[19213] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: X.509 / PKI, PGP, and IBE Secure Email Technologies

daemon@ATHENA.MIT.EDU (James A. Donald)
Mon Dec 12 11:54:29 2005

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
From: "James A. Donald" <jamesd@echeque.com>
To: cryptography@metzdowd.com
Date: Mon, 12 Dec 2005 07:43:21 -0800
In-reply-to: <439B5C94.3030600@nma.com>

    --
From:           	Ed Gerck <edgerck@nma.com>
> Digital certs (X.509 and PGP) are useful when the key
> owner is not online. There is a world when this not
> only happens but is also useful. BTW, this is
> recognized in IBE as well.

But the key owner is always online, for in practice,
certs are always used for https.

Arguably we should be using not-necessarily-online certs
to sign email, but the email that arguably needs
signing, for example emails from amazon.com, are never
signed.

The only reason this email is signed is to make a point
about technology, not because the signature serves any
useful purpose.

 

    --digsig
         James A. Donald
     6YeGpsZR+nOTh/cGwvITnSR3TdzclVpR0+pr3YYQdkG
     ca4N69sv32Q/plWYe5BnvcydTDFaMVJkZ0rPbVp6
     4CRaaWK8UP3bCPHDbDzuPW7zEKImu5L9x7RUMIrbG



---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post