logoalt Hacker News

lxgrtoday at 11:25 AM3 repliesview on HN

For anything as high stakes as eID you need real-time revocation checks, which brings you back to at least some level of centralization.


Replies

j16sdiztoday at 11:33 AM

I don't understand. We don't have real time revocation for passports, do we?

In fact, we don't have real time revocation of any document until very recently...

show 2 replies
jdmoreiratoday at 11:31 AM

Sure... but it should degrade to work when the central services are down.

You should still be able to authenticate with each individual service when the centralised service is down.

There is no reason why you shouldn't be able to login to your bank under these circumstances.

show 1 reply
progbitstoday at 11:29 AM

Revocation lists can be distributed.

show 2 replies