Re: Which keyserver

2020-09-18 Thread Vincent Breitmoser via Gnupg-users
> keys.gnupg.net is a CNAME for hkps.pool.sks-keyservers.net -- which is > now returning zero results. Let me break the prose down into the simple facts: * the "HKPS" pool is no longer actually a "pool". it is a [single server]. * the "HKP" pool still contains a few servers, but using it

Re: Which keyserver

2020-09-18 Thread Phil Pennock via Gnupg-users
On 2020-09-18 at 15:04 +0200, accounts-gn...@holbrook.no wrote: > Is it possible to define multiple sources of keys with WKD, for example > with a dns TXT record? The use-case would be if the main server is down, > alternative places to get it. The SRV record approach had to be dropped because

Re: Which keyserver

2020-09-18 Thread Mark
Phil, Thanks for the explanation on what was happening. I thought something was just not right as when I hit search it would come back in less than a second with 0 results. It seemed to me that it didn't actually even search through the database. Anyway now that you say there is not really a

Re: Which keyserver

2020-09-18 Thread Andreas Mattheiss
Hello, >Is it possible to define multiple sources of keys with WKD, for example >with a dns TXT record? Well, yes, actually. This can be done with both X509 certificates (where it is called SMIMEA) and gpg keys. Obtaining a key basically involves quering the appropriate TYPE in the DNS record

Re: Which keyserver

2020-09-18 Thread Phil Pennock via Gnupg-users
On 2020-09-18 at 08:06 -0700, Mark wrote: > I use GPG4Win and I've noticed that "hkp://keys.gnupg.net" is not > working right. I was not getting any hits back when searching with > Kleopatra and then I tried to ping that server which returned host not > found. So I'm also interested if there is a

Re: Which keyserver

2020-09-18 Thread Phil Pennock via Gnupg-users
On 2020-09-18 at 10:08 +0200, Franck Routier (perso) wrote: > Le jeudi 17 septembre 2020 à 18:13 -0400, Phil Pennock via Gnupg-users > a écrit : > > If publishing keys, I do recommend setting up WKD for your > > domain, which helps a little. > > What is the status of WKD now, and is it to

Re: Which keyserver

2020-09-18 Thread Mark
I use GPG4Win and I've noticed that "hkp://keys.gnupg.net" is not working right. I was not getting any hits back when searching with Kleopatra and then I tried to ping that server which returned host not found.  So I'm also interested if there is a better choice. On 9/17/2020 1:57 PM, Martin

Re: Which keyserver

2020-09-18 Thread accounts-gnupg
I wasn't aware of WKD, thanks for the heads up. Is it possible to define multiple sources of keys with WKD, for example with a dns TXT record? The use-case would be if the main server is down, alternative places to get it. On Fri, Sep 18, 2020 at 12:55:45PM +0200, Vincent Breitmoser via

Re: Which keyserver

2020-09-18 Thread Vincent Breitmoser via Gnupg-users
> What is the status of WKD now, and is it to superseed centralized key > servers ? Not for folks who have their email address at the domain of an email provider, or an organization that doesn't support WKD. So statistically, everyone but a rounding error. That said, for folks who run their

Re: Which keyserver

2020-09-18 Thread Franck Routier (perso)
Le jeudi 17 septembre 2020 à 18:13 -0400, Phil Pennock via Gnupg-users a écrit : > If publishing keys, I do recommend setting up WKD for your > domain, which helps a little. What is the status of WKD now, and is it to superseed centralized key servers ? Franck