gorazd božič: zaščita elektronske pošte s protokolom pgp [cryptoparty slovenija 2015]

17
-----BEGIN PGP MESSAGE----- Comment: GPGTools - http://gpgtools.org hQQOAwFlWS/IUfOxEBAAjTPox2+a3eMglaa1frQA5VNA8p+2saQZWDEpLcqa8XV9 /EzQfDOLaF00HAZOFti5Ko0ks1yMgXK7QZUAYxc8H6rFD1jQFpADf6MVJmFYYEfx db795OGOcQhZaJb73nFowtzCTZtIpMhnF7/wlgPv61pIdxHgdEtxVWgNnPPb5MJN 3iwNmmBvNlqGXczDpn3dRQG8f76eIft1HJIhReKan3YH65ELWB6GFhAc7vcWMJzx hRCnJ0KaJsRa68qQDPnfsLvmcRp45+0/VALW4yhEMHW7UdPKrrmKVTieE4ETW/sd 6Ot0WerJ4prxp0E47DExjjb2FLglhlFJsju+0UM/oQLOwAqD1j0LnNaH1i6Q3aTh paKi4RoAsFaVmDQGI5dV0/3p69eNPw5JMXwRrbEKneLgE62ugS/79O5NFn1hv/DR Ex7wVkmxhtw08f/ZDwllo1fRbzYQ2WV92+6OP8Sz0wSdC/s8fXCemLqoz3V0+u9H BpFhAc72kRVPXOwWVWmpL6PJLxtdSRsBKv/9teDIAjbW0FRw2h67GyLeaUM1qZFb 7Wy5vBrchdp6/rwwdbEwMAFgYX+DwaJedIftu/kBVK6wlaZWoDLfrgHbmNC6pG86 /wPcYaZSApv44FAJ0G7/VlVaAY58Ix2bYgZRykaUkUNhQasezSzBdPhvNRTzxHkP /2xMN2EK5Qc58OnWtnk4bAmPywT6orxP0JwxMT3h0iRu95Z16wDQezWPQLjffNG5 iM+fMbKPgiSkIJsHxK/vCtWqgL3gzhcNwXNt09S3IvAQAWyUhgna0WDr6EV1e4Vw fGEn6XbrxgawbFRJ4h1qxEXqQfWeDHZwRFRZeQaWtyB2usYgDQMRjvBELQEu5/3r eQrWQeIc9LpiQWpEDnLAORym8xeW14xRZ4HW2IAX1ytjJWt3bTO14FqgadOy8xtW cFlR8YPQSIgxrE4m3ataKjVP9vxP1eqyndj4ZHo3QphBg3IhjT9CRc5BZtwELYzt cK/iz3/DKXIhTYjhOfozbwS+rDbeD8g22Nt1vhlJ0EVmT3KO9/I2p0KGucJd7RLM 8uaTu0QUkXYN0jjnBI0m9+SHzpWsHfumGTA/2E/Xee3gXHooxQDPhKLe9018jD6f +V7lDB/IvwxXmg6yH+pM80NwXEj/nOtiBIGEGexzPy2UY7Hcqp0f5RNFznuL8EFf PGP Cryptoparty, 30. 3. 2015 [email protected], @gbozic

Upload: domen-savic

Post on 20-Jul-2015

113 views

Category:

Technology


4 download

TRANSCRIPT

-----BEGIN PGP MESSAGE-----Comment: GPGTools - http://gpgtools.org

hQQOAwFlWS/IUfOxEBAAjTPox2+a3eMglaa1frQA5VNA8p+2saQZWDEpLcqa8XV9/EzQfDOLaF00HAZOFti5Ko0ks1yMgXK7QZUAYxc8H6rFD1jQFpADf6MVJmFYYEfxdb795OGOcQhZaJb73nFowtzCTZtIpMhnF7/wlgPv61pIdxHgdEtxVWgNnPPb5MJN3iwNmmBvNlqGXczDpn3dRQG8f76eIft1HJIhReKan3YH65ELWB6GFhAc7vcWMJzxhRCnJ0KaJsRa68qQDPnfsLvmcRp45+0/VALW4yhEMHW7UdPKrrmKVTieE4ETW/sd6Ot0WerJ4prxp0E47DExjjb2FLglhlFJsju+0UM/oQLOwAqD1j0LnNaH1i6Q3aThpaKi4RoAsFaVmDQGI5dV0/3p69eNPw5JMXwRrbEKneLgE62ugS/79O5NFn1hv/DREx7wVkmxhtw08f/ZDwllo1fRbzYQ2WV92+6OP8Sz0wSdC/s8fXCemLqoz3V0+u9HBpFhAc72kRVPXOwWVWmpL6PJLxtdSRsBKv/9teDIAjbW0FRw2h67GyLeaUM1qZFb7Wy5vBrchdp6/rwwdbEwMAFgYX+DwaJedIftu/kBVK6wlaZWoDLfrgHbmNC6pG86/wPcYaZSApv44FAJ0G7/VlVaAY58Ix2bYgZRykaUkUNhQasezSzBdPhvNRTzxHkP/2xMN2EK5Qc58OnWtnk4bAmPywT6orxP0JwxMT3h0iRu95Z16wDQezWPQLjffNG5iM+fMbKPgiSkIJsHxK/vCtWqgL3gzhcNwXNt09S3IvAQAWyUhgna0WDr6EV1e4VwfGEn6XbrxgawbFRJ4h1qxEXqQfWeDHZwRFRZeQaWtyB2usYgDQMRjvBELQEu5/3reQrWQeIc9LpiQWpEDnLAORym8xeW14xRZ4HW2IAX1ytjJWt3bTO14FqgadOy8xtWcFlR8YPQSIgxrE4m3ataKjVP9vxP1eqyndj4ZHo3QphBg3IhjT9CRc5BZtwELYztcK/iz3/DKXIhTYjhOfozbwS+rDbeD8g22Nt1vhlJ0EVmT3KO9/I2p0KGucJd7RLM8uaTu0QUkXYN0jjnBI0m9+SHzpWsHfumGTA/2E/Xee3gXHooxQDPhKLe9018jD6f+V7lDB/IvwxXmg6yH+pM80NwXEj/nOtiBIGEGexzPy2UY7Hcqp0f5RNFznuL8EFf

PGPCryptoparty, 30. 3. 2015

[email protected], @gbozic

1991

“The question remains: are we going to allow a

means of communications where it simply is not

possible to do that? My answer to that question is:

no, we must not.”

CC-BY FishInWater @ flickr.com

PGP Pretty Good Privacy

~ GPG

GNU Privacy Guard

-----BEGIN PGP MESSAGE-----Comment: GPGTools - http://gpgtools.org

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

zasebni

javni

zasebni

javni

zasebni

javni

besedilo

Ic9LpiQWpE

besedilo

zasebni

javni

digitalni podpis

besedilo

PGP

• šifriranje

• digitalno podpisovanje

• več hkratnih naslovnikov

KLJUČ• ustvarimo ga sami

• zasebni del zaščitimo z dolgim geslom

• javni del objavimo (na pgp.mit.edu)

• ne potrebujemo overitelja: web-of-trust

pub 1024D/686977E6 2010-05-07 Key fingerprint = A51F 19E8 4552 CA2A 43E6 B892 8865 BD44 6869 77E6 uid Gorazd Bozic <[email protected]> uid Gorazd Bozic <[email protected]> sub 4096g/C851F3B1 2010-05-07

“prstni odtis” ključaidentifikator ključa

uporabniški identiteti

PROGRAMJE• Mozilla Thunderbird + Enigmail

• Mac Mail + GPGTools

• Evolution (Linux)

• Mailvelope za spletno pošto

• Outlook + Gpg4Win + Outlook Privacy Plugin

pub 1024D/6C738AC3 2001-01-31 uid Gorazd <[email protected]> sub 1024g/2F46A6E9 2001-01-31

pub 1024D/8413A872 2003-02-17 [revoked: 2013-09-10] uid Gorazd Bozic <[email protected]> sub 3072g/81ACDE89 2003-02-17 [revoked: 2013-09-10]

pub 1024R/77B88E69 1995-09-28 [revoked: 2003-02-19] uid Gorazd Bozic <[email protected]>

pub 1024D/686977E6 2010-05-07 uid Gorazd Bozic <[email protected]> uid Gorazd Bozic <[email protected]> sub 4096g/C851F3B1 2010-05-07

pub 1024D/A00A3CAA 2013-09-03 uid Gorazd Bozic <[email protected]> sub 4096g/7EA080E6 2013-09-03

PGP

PRETEŽKO JE …

CC-BY-NC lauren rushing @ flickr.com