| ▲ | lima 3 hours ago | |||||||||||||||||||||||||||||||
eID PKIs have very little in common with the web PKI. There's a national root of trust with strong attestation. It's a very simple trust relationship. You already trust the respective government to issue IDs. Plenty of European countries have an eID CAs and it works fine. The PKI part is a solved problem. Doesn't even need ZKP, the CA can just issue an attestation. | ||||||||||||||||||||||||||||||||
| ▲ | grebc 40 minutes ago | parent | next [-] | |||||||||||||||||||||||||||||||
You’re conflating the real life need of ID, with trust in the organisation. Sorry. Wrong. | ||||||||||||||||||||||||||||||||
| ▲ | maratc 2 hours ago | parent | prev [-] | |||||||||||||||||||||||||||||||
I've experienced this "solved problem" when visiting Germany during COVID. On every entrance to a mall there was somebody with a scanner device, and they only let you in if the scanner showed a green mark. I've been fully vaccinated (not EU) but my code didn't show a green mark on their scanner and I was promptly denied entry. The solution was to show them my German friend's code on my phone, this registered just fine, so I could enter anywhere. So the whole "eID/CAs/ZKP/PKI" mumbo jumbo can be easily fooled by a gif file. | ||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||