Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>Copying files through encrypted email requires bootstrapping a GPG key as well as an email address.

Do people realize that GPG supports symmetric encryption?



You need to be sure to use a sufficiently strong password/passphrase for PGP symmetric encryption. For GPG I would use at least 4 diceware words. The thing being discussed here only requires a digit and 2 words due to the use of a PAKE.

It would be nice if things like GPG would generate an appropriate passphrase for you by default.

I guess if you are only going to send one file the difference is not really all that significant. Otherwise the experience after exchanging email addresses and fingerprints would probably be better with encrypted email.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: