phabricator.kde.org/T8622.