Hacker News new | past | comments | ask | show | jobs | submit login

That's right re PKIs, which is why I said "PKI-like service." I don't believe the conventional definition of PKI is useful. What would you call it?



I'd call it X.509 Certificate Authorities. Unfortunately, the root of that is busted, so we should build on something else.

The same thing could be done with GPG, via identity validation (jumping through whichever hoops are required to link people's claimed 'real' world identities with their keys; probably checking documentation and then signing a key). However, that's probably best achieved via some decentralized method rather than trusting a centralized corporate intermediary as per X.509 CA's.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: