Hacker News new | ask | show | jobs
by number6 1287 days ago
Well you can do it in the EU. You can apply to become a CA for document signing and then give out signed documents.

https://www.zealid.com/en/ does it free of charge

2 comments

Presumably there's a irreducible amount of Extended Validation involved in qualifying as such a CA, though, no? Which would be the GP's point — you can't have a fleet of thousands of machines where each one individually, automatically, and anonymously registers to become its own signing CA.
If the target is legal recognition then you need to store your legally-recognized name and need to do what patio11 calls a hybrid system - part-offline, part-online verification. Also, IIRC there's a free government CA in Estonia that can sign documents, but of course you need to trust that Estonia is both not malicious and not incompetent.
You can hack eIDs in several EU countries to sign documents.

Definitely possible in Belgium.

Link, please!
What link? eID certificates don't have the Signature attribute set to true, but one can still sign with these certificates, ignoring the attribute.
Link to a "how to" web page.
i did not see anything about beeing a CA on first scan but if that's works it would be great