[146953] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: [Cryptography] Thoughts about keys

daemon@ATHENA.MIT.EDU (Guido Witmond)
Tue Sep 10 10:27:50 2013

X-Original-To: cryptography@metzdowd.com
Date: Tue, 10 Sep 2013 11:00:24 +0200
From: Guido Witmond <guido@witmond.nl>
To: cryptography@metzdowd.com
In-Reply-To: <522E0166.8090209@zen.co.uk>
Errors-To: cryptography-bounces+crypto.discuss=bloom-picayune.mit.edu@metzdowd.com

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============6152005841097313873==
Content-Type: multipart/signed; micalg=pgp-sha1;
 protocol="application/pgp-signature";
 boundary="----enig2XPDCVWVAADIMFJIFBVDA"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
------enig2XPDCVWVAADIMFJIFBVDA
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable

Hi Peter,

We really have different designs. I'll comment inline.

On 09/09/13 19:12, Peter Fairbrother wrote:
> On 09/09/13 13:08, Guido Witmond wrote:

> I like to look at it the other way round, retrieving the correct
> name for a key.
>=20
> You don't give someone your name, you give them an 80-bit key=20
> fingerprint. It looks something like m-NN4H-JS7Y-OTRH-GIRN. The m-
> is common to all, it just says this is one of that sort of hash.
>=20
> There is only one to remember, your own.

If I read it correctly, each participant has one *single identity*?

Eccentric does it the other way around, with ecca, you have one or more
different identities at *each* site. At least one. But if you want to
blog different topics under different id's, no problem. Create another
account.

I think there are good reasons for having multiple *independent*
identities. For example, if your writings get too hot for the blog site
owner and they close one account, it doesn't affect the other accounts.

If you want, you can destroy the private key so there is nothing that
traces you to that account.

Or if you want, you can post a proof of ownership of the private key of
the account, to show that the site censured a really good post. They
closed the account but can't invalidate your key. Again, other accounts
are still unaffected.


[Taken out technical description]

> He then checks that you are someone he thinks you are, eg from the=20
> photo, checks the fingerprint, and if he wants to contact you he has=20
> already got your public key.

As you and I have never met, I can't validate your photo, neither half
your claimed penis size. ;-)

How do I know it's not a Man in the Middle using your picture?


Regards, Guido.


------enig2XPDCVWVAADIMFJIFBVDA
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with Icedove - http://www.enigmail.net/
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=Xf01
-----END PGP SIGNATURE-----

------enig2XPDCVWVAADIMFJIFBVDA--

--===============6152005841097313873==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
The cryptography mailing list
cryptography@metzdowd.com
http://www.metzdowd.com/mailman/listinfo/cryptography
--===============6152005841097313873==--

home help back first fref pref prev next nref lref last post