Live data from Hacker News

Gnu Privacy Guard relies on one underfunded person (2015)

propublica.org

31–40 of 72 posts

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#31

Earlier quoted context omitted.

Yeah but he has 6 developers working on it now (including himself).

I had no clue! That's useful information.

It's also useful to learn not to spout off when you "have no clue".

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#32

Earlier quoted context omitted.

> After having an article written about him, one guy got the better part of one year's salary in charity. In exchange for 18 years of work maintaining a piece of software that kinda everybody uses. $60,000 from Linux Foundation's Core Infrastructure Initiative (one-time) $137,000 in donations (one-time) $50,000 a year from Facebook (recurring) $50,000 a year from Stripe (recurring) I think he got more than one year's…

Yeah but he has 6 developers working on it now (including himself).

Why does the project need 6 developers?

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#33

Earlier quoted context omitted.

In some ways it's easier for corporate, as the ca's have more incentive to make it useable. I asked a ca about s/mime pricing - on its own they have a 50x3yr minimum purchase. They offered to waive the minimums if I combined with a regular server cert purchase.

A while back you could get a globally trusted free cert from Comodo. I'm not certain they're still doing it but you could see if the free route will work. (The keying material is generated inside the browser and never leaves your machine)

You still can but they're a bit of a pain to use, and honestly anything that's not Comodo would be nice.

After their shitbird response to LetsEncrypt, I'd rather pay someone else than use their "free" option.

Edit: for those who didn't follow it at the time, this sums it up: https://arstechnica.com/tech-policy/2016/06/800-pound-comodo...

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#34
post #27
post #5

GPG is used by some for email sure, but it isn't the only option. S/MIME has native support in pretty much all native mail clients, and is more pragmatic about how you trust an identity.

Guess what? GnuPG also supports S/MIME.

But it isn't required for S/mime.

I'm not aware of any other pgp implementations besides the original.

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#35
post #12

Earlier quoted context omitted.

> After having an article written about him, one guy got the better part of one year's salary in charity. In exchange for 18 years of work maintaining a piece of software that kinda everybody uses. $60,000 from Linux Foundation's Core Infrastructure Initiative (one-time) $137,000 in donations (one-time) $50,000 a year from Facebook (recurring) $50,000 a year from Stripe (recurring) I think he got more than one year's…

The most idealistic funding model that I can think of for this kind of work would be colleges (banned from 'tech transfer' and other money grabs) actually being used to advance academic research and 'core intellectual infrastructure'. Basic, public funded, 'research' and common components support.

Unfortunately, in the US at least and probably elsewhere, the shift has been away from this, since it creates 'competition' with corporations, who also are major funders of both universities and the politicians which create legislation and funding applying to them...

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#36

It seems like so much of the internet is reliant upon technology created by, and supported by, people who get little to no reward or recognition for their important contributions. An idea (not a serious one, but a point for discussion): in civil society we have a government that collects taxes that are used to fund the vital infrastructure that allows the society to function. How about if all ISPs were to charge a ve…

Politically at least, because in the US you'd hear screams of "Socialism" and all of the usual nonsense any time you try to marginally improve anyone's lives below the top 1%.

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#37
post #36

It seems like so much of the internet is reliant upon technology created by, and supported by, people who get little to no reward or recognition for their important contributions. An idea (not a serious one, but a point for discussion): in civil society we have a government that collects taxes that are used to fund the vital infrastructure that allows the society to function. How about if all ISPs were to charge a ve…

Politically at least, because in the US you'd hear screams of "Socialism" and all of the usual nonsense any time you try to marginally improve anyone's lives below the top 1%.

I was thinking exactly this. Any calls for help to any person would just be called socialism and get shot down immediately.

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#38
post #5

GPG is used by some for email sure, but it isn't the only option. S/MIME has native support in pretty much all native mail clients, and is more pragmatic about how you trust an identity.

I bet that all the non-email uses of gpg are actually greater than the email uses. Its used as a component of many Linux distribution package managers, for example.

Note that libgcrypt is also part of GnuPG, which finds its use in many projects as well.

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#39
post #5

GPG is used by some for email sure, but it isn't the only option. S/MIME has native support in pretty much all native mail clients, and is more pragmatic about how you trust an identity.

I bet that all the non-email uses of gpg are actually greater than the email uses. Its used as a component of many Linux distribution package managers, for example.

Then maybe the distros should find a way to fund things they rely on?

Re: Gnu Privacy Guard relies on one underfunded person (2015)

#40
post #31

Earlier quoted context omitted.

I had no clue! That's useful information.

It's also useful to learn not to spout off when you "have no clue".

Yes but until one doesn't know one hasn't a clue then what does one do?

Apart from 'spout off'?

Post reply on HN