[openpgp] Re: Certificate discovery over HKP

Andrew Gallagher <[email protected]>
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
On 8 Apr 2025, at 19:35, Daniel Huigens <[email protected]> wrote:
> 
> 
>> we can require that policy file lookups are covered by a
>> TLS certificate, but cannot yet require that SRV records be
>> covered by DNSSEC
> 
> In theory we could require that, it's just a question of whether the
> security gain is worth preventing sites without DNSSEC from using this,
> right?

Right. 

> Also, in the cold-email case, the most serious attack a MITM could do
> is to prevent the OpenPGP cert from being served altogether, and that's
> possible in either case (e.g. by just removing the openpgpkey subdomain
> DNS record).

An MITM could redirect to a malicious keyserver and serve a fake cert with an attacker-controlled encryption subkey. They could even bind the real subkey as a second encryption subkey to make the attack silent.

A

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.