<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body>
<p><br>
</p>
<p>"Hell is paved with good intention."<br>
</p>
<p>GDPR came from the laudable intention of limiting the power of
GAFAMs and other data brokers, inside our private lives.<br>
<br>
But the text maintains a confusion between personal data and
private data. Some personal data is not and should not be private.
Email could be one of them, if everyone used a web of trust, which
would allow us to know more precisely who is the sender, and to
fight more effectively against SPAM.<br>
<br>
(NB: In addition, the text annoys small organizations more than
large groups which have the means to circumvent it, via
internationalization and lobbying)<br>
<br>
I have a public email, and i would like to have a email service or
client which may delete automatically unsigned messages, and give
me the feature to order received email depending from a
"proximity" regarding the WOT, or a "confidence" regarding my
trustdb.<br>
<br>
About the keystore, I imagined 9 years ago that a key server
receiving a certificate update, not signed by its owner, could
send a message to the owner (by default 1 time per day), in order
to ask it to validate, or not, the modifications, before
synchronizing the updated certificate, signed by its owner, on
other key servers.<br>
<br>
So I had to write a draft and start implementing a new MIME type
for HTTP for these purposes, to upgrade HKP protocol :<br>
</p>
<p><a class="moz-txt-link-freetext" href="https://github.com/Open-UDC/open-udc/blob/master/docs/rfc/HTTP_OpenPGP_Authentication.draft.txt">https://github.com/Open-UDC/open-udc/blob/master/docs/rfc/HTTP_OpenPGP_Authentication.draft.txt</a></p>
<p><a class="moz-txt-link-freetext" href="https://github.com/Open-UDC/thttpgpd">https://github.com/Open-UDC/thttpgpd</a><br>
</p>
<p>But unfortunately I was perhaps too shy to talk about these ideas
on an international mailing list, and they received little echo in
my French environment :<br>
</p>
<p><a class="moz-txt-link-freetext" href="https://linuxfr.org/users/jbar/journaux/thttpgpd-ou-comment-openudc-a-ressuscite-le-bon-vieux-thttpd">https://linuxfr.org/users/jbar/journaux/thttpgpd-ou-comment-openudc-a-ressuscite-le-bon-vieux-thttpd</a><br>
</p>
<p><br>
Today WKD / WKS seems to me a good compromise for the trilemma
keystore, and probably the best way to get the last version of
"first-party-attested" certificates, which fresh uid / sub-keys
updates and revocations.<br>
<br>
But it's only today that I discovered your git repository
<a class="moz-txt-link-freetext" href="https://gitlab.com/openpgp-wg/rfc4880bis">https://gitlab.com/openpgp-wg/rfc4880bis</a> and your idea of
"first-party-attested third-party certifications" (1pa3pc).<br>
<br>
I therefore apologize if I do not add anything new or interesting
to the debate today.</p>
<p>----<br>
Jean-Jacques B.<br>
</p>
<p><br>
</p>
<div class="moz-cite-prefix">Le 28/06/2021 à 01:41, Jason Harris via
Gnupg-devel a écrit :<br>
</div>
<blockquote type="cite"
cite="mid:2E8218E9-5680-4F4B-BE6F-3F7EE7CD96EA@widomaker.com">
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
<div><br>
</div>
<div>There are still SKS servers running, but several are
unsynchronized, including, apparently, pgp.mit.edu. Of course,
they have the same key import/poisoning problems already
mentioned on these lists…</div>
<div><br>
</div>
<div>Here are the hockeypuck servers I could find, all
synchronizing properly and apparently exchanging data (minus the
unwanted packets) with the SKS servers that are synchronized:</div>
<div>
<ul class="ul1" style="list-style-type: circle; caret-color:
rgb(0, 0, 0); color: rgb(0, 0, 0); -webkit-text-size-adjust:
auto;">
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="http://keys.andreas-puls.de/pks/lookup?op=stats">http://keys.andreas-puls.de/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="http://keys2.andreas-puls.de/pks/lookup?op=stats">http://keys2.andreas-puls.de/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="http://keys3.andreas-puls.de/pks/lookup?op=stats">http://keys3.andreas-puls.de/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="http://pgp.cyberbits.eu/pks/lookup?op=stats">http://pgp.cyberbits.eu/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="http://pgp.re:11371/pks/lookup?op=stats">http://pgp.re:11371/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="https://pgpkeys.eu/pks/lookup?op=stats">https://pgpkeys.eu/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="https://keybath.trifence.ch/pks/lookup?op=stats">https://keybath.trifence.ch/pks/lookup?op=stats</a></span></li>
<li class="li1" style="margin: 0px; font-stretch: normal;
font-size: 21.1px; line-height: normal;"><span class="s1"
style="font-size: 21.05px;"><a class="moz-txt-link-freetext" href="https://keyserver.trifence.ch/pks/lookup?op=stats">https://keyserver.trifence.ch/pks/lookup?op=stats</a></span></li>
</ul>
</div>
<div>HTH. (Please excuse the HTML.)</div>
<br>
<div dir="ltr">Sent from my iPad</div>
<div dir="ltr"><br>
<blockquote type="cite">On Jun 24, 2021, at 7:19 PM, deloptes
via Gnupg-devel <a class="moz-txt-link-rfc2396E" href="mailto:gnupg-devel@gnupg.org"><gnupg-devel@gnupg.org></a> wrote:<br>
<br>
</blockquote>
</div>
<blockquote type="cite">
<div dir="ltr">
<div dir="ltr">
<div>Hi, we heard that <a href="http://sks-keyservers.net"
moz-do-not-send="true">sks-keyservers.net</a> will be
depreciated <br>
</div>
<div>so we were wondering what service we should use in the
application default settings</div>
<div>We I mean TDE devs</div>
<div><br>
</div>
<div>where do we go from here?</div>
<div><br>
</div>
<div>thank you in advance</div>
<div>BR<br>
</div>
</div>
<span>_______________________________________________</span><br>
<span>Gnupg-devel mailing list</span><br>
<span><a class="moz-txt-link-abbreviated" href="mailto:Gnupg-devel@gnupg.org">Gnupg-devel@gnupg.org</a></span><br>
<span><a class="moz-txt-link-freetext" href="http://lists.gnupg.org/mailman/listinfo/gnupg-devel">http://lists.gnupg.org/mailman/listinfo/gnupg-devel</a></span><br>
</div>
</blockquote>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<pre class="moz-quote-pre" wrap="">_______________________________________________
Gnupg-devel mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Gnupg-devel@gnupg.org">Gnupg-devel@gnupg.org</a>
<a class="moz-txt-link-freetext" href="http://lists.gnupg.org/mailman/listinfo/gnupg-devel">http://lists.gnupg.org/mailman/listinfo/gnupg-devel</a>
</pre>
</blockquote>
</body>
</html>