Impressed by the EU: Sweden eyes open normal for encrypted chat providers
Authorities departments in Sweden are contemplating deploying “open community” encrypted messaging providers as an alternative choice to proprietary collaboration instruments.
Some 40 of Sweden’s authorities companies are collaborating on a undertaking that might see them rolling out a safe messaging service throughout authorities departments.
The initiative comes as European governments are accelerating the deployment of “sovereign” applied sciences that enable them to be much less reliant on “siloed” software program from expertise suppliers.
The development has been given new impetus by the conflict in Ukraine and rising political upheaval within the US.
A membership organisation for presidency companies involved in digital expertise, eSam has proposed creating a authorities messaging service primarily based on Matrix, an open community providing safe decentralised messaging.
Changing emails and telephone calls
Kenneth Edwall, a authorities worker and member of the eSam working group on the undertaking, advised Pc Weekly that one of many goals of the proposal is to make it doable for presidency departments to speak extra effectively.
“We as companies have to collaborate with one another,” he stated. “Having electronic mail will not be the perfect device, and having telephone calls will not be a very good methodology both.”
When eSam first started evaluating collaboration expertise in 2021, authorities departments in Sweden had standardised on Skype for Enterprise as a collaboration device throughout authorities.
The device was simple to make use of, and it was doable for presidency staff to collaborate with colleagues by looking on their electronic mail and initiating a chat.
They deployed Skype in a decentralised means, giving companies the liberty to purchase the service from suppliers or deploy it on their very own datacentres.
This created a sturdy, decentralised community, stated Edwall. “When you’ve got 100 completely different deployments of Skype, it’s arduous to focus on all of them in a cyber assault,” he added.
A number of messaging providers
Since then, partly because of Microsoft phasing out Skype in favour of its Groups software program, authorities departments have taken up a variety of incompatible messaging apps. They embody Rocket.chat, Groups, Zoom, open supply platform Mattermost, video platform Jitsi Meet, and Ingredient.
“We are actually seeing not less than 5 – 6 messaging instruments being chosen by authorities right now, and if it continues, we’re going to have a giant mess of fragmented methods,” stated Edwall. “There isn’t a open protocol that enables them to interoperate with one another.”
Think about taking electronic mail and splitting it amongst 5 – 6 completely different electronic mail suppliers, every of which was incompatible with the opposite. “That’s what we’ve right now with messaging,” he added.
This implies authorities staff in Sweden are having to study a number of collaboration instruments in order that they impart with individuals in different elements of presidency.
The safety dangers
The apps pose safety dangers as collaboration instruments fall outdoors safety safeguards, and when individuals depart their jobs, they could nonetheless be related to government-focused discussion groups.
In January this yr, eSam started a assessment to take a look at remedy these issues. One choice was to do nothing and depart it to expertise suppliers to develop interoperable messaging providers, however it dominated that out.
“We don’t consider that all the market needs to be interoperable,” stated Edwall. “We consider that a few of the bigger distributors have an incentive to not be interoperable with different distributors.”
One other concept was for Swedish authorities departments to standardise on a propriety platform, similar to Zoom or Microsoft groups. Nonetheless, beneath Swedish regulation, authorities departments cannot legally selected to purchase expertise from a favoured provider. Every contract has to exit to tender.
Federated open supply messaging
Ultimately, eSam settled on an open-source federated messaging normal that enables authorities departments to construct interoperable collaboration platforms, both in-house, or purchased in from a supplier.
“The bottom line is we aren’t taking sides with regard to public cloud, personal cloud or on premise,” stated Edwall. “We’re not taking sides on proprietary or open supply options, however we would like all of them to have the identical open protocol that enables them to work together with one another.”
The eSam members checked out quite a lot of choices, together with the Matrix protocol, Sign, XMPP and others, earlier than deciding on Matrix.
“We had conferences with different public sector authorities within the EU [European Union] and we realised that many of the authorities we talked to had been wanting on the Matrix protocol,” he stated. “A few of them had been already in it and others had been evaluating it.”
For eSam, Matrix gives a number of benefits. First, it’s federated, which implies the Matrix community depends on decentralised nodes. If one fails, or is hit by a cyber assault, messages can nonetheless re-route to the proper vacation spot.
Second, completely different authorities companies can selected to deploy the expertise in several methods. “You can too determine who you wish to deploy our setup,” stated Edwall. “You may use public cloud providers or personal on-premise providers.”
European governments are utilizing Matrix
Matrix is broadly utilized by the general public sector in France, Switzerland – the place it has been championed by Swiss Publish – and Germany. The European Fee and the Netherlands even have plans to roll out the expertise.
The staff has ready a report that it’ll current to the eSam board in November.
Its suggestions are to construct on open requirements and protocols to make sure authorities companies can keep away from being locked into one provider, and to present organisations the flexibility to decide on how they wish to ship expertise, both by means of public cloud, personal cloud, on-premise methods or third-party suppliers.
If the plan is permitted, the transfer to Matrix-based messaging is more likely to take years – and even a long time.
“We don’t need authorities to simply throw out their present communication, as a result of they could have a 5 or 10-year contract,” stated Edwall.
“We would like the market to shift so the distributors perceive what they achieve from utilizing an open normal, much like the open requirements we use in electronic mail,” he added. “We would like the market to know that they need to begin adapting their merchandise.”

