[Cryptech Tech] Draft Requirements
Jakob Schlyter
jakob at kirei.se
Fri Feb 20 17:06:14 UTC 2015
On 19 feb 2015, at 11:38, Linus Nordberg <linus at nordberg.se> wrote:
>
> In order to keep the use cases short and sweet, wouldn't it make sense
> to remove the requirement for public key storage and verification for
> the Tor use case?
>
> The reasoning is that the goal of the Tor case is to move authority
> signing keys off of general purpose computers running directory
> authorities. This in order to minimise the risk of an attacker grabbing
> a copy for producing consensuses elsewhere. It seems to me that the
> argument for verifying signatures in separate hardware is hard to make.
>
> I can make the change on the wiki page unless the list has another
> opinion.
Sure.
jakob
More information about the Tech
mailing list