diff options
| author | Gab <24553253+gabrix73@users.noreply.github.com> | 2026-08-13 14:04:30 +0200 |
|---|---|---|
| committer | Gab <24553253+gabrix73@users.noreply.github.com> | 2026-08-13 14:04:30 +0200 |
| commit | 994071243fc80990cf09e820b671006e9bd31c76 (patch) | |
| tree | b65e02724b98033240aa6f9d153acea021abc456 /katzenpost/README.md | |
| parent | 47d903de3bca4165e96d6ec8830eafbacf524cd2 (diff) | |
| download | yamnweb-994071243fc80990cf09e820b671006e9bd31c76.tar.gz yamnweb-994071243fc80990cf09e820b671006e9bd31c76.tar.xz yamnweb-994071243fc80990cf09e820b671006e9bd31c76.zip | |
Separate active YAMN code from Katzenpost PoC
Diffstat (limited to 'katzenpost/README.md')
| -rw-r--r-- | katzenpost/README.md | 30 |
1 files changed, 30 insertions, 0 deletions
diff --git a/katzenpost/README.md b/katzenpost/README.md new file mode 100644 index 0000000..938c2b0 --- /dev/null +++ b/katzenpost/README.md @@ -0,0 +1,30 @@ +# Katzenpost YAMN dispatcher + +The dispatcher runs on `kvara`. It is a send-only Katzenpost service: it +receives an already encrypted YAMN packet and forwards it to the selected YAMN +entry remailer using SMTP. It never receives a browser request and must not +implement fetch, view, AEC, replies, or message storage. + +`pietro` is responsible for building the YAMN packet and submitting the opaque +envelope to the Katzenpost service through `kpclientd`. + +## Trust boundary + +The only data the dispatcher may see is: + +- the entry remailer SMTP address; +- the complete, already encrypted YAMN envelope. + +It must reject all other recipient domains and must not write payloads, +subjects, addresses, or SMTP transcripts to disk or logs. + +## Deployment shape + +```text +pietro: yamnweb onion service -> local kpclientd -> Katzenpost + -> kvara dispatcher -> YAMN entry SMTP +``` + +The service capability name is `yamn-dispatch-v1`. It must be registered in +the Katzenpost PKI before `pietro` can discover it. The code is intentionally +not configured with live hosts, credentials, or service keys. |
