Well, because the idea is fundamentally unsound. Nobody can keep such a database secure, and certainly not the Canadian government, champions of ineptitude that they are.
>Certify
Goodness, that's dystopian.
Well, because the idea is fundamentally unsound. Nobody can keep such a database secure, and certainly not the Canadian government, champions of ineptitude that they are.
>Certify
Goodness, that's dystopian.
I have to go through the manual verification process and then issue revocation certs for my old keys?
How do I know what those keys were without a database of which key belongs to whom?
If you don't have a revocation code or a private key for the cert you wish to revoke, it will require administrative access to the certificate registry to mark the cert as revoked. That feature is currently built into the platform but not something accessible because of the obvious challenges.
Your private keys are only known to you, certificate revocation is just an annotation that says to someone who receives a signature associated with that certificate to not trust the certificate.
All private keys are generated and stored only on your device.
How does your system protect against attackers claiming to be my mom?