| ▲ | lrvick 2 hours ago |
| Self-sovereign PKI identity, key discovery, file encryption, artifact, code, review signing, security disclosures, boot signing etc etc. |
|
| ▲ | noman-land an hour ago | parent | next [-] |
| Don't forget authentication! Been using pgp keys on smart cards as ssh keys for ages. |
|
| ▲ | growse 2 hours ago | parent | prev [-] |
| Who's reinventing a tool that can do all that? |
| |
| ▲ | Grosvenor 2 hours ago | parent [-] | | No one. The influencers are simply telling you you're wrong if you think you need that. Which is the thing, we do need a single key that can be used for all those things. So we get PGP. | | |
| ▲ | growse an hour ago | parent [-] | | > No one. I thought everyone was "trying so hard to re-invent PGP". > we do need a single key that can be used for all those things We do? This is not obvious. Why does my disk encryption key need to be the same that I use to sign binaries that I release? |
|
|