Re: [openpgp] OpenPGP Web Key Directory I-D

Wiktor Kwapisiewicz <wiktor@metacode.biz> Fri, 09 November 2018 14:16 UTC

Return-Path: <wiktor@metacode.biz>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 72576130E08 for <openpgp@ietfa.amsl.com>; Fri, 9 Nov 2018 06:16:35 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=metacode.biz
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id osBKA1ObA_UF for <openpgp@ietfa.amsl.com>; Fri, 9 Nov 2018 06:16:33 -0800 (PST)
Received: from mail-lj1-x22e.google.com (mail-lj1-x22e.google.com [IPv6:2a00:1450:4864:20::22e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2495E1277C8 for <openpgp@ietf.org>; Fri, 9 Nov 2018 06:16:32 -0800 (PST)
Received: by mail-lj1-x22e.google.com with SMTP id q186-v6so1717101ljb.5 for <openpgp@ietf.org>; Fri, 09 Nov 2018 06:16:32 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=metacode.biz; s=2017; h=to:references:from:openpgp:autocrypt:organization:cc:subject :message-id:date:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=IHAhFiMeHdXrGfdotB4NCMrGU7OIJOx89MaGRitDrhU=; b=4vtzEd7Z/9UZ+l007AR7PlziiDDe+jJrV7n8GSRjftsdFOJHfz8vF1pwEEnQHt4/XG w/fsDhc+1ax88ZgBZoFOgAzeEKwD2otpuQpxBmzv56qHqMWkLhTPIICejUCHjy14zjJt RlKW5pjc5LN7i/pBf6aIyf/YS3rGUvA8vQvEmX/5jNWNTvr/wbaJwWRPKDhonSbMQhP8 0S80eTyw+21BrB6LzJgm8S3NbHqwvq5Ye+vKEl+stIlgLQ8GHciboPKqwsrLXtw0kaU1 XfdV54omj8Um5MfIXgHSU+HOglS1EPI2bKToMWaeLJHdQQp7WU3348MDYuSHQta5XsK9 5maw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:to:references:from:openpgp:autocrypt :organization:cc:subject:message-id:date:mime-version:in-reply-to :content-language:content-transfer-encoding; bh=IHAhFiMeHdXrGfdotB4NCMrGU7OIJOx89MaGRitDrhU=; b=b8Jlf7hI1lym/QxH/0mbzOkIdNCL5J5h94KzcEB2rXnLdIfrvvX8jz280SAnsAVWta WTUBWjeAKIWDkEE0oKhxYwlg/cnCfixwy0FfyEIKGYw77VM7sHSioQzTEtioHQCw1qvc 5WFl52zFFH90bkvbOKct9eGZKwNJuNfKBRvIo4q18Rh5GSQgcdAsaKl7xxGl7UEqu9mJ oURM/PO748rp0XmxNlGFTUCav3inqovsig2RaG6bctF+Pa+bXwnxyAwwuMb7Y3SM2VA5 B0a1FqLZ0B+OLMn4axw4EJxGOM7o0S9pi3Uobm9ktLSDoRpcNcA4cl1A26wJxYeG0qX5 I8jg==
X-Gm-Message-State: AGRZ1gKlSRH2mTAaLibHz5JandhlojT/1AYr8K3/pBtCP182qK29Uchw ZdpeMIXKEy1bbS7tilqdDNt0PeUNkcQ=
X-Google-Smtp-Source: AJdET5dr/va3YnsMtIERGklaiihSxJbvFpJKnXN8MZ4otwLbcw2J5MuGDFYZACQrNkwYsFLbDu+DLw==
X-Received: by 2002:a2e:63cd:: with SMTP id s74-v6mr5606610lje.117.1541772990595; Fri, 09 Nov 2018 06:16:30 -0800 (PST)
Received: from ?IPv6:2a02:a317:4e3d:4680:f6ed:4b3c:7510:34c3? ([2a02:a317:4e3d:4680:f6ed:4b3c:7510:34c3]) by smtp.googlemail.com with ESMTPSA id g3-v6sm1269665lfj.3.2018.11.09.06.16.28 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Fri, 09 Nov 2018 06:16:29 -0800 (PST)
To: Werner Koch <wk@gnupg.org>
References: <23523.16831.292658.490356@chiark.greenend.org.uk> <874lcsyr3p.fsf@wheatstone.g10code.de> <23525.26229.995360.750323@chiark.greenend.org.uk> <87r2fuv6sh.fsf@wheatstone.g10code.de> <50990b61-ddff-93c7-ca96-ff864d1f4d79@metacode.biz> <878t22v04f.fsf@wheatstone.g10code.de>
From: Wiktor Kwapisiewicz <wiktor@metacode.biz>
Openpgp: preference=signencrypt
Autocrypt: addr=wiktor@metacode.biz; keydata= xsFNBFhoYHoBEADzmg9UuwDrtvyejU01gDY1J1iJiCi4XGJ4lCfYeLC2jSagIxU/5Lu0lRft 0Loi2tsjpo0c8docP7HFxafEEvnnt/iabd6I536llMuw0uno4PgnD3ljcCMZLT+vn+amIDta lzVoMnSqzoNUotMNMtjIFuAaQ/wr4/Mp9CIgJdviGUc3PscqUiiUVVtk6uF0x657NULZgSIT /Mrqlr2i4RuyPwXe2Qt0uEA3KWWjF0l2NpAMVrqz+nHsLoNOaAsfdx94bzKQrrSeSQqEO2f+ /eO/hbUAFAmEhrotmUO8wJNygo8TgkdlzFI+UE4p8/KW0aCgGGgR8YkCvHq2OQhAAYFNJoNz Hqw0FGxdsY8qWFkYpoSB8zKspNy8KliofCamMYXoPF7eVIxIiKvxrAykGP4jNnzSoV0cn+bY fXnox1IhnqbnoJIT7kTmXv4JmWoYm8ThHqpEgcQOUUQzSRXb9OiNwiXT71ijeO1qswMRpsgk 6AGKSZGWxa3c4ive/p8z1Ax27BFZSh2FceIcMCcGLrDjnQYgeFsAJ1jSxZQXkGuJFHfb4nff Big7aq/vyKrQFQXG0NQQL7rZAdk/s665vifos0yPmRDu7yDT1ggdyBp4Pa4re+ZJcNRNzNHo zU9al+CoImCQjnTtKMXmOe/BzGrpHI4QR3NNzVa423WCIWkHfwARAQABzSlXaWt0b3IgS3dh cGlzaWV3aWN6IDx3aWt0b3JAbWV0YWNvZGUuYml6PsLB7gQTAQoAmAIbAQgLCQgHDQwLCgUV CgkICwIeAQIXgHMUgAAAAAAqAEB0aW1lc3RhbXArYml0Y29pbi10cmFuc2FjdGlvbkBtZXRh Y29kZS5iaXphZmNiMDkyYzVjYTY0MDk1MjZkMThhZTljZjIyZDNiNTVkMzdlNzIzZWIxYjc0 ZTNmODRmN2U2YjA1MmExNjJhBQJaLoPdBQkDwPuGAAoJEGyIV+DY6PB0CNkQAKGTFHzG4YO6 yne5jfMlGcF8JUYq0EGHE9DRK6oAyGo+1TGFbf1bS4wULvA6LFBOLd+aI7uuN062kDdtHVUf 0S0AZ9ByjIBdQJsqx47W6uXsRX/pB0a70QqS6NbS3AL/fdwZOj/TBk8bdsfg7Z+hH+ykMcOs EYLmdMLmrqYgl9EyP4FmsnU9H8x4yKp0/Kv4BQYfjn68CFvyM2NQU3MR/H3sqvM/uY5AJwTp A8X1ZbN8pjZO5YRTiQtMrXekNzhP3p0ep1+cu2UxQO6jXV6Sjdm8D8RJzGaxCuhN/VhLNSvh cb2T5sejBAhU8JmKNle4+z5wZWB4bl5Dfkg1NpSEEdv7so+KXCnszo89UJJijlfgBFtm5WjK u7gCR8CVOeGQwQolEzi18zihCwRy1rg/xKokk7q6ZBEvxM1sBYNd81mi1PgrNwgH4jPULfQk UJtU7HLRVNLbnrIyEQbLOJegBLaWHgR4T69blBGg1oqiq/1PHnZuJauZhhNEAViX42VKJP1z w6PIfvbjg27wf4OjEDtVVXCrxqqljHRilagFQHGlU+iF6Ii2C3pNod11+lqJC0riFylxK/wu zHpoZdFg10gqMWIE2Exm7nJ6ToKv5kZqKC97mWrmh6FFEr6HmjDDuo+N4RER3VGj0dSey5nc eFQ2vry17IGN1ljV9TiARDgizsBNBFs/lS0BCAC5oX3r3luF7czMF8UFxJz55XuvNRs4tEjo Hzqcqoe4+RJyfNDtspgevYIq1WTKw/H3ZYsd2wZpkM3I+BJn9eeHZKs77qXQZGN5PBB65rZo LjMx+qHa6wH4lIYMYW7eB9HHMsT/5E3ILBSRzZIwJimd/QdIMKSrJ5mPMkAd+9+xob5zKHO5 L5pbQtJSGS0m17/hA0kCTLI885hLtT3JsI/KWwuAYDrTwsayzh/hG/NgdA3I8xlrQCLC0EFJ oxHkN9tCyXeKPlrIPYyMB1jHTo1iNV0CQGpk+zf6DA/ySGfJxd30ksJZ8y5qxD43zS0YffYM C01CeuqPoGZ2Fy9VxhODABEBAAHCwXwEGAEKACYWIQRlOQmi8ON8EG9fr1RsiFfg2OjwdAUC Wz+VLQIbDAUJAeEzgAAKCRBsiFfg2OjwdKQ4D/wIb8s2Tw8MhbbwASutzTwg3g3KReDRHgSz z7RJtePIM8HC6qm9++9sxoqww7qm35vb604HtMRORYmfXgVSocsYg/eAk8LoBVfCZidDVBia /i/dYx/8LHeX/0PqPluSusQh64BFUoVetUCP+kISbK8vgDt4HfDSgtenC5lpTAdk257A84p2 zDnUtVr8XNv09m7ASft6Wh5Wrn+aWlJrf6T6eysk9OIw8VpSuq0oG3vcEoTbHKJN8TDliPUc QVz5Qti0tgB40PLrqOpTdENdxbiaUNFpHm3Tkk+n7CEFcOayFvy5vU6Nih0hu+LFC2XHzQRw sLnuQ2EilWtXRulcwvFo6A3Vp+gidxc6UwC+LBFJjvDMv5hmsdhSm08r2hd2k61oL6NCGVB3 fxuJT85UHsEC04N72Fa26+Spkh3DtJMrKqJlBBas7oJYh6644DB4rccd6VT3n7Zv1pd2uIWv gjORztfBzRJEysOeHoNpr4hEocg62beu9cnGHpYB9j3mhv+E2IYPnJKqit18G7xb7QnyQU7L YfctLO0GLNdTBavWJggHPzUp09vb3uGS3dMdAYbWTBtnXttkdYuLx/oCe1LVUQYotsX7s83V kVc2n6xzrcaebmgoFtGUfUmOV0U0xbqv6Mxg27qctYh1QidvRyt0xqGA0Qhz/vvoQdfQeMlO Tg==
Organization: Metacode
Cc: openpgp@ietf.org
Message-ID: <110d48b9-3e43-b6b1-f51d-f30e000fa165@metacode.biz>
Date: Fri, 09 Nov 2018 15:16:26 +0100
MIME-Version: 1.0
In-Reply-To: <878t22v04f.fsf@wheatstone.g10code.de>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/WZBDhhurkiqQ1n8eI0iTvkl-N6U>
Subject: Re: [openpgp] OpenPGP Web Key Directory I-D
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 09 Nov 2018 14:16:35 -0000

On 09.11.2018 14:41, Werner Koch wrote:
> On Fri,  9 Nov 2018 12:37, wiktor@metacode.biz said:
> 
>> If I'd be designing such a protocol now I'd probably overlay it on top
>> of WebFinger (RFC 7033) but currently the benefits would not
>> counter-balance added work for everyone involved.
> 
> I actually looked into WebFinger but figured that there is no need to
> employ yet another protocol format (JSON) and possible require special
> handling on the server side.

Good points, now WKD is single-roundtrip and easy to deploy in static
setups although at the cost of making "special handling on the server
side" harder (due to SHA-1).

Looking forward to the I-D updated with "?l="!

Kind regards,
Wiktor

-- 
https://metacode.biz/@wiktor