Re: An evil idea :-)

2021-03-22 Thread Gabor Kiss
On Mon, 22 Mar 2021, Andreas Puls wrote: > > One can decide to setup a proxy server without any own backend > > but redirecting queries to some of the existing servers. > > No one would recognize the cheating. :-) > > > Looks like somebody already done that :) > Just got a reuqest for the host

Re: Pool dried up

2021-03-22 Thread Todd Fleisher
> On Mar 22, 2021, at 13:28, Andrew Gallagher wrote: > > I happened to check the pool just now, and there are only three nodes in it: > > 1 pgpkeys.uk[@] > 2 sks.pod01.fleetstreetops.com[@] > 3 sks.pod02.fleetstreetops.com[@] > > Looking at the cached metadata it appears that when

Re: An evil idea :-)

2021-03-22 Thread Todd Fleisher
That looks more like a DNS CNAME, not a proxy. The same goes for this popular one: keys.gnupg.net is an alias for hkps.pool.sks-keyservers.net. -T > On Mar 22, 2021, at 14:42, Andreas Puls wrote: > > > Am 22.03.2021 um 21:08 schrieb Kiss Gabor (Bitman): >> One can decide to setup a proxy

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Philihp Busby
I think (c) is fine to keep the pool alive. This community has a devout adherence to a tradition of inaction. I'm not holding my breath for (b), but I would be delighted if someone did more than just talk about it. I hold that switching to hkps://keys.openpgp.org is the path forward, and we

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Ryan Hunt
In addition I’ve got an interesting story, last time I seen the SKS keyserver pool mentioned outside this group was recently when I got acquired by one of the Linux Distros and one of the first steps they wanted all of us to do was create PGP keys off our old corp email and submit em to the SKS

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Ryan Hunt
On my Mac here the GPG Keychain app now defaults to hkps://keys.openpgp.org , Ubuntu is using their own HP servers now that are not joining the pool, and these searches on Github is a bit depressing, lots of commits setting the same server as default and/or removing the SKS pool:

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Martin Dobrev
On 22/03/2021 22:02, Ryan Hunt wrote: I concur with the rest of the sentiment, I think its time to start accepting HP as a replacement for SKS.. If the sks-pool will not recognize the value of HP servers I suppose our only recourse is to fake it for the time being. However I’d like to see

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Ryan Hunt
I concur with the rest of the sentiment, I think its time to start accepting HP as a replacement for SKS.. If the sks-pool will not recognize the value of HP servers I suppose our only recourse is to fake it for the time being. However I’d like to see some efforts made towards: - Rolling our

Re: An evil idea :-)

2021-03-22 Thread Andreas Puls
Am 22.03.2021 um 21:08 schrieb Kiss Gabor (Bitman): One can decide to setup a proxy server without any own backend but redirecting queries to some of the existing servers. No one would recognize the cheating. :-) Looks like somebody already done that :) Just got a reuqest for the host

Re: An evil idea :-)

2021-03-22 Thread Andreas Puls
Am 22.03.2021 um 21:08 schrieb Kiss Gabor (Bitman): One can decide to setup a proxy server without any own backend but redirecting queries to some of the existing servers. No one would recognize the cheating. :-) Looks like somebody already done that :) Just got a reuqest for the host

Re: Pool dried up

2021-03-22 Thread Andrew Gallagher
On 22/03/2021 20:45, Martin Dobrev wrote: Is it not time to extend the list of initial servers then? $initial_servers = array("keys2.kfwebs.net", "zimmermann.mayfirst.org", "keyserver.kim-minh.com",  "pgp.circl.lu", "keys.niif.hu", "sks.b4ckbone.de", "keyserver.opensuse.org"); >

Re: Pool dried up

2021-03-22 Thread Martin Dobrev
Is it not time to extend the list of initial servers then? $initial_servers = array("keys2.kfwebs.net", "zimmermann.mayfirst.org", "keyserver.kim-minh.com",  "pgp.circl.lu", "keys.niif.hu", "sks.b4ckbone.de", "keyserver.opensuse.org"); keyserver.dobrev.eu is peered to two of them and yet

Pool dried up

2021-03-22 Thread Andrew Gallagher
I happened to check the pool just now, and there are only three nodes in it: 1 pgpkeys.uk[@] 2 sks.pod01.fleetstreetops.com[@] 3 sks.pod02.fleetstreetops.com[@] Looking at the cached metadata it appears that when the spider ran, pod02.fleetstreetops nodes was unavailable, as

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Andrew Gallagher
On 22/03/2021 20:10, Martin Dobrev wrote: c) We agree that Hockeypuck lying to be SKS is accepted in the pool, and maybe even recommended. I would favor (c), plus keeping the version number in the 2.x range, so that experts still can tell the difference. I'm already doing c) if I want to

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Andreas Puls
Am 22.03.2021 um 20:41 schrieb Marcel Waldvogel: On Sun, 2021-03-21 at 22:56 +0100, Andreas Puls wrote: I've created now a patch that just replaces in the json export contact with server_contact and Total with numkeys.

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Martin Dobrev
On 22/03/2021 19:41, Marcel Waldvogel wrote: On Sun, 2021-03-21 at 22:56 +0100, Andreas Puls wrote: I've created now a patch that just replaces in the json export contact with server_contact and Total with numkeys.

An evil idea :-)

2021-03-22 Thread Kiss Gabor (Bitman)
One can decide to setup a proxy server without any own backend but redirecting queries to some of the existing servers. No one would recognize the cheating. :-) Gabor -- "Virgil Brigman back on the air" (Abyss)

Re: Lying about Hockeypuck being SKS?

2021-03-22 Thread Gabor Kiss
On Mon, 22 Mar 2021, Marcel Waldvogel wrote: > a) We leave it as is, Hockeypuck is fine, but just not in the pool. > b) We create a second pool, where Hockeypuck is acceptable (and > probably SKS as well). > c) We agree that Hockeypuck lying to be SKS is accepted in the pool, > and maybe even

Lying about Hockeypuck being SKS?

2021-03-22 Thread Marcel Waldvogel
On Sun, 2021-03-21 at 22:56 +0100, Andreas Puls wrote: > > I've created now a patch that just replaces in the json export > contact > with server_contact and Total with numkeys. > https://github.com/apuls/hockeypuck/commit/34fbdfcf73b60e6001f3770b86d8750d1c8b5385 Great, thanks! I just merged