On Sat, Apr 14, 2001 at 08:10:05PM +0100, Michael Rogers wrote:
> On Tue, Apr 10, 2001 at 11:00:06PM -0500, Brandon wrote:
> > No, most files are under CHKs. So if you request the information and then
> > bookmark in some hypothetical bookmarking system (perhaps you write down
> > the key on a post-it note) then you can bookmark the CHK.
> 
> As a clueless user, would you write down the CHK or the KSK? Or are you 
> only expecting Freenet to be used by the half-dozen people who understand 
> how it works?

It is really a matter of how clients are designed. It is important that a
site is never bookmarked under the KSK, meaning the fproxy should move a
user to the SSK/CHK URL, and that sites are never linked to as KSKs
(fproxies anonymity filter should check for this). Also, KSKs should never
contain anything but a straight forward redirect to a single key - All
regular update redirects and mapfiles _have_ to be under secure keytypes.
Also, clients should keep a local cache of name to secure keytype pairs
based on previous visits, so that if you attempt to return the name of a
site you have been at before it goes directly to the secure key (I know
that this happens to some extent with the local caching - but that is
never for sure).

If you don't like KSKs then don't use them. Help make the clients better
in how they treat them, and help me yell at people who do stupid things
like link to KSKs. 

Also, remember that there is no such thing as getting rid of KSKs. They
are just signed data with a publicly known private keys - if we want the
option of having signed data with privately held public keys, we have to
accept them. We could possibly try to discourage them by making it easier
to overwrite data, but it is not sure whether that would make the
situation better or worse...

-- 
'DeCSS would be fine. Where is it?'
'Here,' Montag touched his head.
'Ah,' Granger smiled and nodded.

Oskar Sandberg
md98-osa at nada.kth.se

_______________________________________________
Devl mailing list
Devl at freenetproject.org
http://lists.freenetproject.org/mailman/listinfo/devl
>From - Sun Apr 15 14:50:47 2001
Return-Path: <devl-admin at freenetproject.org>
Received: from hawk.freenetproject.org (postfix@[4.18.42.11])
        by funky.danky.com (8.9.3/8.8.7) with ESMTP id WAA25647
        for <danello at danky.com>; Sat, 14 Apr 2001 22:27:26 -0400
Received: from hawk.freenetproject.org (localhost [127.0.0.1])
        by hawk.freenetproject.org (Postfix) with ESMTP
        id C423F5803E; Sat, 14 Apr 2001 19:09:06 -0700 (PDT)
Delivered-To: devl at freenetproject.org
Received: by hawk.freenetproject.org (Postfix, from userid 500)
        id CEC5557D9C; Sat, 14 Apr 2001 19:08:11 -0700 (PDT)

Reply via email to