[messaging] PKI is dead

U.Mutlu for-gmane at mutluit.com
Fri Jan 23 01:57:12 PST 2015


SSL certificate stuff (ie. PKI) is IMO dead. NSA killed it.
Back to the roots: hashed pw over MITM-safe sessions (SRP, SPEKE etc, ie. PAKE).

cu
Uenal



More information about the Messaging mailing list