Why CAs or public keysigning?

william maddler maddler@cryptorebels.net
Wed Jun 18 14:53:01 2003


=2D----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Wednesday 18 June 2003 13:15, Peter L. Smilde wrote:
> Can anybody give me a good argument for CAs and public keysigning parties?

well... CAs are _supposed_ to be trusted and to do various actions to ensur=
e=20
the identity of the key owner they are signing...

public keysigning parties are useful to improve the web of trust, more=20
signatures on someone's key make more probable that you know some of the=20
signers... that's true... if you know no one of them you cannot implicitly=
=20
ensure the key is "true"... when I sign some1 else key I have to be sure of=
=20
the identity... because I know him... or only if the name on the ID I'm=20
signing is the same on his identity card...=20

hope it helped...

=2D --=20
|| William Maddler http://www.cryptorebels.net ||
gpg --keyserver autistici.org --recv-key 639C63EF
91E2 A799 F2B9 1CDB E71F 905B D402 F11B 639C 63EF
=2D----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE+8GCF1ALxG2OcY+8RAlbLAJsGolVHjwbhmGwUNSJm45YAmU14swCfelXp
xTX/M40Z8eCYtRUXid+p/68=3D
=3DvbgM
=2D----END PGP SIGNATURE-----