Luke-Jr [ARCHIVE] on Nostr: 📅 Original date posted:2013-10-26 📝 Original message:On Saturday, October 26, ...
📅 Original date posted:2013-10-26
📝 Original message:On Saturday, October 26, 2013 3:31:05 AM Gregory Maxwell wrote:
> One limitation of the payment protocol as speced is that there is no
> way for a hidden service site to make use of its full authentication
> capability because they are unable to get SSL certificates issued to
> them.
>
> A tor hidden service (onion site) is controlled by an RSA key.
>
> It would be trivial to pack a tor HS pubkey into a self-signed x509
> certificate with the cn set to foooo.onion.
> ...
> Thoughts?
Is there any point to additional encryption over tor (which afaik is already
encrypted end-to-end)? Is there a safe way to make this work through tor entry
nodes/gateways?
It'd be nice to have a way to support namecoin-provided keys too...
Luke
Published at
2023-06-07 15:08:17Event JSON
{
"id": "ddaa1581ca361283c876d847b99e471a147dfb7fceb6935a7f8b8e598900bbfd",
"pubkey": "6ac6a519b554d8ff726a301e3daec0b489f443793778feccc6ea7a536f7354f1",
"created_at": 1686150497,
"kind": 1,
"tags": [
[
"e",
"742033471721f40b6d43cf4cd64612772c20a2675cdda10846c302155fc1bb24",
"",
"root"
],
[
"e",
"b6fbdd256ddd8138019cf5b0fa037eb7738386b920bd38827468ddf61e56007e",
"",
"reply"
],
[
"p",
"4aa6cf9aa5c8e98f401dac603c6a10207509b6a07317676e9d6615f3d7103d73"
]
],
"content": "📅 Original date posted:2013-10-26\n📝 Original message:On Saturday, October 26, 2013 3:31:05 AM Gregory Maxwell wrote:\n\u003e One limitation of the payment protocol as speced is that there is no\n\u003e way for a hidden service site to make use of its full authentication\n\u003e capability because they are unable to get SSL certificates issued to\n\u003e them.\n\u003e \n\u003e A tor hidden service (onion site) is controlled by an RSA key.\n\u003e \n\u003e It would be trivial to pack a tor HS pubkey into a self-signed x509\n\u003e certificate with the cn set to foooo.onion.\n\u003e ...\n\u003e Thoughts?\n\nIs there any point to additional encryption over tor (which afaik is already \nencrypted end-to-end)? Is there a safe way to make this work through tor entry \nnodes/gateways?\n\nIt'd be nice to have a way to support namecoin-provided keys too...\n\nLuke",
"sig": "0e011ea79549b5076cebd901207d2588bf07665b7f7213d65b78708882a5da7230ba54e5117ad16dc5f20550ae4d0550025527748f5e788be2d66a84bfc6a1af"
}