AW: AW: Web Key Service server lookup

Werner Koch wk at gnupg.org
Fri Nov 4 17:05:24 CET 2016


On Tue,  1 Nov 2016 18:04, peter at digitalbrains.com said:

> better solution is to alter the requests from
>
> https://example.org/.well-known/openpgpkey/hu/XXXX
>
> to
>
> https://example.org/.well-known/openpgpkey/example.org/hu/XXXX

My first implementation actually did it this way but I figured that this
raises more problems than it solves.  Even the simplest HTTP servers can
rewrite the URL or symlink the directories.  Thus the duplication is not
required and won't help with the certificate problem of vanity domains
(mail only domain w/o web space)



Salam-Shalom,

   Werner


-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 194 bytes
Desc: not available
URL: </pipermail/attachments/20161104/23efb17b/attachment.sig>


More information about the Gnupg-devel mailing list