• majster@lemmy.zip
    link
    fedilink
    English
    arrow-up
    1
    ·
    5 hours ago

    I read the post, its very exhaustive and future seems promising. I might have missed the section but why it this separate mechanism needed in the first place? Is it just because of the key lifecycle management? If so, naiive approach of publishing public key on your profile falls short because of this and without public key management everything falls apart sooner than later?

  • Karkitoo@lemmy.ml
    link
    fedilink
    English
    arrow-up
    21
    ·
    edit-2
    18 hours ago

    Very cool!

    I can’t wait for the entire Fediverse to be E2EE (soon™)

    For those who did not read the article yet, please do. It’s very interesting

  • unalivejoy@lemmy.zip
    link
    fedilink
    English
    arrow-up
    7
    ·
    15 hours ago

    Is this e2ee or just public signing? Signing sounds most doable to make sure a message came from the server it claims is from.

  • Madiator2011@piefed.social
    link
    fedilink
    English
    arrow-up
    8
    ·
    16 hours ago

    Biggest issue is that people do not understand encryption. Even Matrix has same issue and they try to add hidden encryption. Though ye e2e will make web more secure. BTW great blog post was nice to read.

    • majster@lemmy.zip
      link
      fedilink
      English
      arrow-up
      4
      ·
      5 hours ago

      People also don’t understand IP, TCP, DNS, TLS etc. and yet can use programs that use all of that. I find e2ee still pretty cumbersome in the long run.