Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sandij
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
Credentials Evidence or Simulate
(preludes.eu)
4 points
by
sandij
11mo ago
|
0 comments
2.
▲
Portable documents host new file formats
(preludes.eu)
2 points
by
sandij
11mo ago
|
0 comments
3.
▲
by
sandij
2y ago
Another issue with non-repudiation of presentation is that it encourages relying parties to log full transcripts of presentation interactions. It could also encourage supervisory bodies to request such over-complete logging. Instead, relyin
4.
▲
by
sandij
2y ago
Non-repudiation of commitments to a transaction can be good when both parties want to avoid later disputes about the authenticity of these commitments. It requires careful design of the data to be signed, the public key certificates, the po
5.
▲
by
sandij
2y ago
I’m not sure what the German eID uses today, but the German architecture team has explored KEM+MAC for the EU Digital Identity Wallet. Maybe its eID is similar. You can apply KEM+MAC at either or both of two points: 1. plausible deniability
6.
▲
by
sandij
2y ago
To prove that the car rental company has seen the driver licence, they just need to show the judge a copy of the licence which is e-sealed by its issuing authority. No need to include a non-repudiable proof-of-possession signature of the ho
7.
▲
by
sandij
2y ago
This article is very relevant in the context of the EU Digital Identity Wallet, and digital credentials in general, such as ISO/IEC 18013-5 mobile driver licenses and other mdocs. We may accidentially end up with non-repudiation of att
8.
▲
by
sandij
3y ago
I was curious what would be needed to apply Web Authentication for message/document signatures that third parties can verify. This is an article/demo I wrote about what my findings. Note that the standard was deliberately not desi
9.
▲
Using WebAuthn for Non-Repudiation
(sanderdijkhuis.nl)
2 points
by
sandij
3y ago
|
1 comments
10.
▲
by
sandij
3y ago
Cleverbase, Vidua | https://cleverbase.com | The Hague, the Netherlands, hybrid options | iOS / Android native mobile app engineer We deliver identity wallets and trust services. Users can sign documents on mobile with the
11.
▲
by
sandij
3y ago
And video here: https://docs.datomic.com/cloud/other-tools/REBL.html
12.
▲
by
sandij
4y ago
Go has an excellent standard library for cryptography primitives with well-established best practices. It was designed and is maintained in a principled way that likely appeals to more cryptography engineers. Also see this answer by one of
13.
▲
by
sandij
5y ago
It also reminds me (in a positive way) of Étoilé which seems to not be developed anymore, but had a similar Mac OS / NeXTStep inspired approach to design: http://etoileos.com/
14.
▲
by
sandij
5y ago
This software design classic has been hard to obtain lately. Co-author Rebecca Wirfs-Brock announced yesterday that it has been re-published now as a free download: https://twitter.com/rebeccawb/status/140995133095
15.
▲
Object Design: Roles, Responsibilities, and Collaborations (2003) free e-reprint
(informit.com)
1 points
by
sandij
5y ago
|
1 comments
16.
▲
by
sandij
5y ago
Not yet. What aspect would be interesting for you to read more about?
17.
▲
by
sandij
5y ago
Currently we are with between 50 and 100 in total, the team in this example is with 9. We are building inherently complex systems with high compliance and security impact. So all colleagues are aware that we need to manage a lot of requirem
18.
▲
by
sandij
5y ago
We use a combination of Markdown + PlantUML, CSV, YAML, Structurizr DSL, and Gherkin feature files under Git version control next to the code to structure the requirements and examples. A GitHub Actions continuous integration workflow does
19.
▲
by
sandij
7y ago
Any experiences with intentionally hostile software architecture? Curious how for example code project structure or inter-process messaging constraints can prohibit mixing concerns or breaking the domain model. Also curious how such a force
20.
▲
by
sandij
7y ago
A start: https://joearms.github.io/#2018-12-26%20Fun%20with%20the%20T...
21.
▲
by
sandij
8y ago
When pinning CAs instead of certificates, you’d use CAA instead of HPKP.
22.
▲
by
sandij
9y ago
Not sure it meets all 3 requirements, but last time I tried I was rather impressed by the Nightcode Clojure IDE built with JavaFX: https://sekao.net/nightcode/
23.
▲
by
sandij
10y ago
"We don't condemn the server operator for being at the mercy of nonfree software, and we certainly don't boycott her for this. Rather, we are concerned for her freedom, as with any user of nonfree software. Given an opportuni
24.
▲
Containers rated more secure than conventional apps (Gartner research note)
(theregister.co.uk)
2 points
by
sandij
10y ago
|
0 comments
25.
▲
by
sandij
10y ago
An easy way is to use an IMAP client like the macOS Mail.app that syncs raw email + metadata in .mbox format. You can find the files in ~/Library/Mail/V4. Combine with Time Machine for extra backups in case you’re worried tha
26.
▲
by
sandij
10y ago
https://www.linode.com/referrals
27.
▲
by
sandij
11y ago
For academic research, I find https://www.zotero.org/ useful. AGPLv3 license, good integration with web browsers, and good sync. It has tagging and custom notes although I prefer using folders and a separate note taking app
28.
▲
by
sandij
11y ago
It was a plan for Google’s Dart: http://news.dartlang.org/2015/03/dart-for-entire-web.html
29.
▲
by
sandij
11y ago
A company stands up that people will refer to as ‘the Apple of smart textiles’.
30.
▲
by
sandij
11y ago
<script type="application/swift">
More ›