On 5/12/2021 10:04 AM, Alessandro Vesely wrote:
Indeed. But if the keys include signatures, it doesn't matter where
they come from, so we're back to asking why nobody seems to use the
key servers that already exist.
Some people has been using those key servers. However, they're
vulnerable to pgp-poisoning attacks[*].
The 'nobody' terminology is apt, in terms of operational statistics.
The number of users is statistically insignificant, especially over a
period of decades.
"Too few to matter" would be the alternative wording.
d/
--
Dave Crocker
Brandenburg InternetWorking
bbiw.net
_______________________________________________
ietf-smtp mailing list
ietf-smtp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf-smtp