Hacker News new | ask | show | jobs
by marcosdumay 2603 days ago
There is no easy way.

What is an important distinction, since there exist situations when even hard to follow procedures are better than a centralized option. Those are just not your daily "how do I know if I can show you my credit card" situations.

2 comments

> even hard to follow procedures are better than a centralized option

Sorry, I don't have nearly enough information to accept that.

There's no cryptographically secure way as far as I'm aware.
You do get in front of the other person and exchange public keys. Or you ask for help from a set of trusted middle-man. Those are perfectly fine ways to run a PKI, they are just not fit for the "entire web" PKI.
Those methods really don't scale by the fact that we haven't had a single system like that catch any popularity. It's usually just too cumbersome and not more trustworthy.