Hacker News new | ask | show | jobs
by killjoywashere 990 days ago
Thanks for the detailed analysis, I really appreciate it.

> why require certificates and PKI

to buy down risk in a highly regulated sector. Tesla has been doing this internal to their cars for a while now. Inferences from the ML computers are signed and compared, and the path software. And there's already a pile of PKI options available.

> it’s my professional responsibility to assess its validity, suitability for purpose, and limitations; to know how to use it properly; and to interpret and evaluate its output.

I commend that approach, unfortunately, policy at a national level has to assume there are bad actors. The problem in my profession is that anything more than some light algebra to calculate basic statistics is completely out of their skill set. Additionally, the practitioners are so bound by other policy, they basically have to be compelled to do anything more.