Re: [mfv] publish your web server content securely
Gabx <[email protected]> Tue, 09 Dec 2025 18:05:19 +0000
| Newsgroups | alt.privacy.anon-server,alt.anonymous,alt.cypherpunks |
|---|---|
| Organization | Victor Usenet Postings |
| Message-ID | <[email protected]> |
On Tue, 9 Dec 2025 16:54:18 0100, Stefan Claas <[email protected]> wrote: > Stefan Claas wrote: > > > > Hi all, > > > > in case you run a web server in the clearnet, you may like > > to secure your content in a way so that third parties have > > a hard time to tamper with your web content. > > > > https://github.com/Ch1ffr3punk/mfv > > v0.4.0 with --domain parameter added for mfv and strict > checking for mfvc added. Just deployed mfv on my Hugo blog running as Tor hidden service. Works great. One note: the DNS TXT record (_merkle.domain IN TXT "merkle-root=...") doesn't apply to .onion addresses since there's no DNS involved - Tor uses its own naming system. But the dns.txt file in .well-known/mfv/ still works as a static reference for verification. The --domain binding is actually more valuable for .onion sites than clearnet: it cryptographically ties the Merkle root to a specific hidden service address, preventing someone from copying your content to a different .onion and claiming it as theirs. For anonymous publishing with provable authorship, this is exactly what was missing. You can prove "I published this first" without revealing who "I" actually is. Thanks for the tool. Gabx --- Digital Signature --- OIBIMk/tVoE/xKJkFhMbu4A7/kO/B2gPfEifQIvev258jfjeLUSTtw75gOrRgemkI7Zwu7IfmGkRLbddWkB9Bw==