Live data from Hacker News

Handshake – Decentralized naming and certificate authority

handshake.org

101–104 of 104 posts

Re: Handshake – Decentralized naming and certificate authority

#101
post #22

The person who forced themselves into ownership of freenode is closely associated with this dumpster fire.

Quoted post unavailable.

https://www.linuxjournal.com/content/vcs-are-investing-big-n... (https://archive.is/IK7w8)

>Just released, Handshake brings with it the much needed security and reliability on which we rely... The project and protocol has been led by Joseph Poon (creator of Bitcoin's Lightning Network), Andrew Lee (CEO of Purse), Andrew Lee (founder of Private Internet Access or PIA) and Christopher Jeffrey (CTO of Purse).

This is far more than just someone who donated some money. The claims of guilt by association here are not just association. Andre Lee was 1 of the 4 people leading the project. He'll no doubt continue with the above disengenous BS but the facts are there for anyone that lived through it or who cares to look.

Re: Handshake – Decentralized naming and certificate authority

#103

> Email became Gmail, usenet became reddit, blog replies became facebook and Medium, pingbacks became twitter, squid became Cloudflare, even gnutella became The Pirate Bay How is that even remotely related to creating a new domain name service? Does the author really believe in good faith that the centralization of platforms would somehow be reduced or disappear entirely by introducing a new domain name service? This…

It is worth pointing out the distributed systems tend towards centralization over time. Keeping things decentralized is always going to be an active effort. Fundamentally decentralized vs centralized is also robustness vs efficiency. Anybody with a short returns horizon that hasn't been burned yet prefers efficiency.

> hasn't been burned yet

The latest basket in which everyone is putting all their eggs is federated login using one of a few giant tech companies (mostly Google) as OIDC providers.

Should I bother saying "I told you so" when these providers start arbitrarily blocking access to peoples' apps for stupid reasons (e.g. policy enforcement bots), abusing login privileges to harvest user data off other platforms (after silently amending their EULAs to give themselves permission to do this), or charging for the right to log into your stuff?

My money is on the last one happening in the next few years. "After January 1st of next year, the use of your Google|Apple|Facebook account to log into third party services will require a subscription..." Why wouldn't they want to collect a tax on every SSO login?

While I doubt major providers are actually abusing login credentials to access third party services (yet?) I'm sure they are gathering all the data they can on who logs into what, from where, and how often. It's a privacy nightmare, but nobody cares about privacy. Nobody will care until they are inconvenienced.

Re: Handshake – Decentralized naming and certificate authority

#104
post #10

For root replacement the biggest thing I would want is better use of the hierarchical nature of DNS. Trying to squeeze everything into mostly flat namespace is imho fundamentally intractable

HS is only for TLDs. After that it's a normal hierarchical DNS.
Post reply on HN