[Cryptography] Why aren’t we using SSH for everything?

Tony Arcieri bascule at gmail.com
Sun Jan 4 02:03:11 EST 2015


On Sat, Jan 3, 2015 at 10:56 PM, Randy Bush <randy at psg.com> wrote:

> > Do you actually verify key fingerprints, and if so, how?
>
> gpg signed attestations, e.g. see up front of my site, https://psg.com


Used ubiquitously by every single server you ever SSH to? How many is that,
by the way?

-- 
Tony Arcieri
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20150103/87e1ac48/attachment.html>


More information about the cryptography mailing list