[Cryptech Tech] Draft Requirements

Jakob Schlyter jakob at kirei.se
Fri Feb 20 17:06:14 UTC 2015


On 19 feb 2015, at 11:38, Linus Nordberg <linus at nordberg.se> wrote:
> 
> In order to keep the use cases short and sweet, wouldn't it make sense
> to remove the requirement for public key storage and verification for
> the Tor use case?
> 
> The reasoning is that the goal of the Tor case is to move authority
> signing keys off of general purpose computers running directory
> authorities. This in order to minimise the risk of an attacker grabbing
> a copy for producing consensuses elsewhere. It seems to me that the
> argument for verifying signatures in separate hardware is hard to make.
> 
> I can make the change on the wiki page unless the list has another
> opinion.

Sure.

	jakob



More information about the Tech mailing list