nanog mailing list archives

Re: Why are we still using the CA model? (Re: Microsoft deems all DigiNotar certificates untrustworthy, releases updates)


From: Valdis.Kletnieks () vt edu
Date: Sun, 11 Sep 2011 18:52:41 -0400

On Sun, 11 Sep 2011 15:20:51 PDT, "Aaron C. de Bruyn" said:
I'm pretty fond of the idea proposed by gpgAuth.One key to rule them
all (and one password) combined with the client verifying the
server.It's still in its infancy, but it works.

Yes, but it needs to be something that either (a) Joe Sixpack never
sees, or (b) Joe Sixpack actually understands.  Are either of those
true?

Attachment: _bin
Description:


Current thread: