[messaging] OpenPGP Trust is broken Was: On Signed-Only Mails
Phillip Hallam-Baker
phill at hallambaker.com
Thu Dec 8 10:04:18 PST 2016
On Thu, Dec 8, 2016 at 12:25 PM, Tony Arcieri <bascule at gmail.com> wrote:
> On Thu, Dec 8, 2016 at 5:10 AM, Phillip Hallam-Baker <
> phill at hallambaker.com> wrote:
>
>> Yes, the OpenPGP Key servers are a 'dumpster fire'. But that affects
>> confidentiality and integrity equally. And if you think that is a problem
>> then you should start looking at ways to fix the OpenPGP trust
>> infrastructure because what you are saying is that the issues you have
>> identified make the system arguably worse than useless.
>>
>
> CONIKS seems like a step in the right direction.
>
>
There are plenty of ways to go about fixing the trust issue. But
pretending it is not an issue and deciding we don't need features that
depend on having a working trust model is not one of them.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/messaging/attachments/20161208/7e757fc6/attachment.html>
More information about the Messaging
mailing list