GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Erin 💽✨ (erincandescent@akko.erincandescent.net)'s status on Monday, 23-Dec-2024 05:13:37 JST Erin 💽✨ Erin 💽✨

    I find myself working with JOSE (not my choice, protocol dictates :<) at the moment and I’m slowly going insane at the levels of recursive base64 involved :floofWoozy:

    e.g. if you end up doing signed-and-encrypted JWTs you end up with base64(encrypt(base64(json)))

    In conversation about 5 months ago from akko.erincandescent.net permalink
    • Haelwenn /элвэн/ :triskell: likes this.
    • Embed this notice
      Erin 💽✨ (erincandescent@akko.erincandescent.net)'s status on Monday, 23-Dec-2024 06:21:32 JST Erin 💽✨ Erin 💽✨
      in reply to

      JSON and Cryptography: It’s not a good mix.

      In conversation about 5 months ago permalink
      Haelwenn /элвэн/ :triskell: likes this.
    • Embed this notice
      Erin 💽✨ (erincandescent@akko.erincandescent.net)'s status on Monday, 23-Dec-2024 06:21:33 JST Erin 💽✨ Erin 💽✨
      in reply to

      Of course the signing key’s ID is base64 of a truncated sha256 hash so that bit ends up being base64(encrypt(base64(json(base64(truncated-hash))))) :floofWoozy:

      In conversation about 5 months ago permalink
    • Embed this notice
      Haelwenn /элвэн/ :triskell: (lanodan@queer.hacktivis.me)'s status on Monday, 23-Dec-2024 06:22:12 JST Haelwenn /элвэн/ :triskell: Haelwenn /элвэн/ :triskell:
      in reply to
      @erincandescent At least no JSON canonization *hisses towards LD Signatures*.
      In conversation about 5 months ago permalink
    • Embed this notice
      soc (soc@chaos.social)'s status on Monday, 23-Dec-2024 06:22:22 JST soc soc
      in reply to

      @erincandescent When you look at shit and it has %3D%3D%3D at the end and you realize people couldn't even bother to disable padding...

      In conversation about 5 months ago permalink
      Haelwenn /элвэн/ :triskell: likes this.
    • Embed this notice
      Haelwenn /элвэн/ :triskell: (lanodan@queer.hacktivis.me)'s status on Monday, 23-Dec-2024 06:23:21 JST Haelwenn /элвэн/ :triskell: Haelwenn /элвэн/ :triskell:
      in reply to
      • Haelwenn /элвэн/ :triskell:
      @erincandescent Also I hope the hash doesn't matters much because truncating hashes is an awful idea.
      In conversation about 5 months ago permalink
    • Embed this notice
      Erin 💽✨ (erincandescent@akko.erincandescent.net)'s status on Monday, 23-Dec-2024 07:43:50 JST Erin 💽✨ Erin 💽✨
      in reply to
      • Haelwenn /элвэн/ :triskell:

      @lanodan in this case its just the hash of the key fingerprint in order to generate a probablistically unique key ID. It doesn’t even need to be unique, duplicates just mean multiple trial verifications until the recipient finds the right key.

      In conversation about 5 months ago permalink
      Haelwenn /элвэн/ :triskell: likes this.

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.