Global Feed Post Login
Replying to Avatar Lez

For one, we have relays, they have pubkeys, and yet, we still rely on the certificate chain.

In a better world, relay lists should contain the relay host (or better, its IP) AND its pubkey, and those pubkeys should be directly used in diffie-hellmann key exchange when initializing secure connection.

The problem with this approach is that there is - to my knowledge - no technology embedded in browsers by default that achieves it effectively.

Avatar
ben 5d ago

nostr:nevent1qqszu7h8rzzdw6ss0drlnhmyd2qmu4m2eaqcsu67vd9xk7v6dr0np6gpramhxue69uh5ummnw3ezuetfde6kuer6wasku7nfvuh8xurpvdjsdtgl6u

Reply to this note

Please Login to reply.

Discussion

No replies yet.