ietf-openpgp
[Top] [All Lists]

How to handle photoID on keyserver? (Re: photo support?)

2002-07-01 19:16:10


Hi, 

I have some questions about PhotoID  in public keyserver. 

  Note: public keyserver means "key server which is open to the
        public". 

  See also:
         http://galileo.spaceports.com/~jharris/keyserver.html


1) Size issue: 

  If 3% public keys have 1280 x 960 jpeg photo, Public keyserver will
  require storage area more than 13.7GB (at least).

   a) 1280 x 960 jpeg is used the default size of many digital camera.
   b) ((300 * 2^10) * (1.6 * 10^6 * 0.03)) / (2^30) = 13.732
   c) 1.6Mkeys have been submitted into current public keyserver
      and key dump size is almost 2GB.
   
2) Privacy issue:

  Someone who is not owner of that public key can put public key
  with PhotoID into public keyserver.  And everyone can get someone's
  public key with PhotoID.

I think that most OpenPGP users concern privacy issue.  Size issue
become problem to some public keyserver sites.  From my experience,
entire of storage size for handling public keysever may require 4
times (or more) of whole of public keys. I mean if dump key size is
15GB, HDD size is required 60GB at least.

In my opinion, if public key with photoID is submitted public
keyserver, public keyserver remove photoID and related signature
packets and store the remains of packates into database.

Regards,

-- 
Hironobu SUZUKI
E-Mail: hironobu(_at_)h2np(_dot_)net
URL: http://h2np.net

<Prev in Thread] Current Thread [Next in Thread>