> * one-document-per-field. Modifications are super-efficient (only one
>  field is touched), and there are basically no conflicts. But overall
>  data size grows significantly (we pay overhead on every field). And
>  encrypting each field separately reveals a lot more information (and
>  is a lot more malleable), weakening our security claims.

Worth mentioning that this is vulnerable to the "five lawnchairs" problem: it's 
equivalent to having a server do per-field automatic merging. The more 
fine-grained the records, the more we introduce cross-record constraints.
_______________________________________________
Sync-dev mailing list
[email protected]
https://mail.mozilla.org/listinfo/sync-dev

Reply via email to