6 ms·
yes, it does do this; once you're satisfied with maria's identity, that she's the person you want, you sign a statement to that effect, which you can store just
by malgorithms 13y ago
yes, it does do this; once you're satisfied with maria's identity, that she's the person you want, you sign a statement to that effect, which you can store just locally or post back to the server. (or of course you can just sign her key in GPG!) The latter - posting back to the server - is for portability reasons. A keybase user will likely use keybase on multiple machines.
- midas007 13y agoThe point of SKS is signing keys each other's keys and being distributed. This just fragments into a SPoF service without making the existing ones better.
- bulte-rs 13y agoPerhaps I don't understand the whole keyserver concept... But how is a keyserver not a centralised "IdP" like construct?
- kyrias 13y agoPGP keyservers talk to each other, if you send your key to GnuPG keyserver it'll end up on MIT's keyserver pretty soon.
- midas007 13y agoThanks. The WoT depends on not trusting the keyservers, but trusting that humans on the other end know whom to trust and get them to countersign each other's keys. SSL CAs:GnuPG (GPG/PGP) -> Subversion:Git