Orbi Camp
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Ludicrous0251@piefed.zip to Privacy@lemmy.dbzer0.comEnglish · 3 days ago

Announcing Key Transparency for the Fediverse

soatok.blog

external-link
message-square
17
fedilink
  • cross-posted to:
  • [email protected]
  • [email protected]
26
external-link

Announcing Key Transparency for the Fediverse

soatok.blog

Ludicrous0251@piefed.zip to Privacy@lemmy.dbzer0.comEnglish · 3 days ago
message-square
17
fedilink
  • cross-posted to:
  • [email protected]
  • [email protected]
Announcing Key Transparency for the Fediverse - Dhole Moments
soatok.blog
external-link
I’m pleased to announce the immediate availability of a reference implementation for the Public Key Directory server. This software implements the Key Transparency specification I’ve be…
alert-triangle
You must log in or register to comment.
  • solrize@lemmy.ml
    link
    fedilink
    arrow-up
    5
    ·
    3 days ago

    This looks interesting but it’s horrendously long and my eyes glazed over (need more coffee…). Is there a shorter description of what it does? I.e. what are the keys used for and how are they generated? What is it that’s getting encrypted? It sounds like it’s supposed to be E2EE for PM’s. A two or three sentence description saying how the E2EE works and how the private keys are stored would be very helpful.

    • Soatok Dreamseeker@pawb.social
      link
      fedilink
      English
      arrow-up
      3
      ·
      2 days ago

      If you want E2EE for Mastodon, you need key management to be solved first.

      This solves a lot of the key management pain. It’s not v1.0 stable yet, but it’s finally implemented. I’ve been working on the spec for nearly 2 years.

      • solrize@lemmy.ml
        link
        fedilink
        arrow-up
        2
        ·
        2 days ago

        I’ll take a look when I get a chance, but like you said, it’s a public key directory. I thought you were claiming to have a solution to client side keys. Is there trouble with using some existing PK directory scheme?

        • Soatok Dreamseeker@pawb.social
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 days ago

          No, if you read the post it will make more sense.

          Or the specification if you’re more technical.

          • solrize@lemmy.ml
            link
            fedilink
            arrow-up
            1
            ·
            2 days ago

            I’ll see if I can read the post but when I tried this morning, it was way too long. I’ll look at the specification. I’ve been involved in crypto implementation since forever, which is why this looked interesting. But I think the client side also has to be figured out, if it hasn’t been yet.

            • Soatok Dreamseeker@pawb.social
              link
              fedilink
              English
              arrow-up
              1
              ·
              2 days ago

              The client side is its own beast. See https://github.com/soatok/mastodon-e2ee-specification?tab=readme-ov-file#components from my initial project (the “key transparency” thing from today slots neatly into the “Federated PKI” hole).

              • solrize@lemmy.ml
                link
                fedilink
                arrow-up
                2
                ·
                2 days ago

                Thanks. I’ll look and post comments later if you want them.

                • Soatok Dreamseeker@pawb.social
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  2 days ago

                  Certainly. Thanks <3

    • chgxvjh [he/him, comrade/them]@hexbear.net
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      It’s a public key registry.

      • solrize@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        2 days ago

        That’s unhelpful. How is it used? Thanks.

        • chgxvjh [he/him, comrade/them]@hexbear.net
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 days ago

          It doesn’t do any of the things you have asked about.

          It’s a building block for a reasonably secure e2ee PM system.

          • solrize@lemmy.ml
            link
            fedilink
            arrow-up
            1
            ·
            2 days ago

            Oh. Tbh that doesn’t sound very significant. LDAP might be enough by itself. Thanks.

            • chgxvjh [he/him, comrade/them]@hexbear.net
              link
              fedilink
              English
              arrow-up
              1
              ·
              2 days ago

              If you are you are looking for more complex tools that don’t do the job sure.

              Honestly just read the article before, and some of the linked texts before you continue talking. Or don’t. Just please don’t be a know it all who doesn’t need to read, it’s not very appealing.

              • solrize@lemmy.ml
                link
                fedilink
                arrow-up
                1
                ·
                2 days ago

                I’ve read the article again and am still in a state of confusion. I’ll see if I can get through the spec. But there are a ton of unanswered questions that I think could have been cleared up concisely.

    • RodgeGrabTheCat 🇨🇦🏴‍☠️@sh.itjust.works
      link
      fedilink
      arrow-up
      3
      arrow-down
      7
      ·
      3 days ago

      White text on a black background … I didn’t even try to read it.

      • AwesomeLowlander@sh.itjust.works
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        2 days ago

        So, dark mode? Nothing outrageous there.

        There’s always reader / article view if you really can’t handle the colour scheme

        • RodgeGrabTheCat 🇨🇦🏴‍☠️@sh.itjust.works
          link
          fedilink
          arrow-up
          2
          ·
          2 days ago

          There is also having the site adjust to match my browser’s theme.

Privacy@lemmy.dbzer0.com

privacy@lemmy.dbzer0.com

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

Welcome! This is a community for all those who are interested in protecting their privacy.

Rules

PS: Don’t be a smartass and try to game the system, we’ll know if you’re breaking the rules when we see it!

  1. Be civil and no prejudice
  2. Don’t promote big-tech software
  3. No apathy and defeatism for privacy (i.e. “They already have my data, why bother?”)
  4. No reposting of news that was already posted
  5. No crypto, blockchain, NFTs
  6. No Xitter links (if absolutely necessary, use xcancel)

Related communities:

Some of these are only vaguely related, but great communities.

  • [email protected]
  • [email protected] / [email protected]
  • [email protected]
  • [email protected]
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 55 users / day
  • 366 users / week
  • 1.03K users / month
  • 6.73K users / 6 months
  • 1 local subscriber
  • 4.36K subscribers
  • 803 Posts
  • 7.52K Comments
  • Modlog
  • mods:
  • Otter@lemmy.ca
  • shaytan@lemmy.dbzer0.com
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org