[JDEV] PGP / Public Key retrieval

Bernd Eckenfels lists at lina.inka.de
Wed Oct 11 17:44:39 CDT 2000


On Wed, Oct 11, 2000 at 11:38:30AM +0200, Max Horn wrote:
> You are right. But SSL relies on CAs signing Certificates, thus we 
> have to use (centralised) CAs.

Actually you dont need to. You can skip CA Certifications or genrate your
own self signed certificates. There is nothing in SSL which requirtes a
hierachy. Only the support for the web of trust is not build into exisiting
tools. But if you can feed a SSL client a certificate or check a server
certificate externally you can make that wortk based on PGP, too.

Greetings
Bernd
-- 
  (OO)      -- Bernd_Eckenfels at Wendelinusstrasse39.76646Bruchsal.de --
 ( .. )  ecki@{inka.de,linux.de,debian.org} http://home.pages.de/~eckes/
  o--o     *plush*  2048/93600EFD  eckes at irc  +497257930613  BE5-RIPE
(O____O)  When cryptography is outlawed, bayl bhgynjf jvyy unir cevinpl!




More information about the JDev mailing list