Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

HariSeldon

(543 posts)
10. A big part of the "why": authentication
Sun Feb 20, 2022, 01:33 PM
Feb 2022

It is really hard for a digital device to reliably identify the party on the other end of the connection. We have a system that more-or-less works for the World Wide Web (TLS)...except if there is DNS cache poisoning, or if rogue certificates are issued, etc.

Effectively implementing remote digital identity would require, at minimum, a centralized coordination for exchanging and attesting public keys. In today's world, who would be trusted to do that? And any leak of the corresponding private key would allow impeccable impersonation, a significant and very fragile condition for accepting this authentication. I'd say it's better to leave people guessing whether they are talking to someone legitimate than have the communication technology incorrectly verify the caller's identity.

Recommendations

0 members have recommended this reply (displayed in chronological order):

Latest Discussions»General Discussion»Why in the year of our lo...»Reply #10