home.social

#webkeydirectory — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #webkeydirectory, aggregated by home.social.

  1. RE: infosec.exchange/@pgpkeys/1165

    @pgpkeys

    thanks for the update! So what does that mean for people running WKD's with existing keys? What changes do we need to make?

    #WKD #WebKeyDirectory #PGP #PGPPQC #PQC

  2. RE: infosec.exchange/@pgpkeys/1165

    @pgpkeys

    thanks for the update! So what does that mean for people running WKD's with existing keys? What changes do we need to make?

    #WKD #WebKeyDirectory #PGP #PGPPQC #PQC

  3. RE: infosec.exchange/@pgpkeys/1165

    @pgpkeys

    thanks for the update! So what does that mean for people running WKD's with existing keys? What changes do we need to make?

    #WKD #WebKeyDirectory #PGP #PGPPQC #PQC

  4. RE: infosec.exchange/@pgpkeys/1165

    @pgpkeys

    thanks for the update! So what does that mean for people running WKD's with existing keys? What changes do we need to make?

    #WKD #WebKeyDirectory #PGP #PGPPQC #PQC

  5. RE: infosec.exchange/@pgpkeys/1165

    @pgpkeys

    thanks for the update! So what does that mean for people running WKD's with existing keys? What changes do we need to make?

    #WKD #WebKeyDirectory #PGP #PGPPQC #PQC

  6. guys, please make Email and the Web a safer place and implement WKD - Web Key Directory, if you use PGP anyway. It does not take much time and if you already have a website or server, you can just plunk it on there.

    Implementation:
    nicfab.eu/en/posts/wkd2/

    Verification:
    miarecki.eu/tools/wkd-checker/

    webkeydirectory.com/

    #SouthAfrica #Email #Security #PGP #WebKeyDirectory #WKD

  7. guys, please make Email and the Web a safer place and implement WKD - Web Key Directory, if you use PGP anyway. It does not take much time and if you already have a website or server, you can just plunk it on there.

    Implementation:
    nicfab.eu/en/posts/wkd2/

    Verification:
    miarecki.eu/tools/wkd-checker/

    webkeydirectory.com/

    #SouthAfrica #Email #Security #PGP #WebKeyDirectory #WKD

  8. guys, please make Email and the Web a safer place and implement WKD - Web Key Directory, if you use PGP anyway. It does not take much time and if you already have a website or server, you can just plunk it on there.

    Implementation:
    nicfab.eu/en/posts/wkd2/

    Verification:
    miarecki.eu/tools/wkd-checker/

    webkeydirectory.com/

    #SouthAfrica #Email #Security #PGP #WebKeyDirectory #WKD

  9. He leído por aquí varias veces que el cifrado de #Proton Mail solo funciona con Proton y NO es cierto:

    - Proton utiliza #WebKeyDirectory para intentar localizar la clave pública del destinatario. (wiki.gnupg.org/WKD). De forma resumida: #WKD comprueba el dominio del destinatario por si tiene una web y esta tiene un directorio ".well-known/openpgpkey".

    -- Si encuentra una clave pública que tenga la dirección de correo del destinatario asociada con su identidad, cifra el correo con ella.

    - Si tienes un dominio propio pero no apunta a ninguna web, puedes apuntar al servidor de claves públicas de #OpenPGP.
    (consulta "wkd as a service" keys.openpgp.org/about/usage/).

    - Y sí, esto también funciona si usas un cliente de correo electrónico compatible con AutoCrypt. (Mozilla Thunderbird, FairEmail…).

    Por estas cosas, pese a que Proton obviamente ha abusado del marketing, voy a seguir recomendándolo al público general.

    #PGP

  10. He leído por aquí varias veces que el cifrado de #Proton Mail solo funciona con Proton y NO es cierto:

    - Proton utiliza #WebKeyDirectory para intentar localizar la clave pública del destinatario. (wiki.gnupg.org/WKD). De forma resumida: #WKD comprueba el dominio del destinatario por si tiene una web y esta tiene un directorio ".well-known/openpgpkey".

    -- Si encuentra una clave pública que tenga la dirección de correo del destinatario asociada con su identidad, cifra el correo con ella.

    - Si tienes un dominio propio pero no apunta a ninguna web, puedes apuntar al servidor de claves públicas de #OpenPGP.
    (consulta "wkd as a service" keys.openpgp.org/about/usage/).

    - Y sí, esto también funciona si usas un cliente de correo electrónico compatible con AutoCrypt. (Mozilla Thunderbird, FairEmail…).

    Por estas cosas, pese a que Proton obviamente ha abusado del marketing, voy a seguir recomendándolo al público general.

    #PGP

  11. He leído por aquí varias veces que el cifrado de #Proton Mail solo funciona con Proton y NO es cierto:

    - Proton utiliza #WebKeyDirectory para intentar localizar la clave pública del destinatario. (wiki.gnupg.org/WKD). De forma resumida: #WKD comprueba el dominio del destinatario por si tiene una web y esta tiene un directorio ".well-known/openpgpkey".

    -- Si encuentra una clave pública que tenga la dirección de correo del destinatario asociada con su identidad, cifra el correo con ella.

    - Si tienes un dominio propio pero no apunta a ninguna web, puedes apuntar al servidor de claves públicas de #OpenPGP.
    (consulta "wkd as a service" keys.openpgp.org/about/usage/).

    - Y sí, esto también funciona si usas un cliente de correo electrónico compatible con AutoCrypt. (Mozilla Thunderbird, FairEmail…).

    Por estas cosas, pese a que Proton obviamente ha abusado del marketing, voy a seguir recomendándolo al público general.

    #PGP

  12. He leído por aquí varias veces que el cifrado de #Proton Mail solo funciona con Proton y NO es cierto:

    - Proton utiliza #WebKeyDirectory para intentar localizar la clave pública del destinatario. (wiki.gnupg.org/WKD). De forma resumida: #WKD comprueba el dominio del destinatario por si tiene una web y esta tiene un directorio ".well-known/openpgpkey".

    -- Si encuentra una clave pública que tenga la dirección de correo del destinatario asociada con su identidad, cifra el correo con ella.

    - Si tienes un dominio propio pero no apunta a ninguna web, puedes apuntar al servidor de claves públicas de #OpenPGP.
    (consulta "wkd as a service" keys.openpgp.org/about/usage/).

    - Y sí, esto también funciona si usas un cliente de correo electrónico compatible con AutoCrypt. (Mozilla Thunderbird, FairEmail…).

    Por estas cosas, pese a que Proton obviamente ha abusado del marketing, voy a seguir recomendándolo al público general.

    #PGP

  13. He leído por aquí varias veces que el cifrado de #Proton Mail solo funciona con Proton y NO es cierto:

    - Proton utiliza #WebKeyDirectory para intentar localizar la clave pública del destinatario. (wiki.gnupg.org/WKD). De forma resumida: #WKD comprueba el dominio del destinatario por si tiene una web y esta tiene un directorio ".well-known/openpgpkey".

    -- Si encuentra una clave pública que tenga la dirección de correo del destinatario asociada con su identidad, cifra el correo con ella.

    - Si tienes un dominio propio pero no apunta a ninguna web, puedes apuntar al servidor de claves públicas de #OpenPGP.
    (consulta "wkd as a service" keys.openpgp.org/about/usage/).

    - Y sí, esto también funciona si usas un cliente de correo electrónico compatible con AutoCrypt. (Mozilla Thunderbird, FairEmail…).

    Por estas cosas, pese a que Proton obviamente ha abusado del marketing, voy a seguir recomendándolo al público general.

    #PGP

  14. Ecosystem Release Marathon

    ✅ PGPainless 2.0.0
    ✅ SOP-Java 14.0.1
    ✅ Cert-D-Java 0.2.3
    ✅ Cert-D-PGPainless 0.2.3
    ✅ WKD-Java 0.1.3
    ✅ VKS-Java 0.1.4

  15. #PGPainless Ecosystem Release Marathon

    ✅ PGPainless 2.0.0
    ✅ SOP-Java 14.0.1
    ✅ Cert-D-Java 0.2.3
    ✅ Cert-D-PGPainless 0.2.3
    ✅ WKD-Java 0.1.3
    ✅ VKS-Java 0.1.4

    #OpenPGP #WebKeyDirectory #KeyServer

  16. #PGPainless Ecosystem Release Marathon

    ✅ PGPainless 2.0.0
    ✅ SOP-Java 14.0.1
    ✅ Cert-D-Java 0.2.3
    ✅ Cert-D-PGPainless 0.2.3
    ✅ WKD-Java 0.1.3
    ✅ VKS-Java 0.1.4

    #OpenPGP #WebKeyDirectory #KeyServer

  17. #PGPainless Ecosystem Release Marathon

    ✅ PGPainless 2.0.0
    ✅ SOP-Java 14.0.1
    ✅ Cert-D-Java 0.2.3
    ✅ Cert-D-PGPainless 0.2.3
    ✅ WKD-Java 0.1.3
    ✅ VKS-Java 0.1.4

    #OpenPGP #WebKeyDirectory #KeyServer

  18. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

    Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

    WKD makes encrypted email as simple as HTTPS made web browsing secure.

    nicfab.eu/en/posts/wkd2/

  19. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

    Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

    WKD makes encrypted email as simple as HTTPS made web browsing secure.

    nicfab.eu/en/posts/wkd2/

    #WebKeyDirectory #WKD #EmailEncryption #Privacy #InfoSec #Cryptography #OpenPGP

  20. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

    Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

    WKD makes encrypted email as simple as HTTPS made web browsing secure.

    nicfab.eu/en/posts/wkd2/

    #WebKeyDirectory #WKD #EmailEncryption #Privacy #InfoSec #Cryptography #OpenPGP

  21. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

    Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

    WKD makes encrypted email as simple as HTTPS made web browsing secure.

    nicfab.eu/en/posts/wkd2/

    #WebKeyDirectory #WKD #EmailEncryption #Privacy #InfoSec #Cryptography #OpenPGP

  22. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

    Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

    WKD makes encrypted email as simple as HTTPS made web browsing secure.

    nicfab.eu/en/posts/wkd2/

    #WebKeyDirectory #WKD #EmailEncryption #Privacy #InfoSec #Cryptography #OpenPGP

  23. Ma le vostre chiavi pubbliche GPG le pubblicate ? Me ne stavo sereno con la pubblicazione sui keyserver ma no, pare che oggi bisogna usare WKD e niente, e' tutto il giorno che ci litigo.

    Mi sono loggato qui solo per dire MANNAGGIA !

    #gpgkey #WebKeyDirectory

  24. Another set of sshd-openpgp-auth and ssh-openpgp-auth releases is out:
    This server and client-side tooling for managing the #authentication of #SSH host keys with the help of an #OpenPGP #certificate as trust anchor is now feature complete.
    crates.io/crates/sshd-openpgp-
    crates.io/crates/ssh-openpgp-a
    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!
    #DNS #KeyOxide #KnownHosts #OpenSSH #PGPKI #Rust #Rustlang #Software #SSH #WebKeyDirectory #WebOfTrust #WKD #WoT

  25. Another set of sshd-openpgp-auth and ssh-openpgp-auth releases is out:
    This server and client-side tooling for managing the #authentication of #SSH host keys with the help of an #OpenPGP #certificate as trust anchor is now feature complete.
    crates.io/crates/sshd-openpgp-
    crates.io/crates/ssh-openpgp-a
    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!
    #DNS #KeyOxide #KnownHosts #OpenSSH #PGPKI #Rust #Rustlang #Software #SSH #WebKeyDirectory #WebOfTrust #WKD #WoT

  26. Another set of sshd-openpgp-auth and ssh-openpgp-auth releases is out:
    This server and client-side tooling for managing the #authentication of #SSH host keys with the help of an #OpenPGP #certificate as trust anchor is now feature complete.
    crates.io/crates/sshd-openpgp-
    crates.io/crates/ssh-openpgp-a
    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!
    #DNS #KeyOxide #KnownHosts #OpenSSH #PGPKI #Rust #Rustlang #Software #SSH #WebKeyDirectory #WebOfTrust #WKD #WoT

  27. Another set of sshd-openpgp-auth and ssh-openpgp-auth releases is out:
    This server and client-side tooling for managing the #authentication of #SSH host keys with the help of an #OpenPGP #certificate as trust anchor is now feature complete.
    crates.io/crates/sshd-openpgp-
    crates.io/crates/ssh-openpgp-a
    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!
    #DNS #KeyOxide #KnownHosts #OpenSSH #PGPKI #Rust #Rustlang #Software #SSH #WebKeyDirectory #WebOfTrust #WKD #WoT

  28. Another set of sshd-openpgp-auth and ssh-openpgp-auth releases is out:
    This server and client-side tooling for managing the #authentication of #SSH host keys with the help of an #OpenPGP #certificate as trust anchor is now feature complete.
    crates.io/crates/sshd-openpgp-
    crates.io/crates/ssh-openpgp-a
    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!
    #DNS #KeyOxide #KnownHosts #OpenSSH #PGPKI #Rust #Rustlang #Software #SSH #WebKeyDirectory #WebOfTrust #WKD #WoT

  29. We have just issued the first #release of #sshd-openpgp-auth and #ssh-openpgp-auth.

    Using this server and client-side tooling it is possible to manage the #authentication of #SSH host keys with the help of an #OpenPGP certificate as trust anchor.

    crates.io/crates/sshd-openpgp-

    crates.io/crates/ssh-openpgp-a

    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!

    #DNS #KeyOxide #KnownHosts #OpenSSH #Rustlang #Software #WebKeyDirectory #WebOfTrust #WKD #WoT

  30. We have just issued the first #release of #sshd-openpgp-auth and #ssh-openpgp-auth.

    Using this server and client-side tooling it is possible to manage the #authentication of #SSH host keys with the help of an #OpenPGP certificate as trust anchor.

    crates.io/crates/sshd-openpgp-

    crates.io/crates/ssh-openpgp-a

    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!

    #DNS #KeyOxide #KnownHosts #OpenSSH #Rustlang #Software #WebKeyDirectory #WebOfTrust #WKD #WoT

  31. We have just issued the first #release of #sshd-openpgp-auth and #ssh-openpgp-auth.

    Using this server and client-side tooling it is possible to manage the #authentication of #SSH host keys with the help of an #OpenPGP certificate as trust anchor.

    crates.io/crates/sshd-openpgp-

    crates.io/crates/ssh-openpgp-a

    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!

    #DNS #KeyOxide #KnownHosts #OpenSSH #Rustlang #Software #WebKeyDirectory #WebOfTrust #WKD #WoT

  32. We have just issued the first #release of #sshd-openpgp-auth and #ssh-openpgp-auth.

    Using this server and client-side tooling it is possible to manage the #authentication of #SSH host keys with the help of an #OpenPGP certificate as trust anchor.

    crates.io/crates/sshd-openpgp-

    crates.io/crates/ssh-openpgp-a

    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!

    #DNS #KeyOxide #KnownHosts #OpenSSH #Rustlang #Software #WebKeyDirectory #WebOfTrust #WKD #WoT

  33. We have just issued the first #release of #sshd-openpgp-auth and #ssh-openpgp-auth.

    Using this server and client-side tooling it is possible to manage the #authentication of #SSH host keys with the help of an #OpenPGP certificate as trust anchor.

    crates.io/crates/sshd-openpgp-

    crates.io/crates/ssh-openpgp-a

    Many thanks to @wiktor for the great collaboration and #NLnet / #NGIAssure for funding this work!

    #DNS #KeyOxide #KnownHosts #OpenSSH #Rustlang #Software #WebKeyDirectory #WebOfTrust #WKD #WoT

  34. One thing I'm missing in all these guides describing how to store one's OpenPGP key in a Web Key Directory (WKD) is that for keys with lot of signatures the key best should be exported using
    --export-options export-minimal

    to not force an MB size download on the poor person who just wanted to write an encrypted mail.

    Yes, that key then won't have the signatures, but I guess a user who uses WKD does not care about that. And if, do --refresh-keys.

    #PGP #OpenPGP #GnuPG #GPG #WebKeyDirectory #WKD