mamot.fr is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mamot.fr est un serveur Mastodon francophone, géré par La Quadrature du Net.

Server stats:

2.9K
active users

#smime

0 posts0 participants0 posts today
S. k. k. H. Bernd ✔️<p><span class="h-card" translate="no"><a href="https://chaos.social/@kenji" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kenji</span></a></span> Solange E-Mail-Sicherheit <a href="https://troet.cafe/tags/verschlusselungsverfahren" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>verschlusselungsverfahren</span></a> als Geschäftsmodell von Monopolisten <a href="https://troet.cafe/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> verstanden wird und <a href="https://troet.cafe/tags/pgp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>pgp</span></a> nicht standardmäßig eingebaut und -geschaltet wird, hat E-Mail-Sicherheit keine Chance.</p>
Fiona<p>Do I know anyone who knows how <a href="https://woem.men/tags/Thunderbird" rel="nofollow noopener noreferrer" target="_blank">#Thunderbird</a> does mail address normalization when searching for recipient S/MIME certificates, or knows where to start looking in the code? Thunderbird (128 still) refuses to recognize the certificate for a certain contact as belonging to the mail address, while it works perfectly fine in Evolution. And the only odd thing about it I can see is that the email address is written with capitalization in both <code>RFC822Name</code> in the SAN and the email field of the DN. In the certificate list Thunderbird shows the mail address in lower case, but it doesn't let me send S/MIME mail to the address no matter which way I spell it. <a href="https://woem.men/tags/smime" rel="nofollow noopener noreferrer" target="_blank">#smime</a></p>
Matthew Slowe<p>So far, none have come to light. This is a sad time for <a href="https://infosec.exchange/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> and freely available private and confidential, or verifiable, email options.</p>
Matthew Slowe<p>It seems that the last remaining provider of Free personal S/MIME certificates (Actalis) has now left that space.</p><p>Are there any others left that I don't know about?</p><p><a href="https://infosec.exchange/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> <a href="https://infosec.exchange/tags/certificates" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>certificates</span></a> <a href="https://infosec.exchange/tags/personal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>personal</span></a></p>
Athoune 🥕🔪<p>Le mail est omniprésent, mais peut-il être sécurisé et confidentiel ?</p><p><a href="https://blog.garambrogne.net/infomaniak-securite-mail.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.garambrogne.net/infomania</span><span class="invisible">k-securite-mail.html</span></a></p><p><a href="https://mastodon.xyz/tags/webmail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>webmail</span></a> <a href="https://mastodon.xyz/tags/gpg" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gpg</span></a> <a href="https://mastodon.xyz/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a></p>
Emory<p>behold my longest running <a href="https://soc.kvet.ch/tags/keybase" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>keybase</span></a> issue: <a href="https://github.com/keybase/keybase-issues/issues/387" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/keybase/keybase-iss</span><span class="invisible">ues/issues/387</span></a></p><p>"S/MIME Support"</p><p>man that would have been nice. i was thinking about doing somnething like this for a web of trust model but then i was like why the hell isn't LetsEncrypt doing it? like the moment they do i would probably rather use theirs you know 😂 as it is today i just sign emails occasionally with a cert signed by my offline CA and published online. will manually confirm. like pgp but ez</p><p><a href="https://soc.kvet.ch/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> <a href="https://soc.kvet.ch/tags/encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>encryption</span></a> <a href="https://soc.kvet.ch/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://soc.kvet.ch/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a></p>
JayVii<p>Does anyone have experience with either <a href="https://social.jayvii.de/tags/Yubikey" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#Yubikey</a>, <a href="https://social.jayvii.de/tags/Nitrokey" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#Nitrokey</a> or any other hardware security token for both <a href="https://social.jayvii.de/tags/MFA" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#MFA</a>/<a href="https://social.jayvii.de/tags/2FA" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#2FA</a> as well as <a href="https://social.jayvii.de/tags/encryption" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#encryption</a> via <a href="https://social.jayvii.de/tags/PGP" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#PGP</a>/<a href="https://social.jayvii.de/tags/GPG" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#GPG</a> or <a href="https://social.jayvii.de/tags/SMIME" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#SMIME</a>?</p><p>In particular, I am looking at the <a href="https://shop.nitrokey.com/de/shop/nk3an-nitrokey-3a-nfc-147?search=nitrokey+3#attr=" rel="nofollow noopener noreferrer" target="_blank">Nitrokey 3A NFC</a>. As far as I can tell, Yubico only sells <a href="https://social.jayvii.de/tags/MFA" class="hashtag" rel="nofollow noopener noreferrer" target="_blank">#MFA</a> tokens(?), unless the <a href="https://www.yubico.com/de/product/yubikey-5-fips-series/yubikey-5-nfc-fips/" rel="nofollow noopener noreferrer" target="_blank">YubiKey 5 FIPS Series</a> can hold encryption keys as well?</p><p>Both price and open hardware aspect definitely speak for Nitrokey, but I do not know anyone who owns such a token... Anyone who I can talk to?</p>
Konstantin Weddige<p><span class="h-card" translate="no"><a href="https://social.wildeboer.net/@jwildeboer" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>jwildeboer</span></a></span>'s recent thread about his CA co-op idea inspired me to write down some thoughts on email encryption.</p><p><a href="https://weddige.eu/en/articles/lets-encrypt-emails/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">weddige.eu/en/articles/lets-en</span><span class="invisible">crypt-emails/</span></a></p><p><a href="https://gruene.social/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> <a href="https://gruene.social/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a></p>
Bitnapper 🏳️‍🌈⁣🇪🇺⁣🦕 ⁣🐈 ⁣<p>Kennt sich jemand eingehender mit der technischen Umsetzung von Passwortmanagern aus. Mich interessiert die über ein HSM-gesicherte Ablage von Keys, Nichtexportierbarkeit von bestimmten Keys und Verwendung als Middleware für S/MIME, Signatur- und Authentifizierungszertifikaten. Ich habe bisher nicht viel darüber gefunden und würde gerne wissen ob es technische Gründe dafür gibt oder eher an dem mangelnden Bedarf liegt. <a href="https://chaos.social/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> <a href="https://chaos.social/tags/passwordmanager" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passwordmanager</span></a> <a href="https://chaos.social/tags/hsm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hsm</span></a></p>
Hella<p><span class="h-card" translate="no"><a href="https://social.tchncs.de/@klausgesprochen" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>klausgesprochen</span></a></span> <span class="h-card" translate="no"><a href="https://social.mailbox.org/@mailbox_org" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>mailbox_org</span></a></span> </p><p>Anscheinend geht <a href="https://social.tchncs.de/tags/SMime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMime</span></a> bei <a href="https://social.tchncs.de/tags/MailboxOrg" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MailboxOrg</span></a> noch nicht direkt:<br>"Wir haben die Integration von S/MIME auf dem Plan, können aber über den Zeitpunkt der Umsetzung noch keine verbindliche Aussage treffen."</p><p><a href="https://kb.mailbox.org/de/privat/e-mail/smime-beim-verschluesselten-postfach" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">kb.mailbox.org/de/privat/e-mai</span><span class="invisible">l/smime-beim-verschluesselten-postfach</span></a></p>
Karl Voit :emacs: :orgmode:<p>If you need <a href="https://graz.social/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> via <a href="https://graz.social/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a>, the only 2 valid standards are <a href="https://graz.social/tags/OpenPGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenPGP</span></a> and <a href="https://graz.social/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a>. </p><p>It's not that those are without issues but everything else is mediocre.</p><p>Yes, you can switch to non-email-services as well such as <a href="https://graz.social/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a>. But that's a different island.</p><p><a href="https://graz.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://graz.social/tags/encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>encryption</span></a> <a href="https://graz.social/tags/mail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mail</span></a> <a href="https://graz.social/tags/GMail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GMail</span></a></p>
Emory<p><span class="h-card" translate="no"><a href="https://snug.town/@ducksauz" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ducksauz</span></a></span> my lawyers were getting my emails in spam folders and i thought it was because i am self-sovereign on PKI and i use an <a href="https://soc.kvet.ch/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> cert signed by my offline CA in the safe 😆 but apparently it was just "dmarc is weird gonna quarantine", i need to see if i have it wrong on all of them. hellyeah has been around forever and is at G, so probably okay by association but axiopisty org|com are delivering to iCloud for me.</p>
Luca<p>Does anybody have a good link for a „How to create detailed <a href="https://troet.cafe/tags/thunderbird" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thunderbird</span></a> logs“? I don’t really get how to do it.</p><p>I need detailed information what decisions Thunderbird „makes“ in terms of <a href="https://troet.cafe/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a>/signatures/verification when opening a mail.</p><p><a href="https://troet.cafe/tags/logging" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>logging</span></a><br><a href="https://troet.cafe/tags/foss" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>foss</span></a><br><a href="https://troet.cafe/tags/mozilla" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mozilla</span></a></p>
Olivier Duquesne aka DaffyDuke<p>RT @gnupg@twitter.com</p><p>GnuPG&#39;s <a href="https://mamot.fr/tags/OpenPGP" class="mention hashtag" rel="tag">#<span>OpenPGP</span></a> (gpg) and <a href="https://mamot.fr/tags/SMIME" class="mention hashtag" rel="tag">#<span>SMIME</span></a> (gpgsm) implementation approved for restricted communication in Germany and Europe. <a href="https://mamot.fr/tags/windows" class="mention hashtag" rel="tag">#<span>windows</span></a> <a href="https://mamot.fr/tags/kmail" class="mention hashtag" rel="tag">#<span>kmail</span></a> <a href="https://mamot.fr/tags/vsnfd" class="mention hashtag" rel="tag">#<span>vsnfd</span></a> [<a href="https://mamot.fr/tags/german" class="mention hashtag" rel="tag">#<span>german</span></a>] <a href="https://twitter.com/BSI_Bund/status/1125709041760653312" target="_blank" rel="nofollow noopener noreferrer" translate="no"><span class="invisible">https://</span><span class="ellipsis">twitter.com/BSI_Bund/status/11</span><span class="invisible">25709041760653312</span></a></p><p>🐦🔗: <a href="https://twitter.com/gnupg/status/1126013090229882880" target="_blank" rel="nofollow noopener noreferrer" translate="no"><span class="invisible">https://</span><span class="ellipsis">twitter.com/gnupg/status/11260</span><span class="invisible">13090229882880</span></a></p>