Comment on Announcing Key Transparency for the Fediverse - Dhole Moments

<- View Parent
Soatok@pawb.social ⁨3⁩ ⁨weeks⁩ ago

why it this separate mechanism needed in the first place?

Because ActivityPub was not designed for E2EE. That’s the simplest answer.

The longer, and more technical answer, is that doing the actual “Encryption” part of E2EE is relatively easy. Key management is much harder.

I initially set out to just do E2EE in 2022, but got roadblocked by the more difficult problem of “which public key does the client trust?”.

source
Sort:hotnewtop