[horde] PGP keyservers

Ralf Lang lang at b1-systems.de
Thu Sep 23 05:56:07 UTC 2021


Hi Simon,

Am 23.09.21 um 00:44 schrieb Simon Wilson:
> A pet hate of mine is when people PGP sign *every email* by default 
> but then don't have their keys publicly published for validation - so 
> Imp disappears into black hole waiting for the server to verify the key.
>
> I've had a few happen recently, and have noticed that of the PGP 
> servers listed by default in Horde two are no longer running - 
> pool.sks-keyservers.net and subkeys.pgp.net.
>
> I currently have Horde configured to try pgp.mit.edu (which works 
> sometimes, times out other times) and keys.openpgp.org, but I get a 
> lot of misses, even from some people who I trust to have done the 
> right thing and published their key, Michael Rubinsky among them :)
>
> What is the recommended list of PGP servers?
>
> Simon

There has been quite a shift in the OpenPGP/GPG eco system over the last 
few years.
One thing is the rise of new key exchange mechanisms like WKD 
https://wiki.gnupg.org/WKD or Autocrypt.
<https://autocrypt.org/level1.html>The other thing were concerns with 
euro data protection regulations which made operating the former 
standard key exchange software, SKS, less viable. That ecosystem is 
shrinking.
I think we need to invest into horde adopting one or the other of these 
new lookup methods at some point. However, you know, there are quite a 
lot of topics and only so much time.
The best you can do at the moment is remove servers you do not find 
useful. Especially pool.sks-keyservers.net is a dead cow - I think i 
will make a pull request to remove it from the default config.


<https://autocrypt.org/level1.html>

-- 
Ralf Lang
Linux Consultant / Developer
Tel.: +49-170-6381563
Mail: lang at b1-systems.de
B1 Systems GmbH
Osterfeldstraße 7 / 85088 Vohburg / http://www.b1-systems.de
GF: Ralph Dehner / Unternehmenssitz: Vohburg / AG: Ingolstadt,HRB 3537



More information about the horde mailing list