sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] Launching a new keyserver on keys.openpgp.org!


From: William Hay
Subject: Re: [Sks-devel] Launching a new keyserver on keys.openpgp.org!
Date: Wed, 19 Jun 2019 09:42:27 +0100

Thus spake Valentin Sundermann:
> I think the best way forward would be to implement SKS Recon, this way
> the SKS instances would not fall behind the hagrid ones (what's good for
> the general network I guess).
> 
> I'd suggest to provide an in/out sync interface where something like an
> "sks recon adapter" could be plugged in. Such an adapter would strip
> away all identity information in- and outwards.

That doesn't seem likely to work.  AIUI the sks recon protocol doesn't just 
ensure that all members of the network have a copy of every key but 
that they have the same version of each key.  If the recon adapter 
only deals in stripped keys then the reconciliation could never finally 
succede and I suspect that an SKS server connecting to it would
be launching a DOS attack on itself.

William



reply via email to

[Prev in Thread] Current Thread [Next in Thread]