Discussion:
[Sks-devel] Why is it possible to generate such absurd data?
Verioweb SKS
2018-10-22 18:27:15 UTC
Permalink
Hello community,

as I was doing some data analysis on OpenPGP data on my node I was
surprised how much absurd data I was able to find after only a few
lookups, see for example:

0x923E174D7EEEAAD1
0xA199A4522E58A71C
0xE41ED3A107A7DBC7

Generating such data... OK, but why the hell is it possible to upload
this kind of nonsense data to our servers? Wouldn't it be appropiate to
implement a kind of validation after uploading keys before they reach
the database? What do you think?

Regards Oliver Gregorius
SKS Keyserver gnumail.de
2018-10-22 19:45:04 UTC
Permalink
Perhaps, it's something like that:
http://lists.nongnu.org/archive/html/sks-devel/2018-07/msg00008.html
Post by Verioweb SKS
Hello community,
as I was doing some data analysis on OpenPGP data on my node I was
surprised how much absurd data I was able to find after only a few
0x923E174D7EEEAAD1
0xA199A4522E58A71C
0xE41ED3A107A7DBC7
Generating such data... OK, but why the hell is it possible to upload
this kind of nonsense data to our servers? Wouldn't it be appropiate to
implement a kind of validation after uploading keys before they reach
the database? What do you think?
Regards Oliver Gregorius
--
Diese Nachricht wurde von meinem Android-GerÀt mit K-9 Mail gesendet.
Loading...