loaded a keydump from dated 2018-11-29.
I see 5379487 keys loaded.
For operational issues, please contact me directly.
keyserver.cdresel.de 11370 # Christian Dresel
0x3d3fd0cdb547ede8
Thank you,
-Christian Dresel
signature.asc
Description: OpenPGP digital signature
Hello,
key servers key.ip6.li and b.key.ip6.li will terminate operation until
Nov., 30th 2016. Please remove all peerings to
key.ip6.li: 193.17.17.6 and 2a01:7a0:1::6
b.key.ip6.li: 149.56.171.19 and 2607:5300:60:490f:1::19
best regards
Christian Felsing
Hello,
server b.key.ip6.li is online again now.
regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hello,
server b.key.ip6.li (149.56.171.17) is down due to a migration from
CentOS6 to CentOS7 which needs more time than calculated.
It should be up again until 18:00 UTC
regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https
Hello,
due to cleaning up my peerings key servers which are down for more than
4 weeks were depeered. Further key.cccmz.de was depeered because they do
not answer to mails regarding peering problems.
best regards
Christian Felsing
___
Sks-devel
l browsers, see
https://hstspreload.appspot.com/ so meanwhile Chrome, Firefox and IE
insists on https now even if there is no HSTS header (e.g. due to
misconfiguration of a site)
regards
Christian
smime.p7s
Description: S/MIME Cryptographic
ent has to
find those prime numbers. Until "Can integer factorization be done in
polynomial time?" is answered with "yes" this can be seen as a "hard
problem" so even quite powerful cpus will need a few seconds to solve that.
Christian
smime.p7s
Des
you. if you are using
IP addresses, please consider to use host name or change IP addresses.
Domain ip6.li supports DNSSEC.
old:
5.135.164.119
2001:41d0:8:e777::1
new:
149.56.171.19
2607:5300:60:490f:1::19
best regards
Christian
smime.p7s
Description: S/MIME Cryptographic Signature
y new year, also! o/
Cheers,
-Chris.
--
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
christ...@reiss.nrw \ /Campaign
X against HTML
XMPP ch...@alph
Hey folks,
sks.alpha-labs.net is back online and syncing up.
peers: please note a change in IP. New IP is 46.229.47.139
Thanks!
-Christian.
On 13/07/15 22:50, Christian Reiss wrote:
> Hey folks,
>
> I am currently migrating to a new OS and during that time
> sks.alpha-labs.net wil
Hey folks,
I am currently migrating to a new OS and during that time
sks.alpha-labs.net will be DOWN. I expect it to be back up tomorrow.
Dear sync peers, have patience :)
Once the issue is resolved I will reply here.
-Christian.
--
Christian Reiss - em...@christian-reiss.de
Hi,
I am wondering, if CAcert would offer CA solutions to handle this type
of "special" applications. I can imagine a sub CA which offers a web
service (authenticated by a specific client certificate) to sign server
certificates for that purpose.
Christian
Am 16.05.2015 um 23:36 sch
.
Christian
Am 11.04.2015 um 00:44 schrieb David Benfell:
> I have previously commented on the difficulty of keeping the sks
> database healthy. I just discovered my sks instance had been down for
> several days. I tried to recover and it crashed again.
>
> I'm giving up.
>
Hello,
due to migration to a new platform, key.ip6.li is down at Feb., 15th for
several hours. CentOS 6 / SKS 1.1.5 will be replaced by CentOS 7 / SKS
1.1.5+
Christian
smime.p7s
Description: S/MIME Cryptographic Signature
___
Sks-devel mailing list
Hello,
at https://sks-keyservers.net/status/ host b.key.ip6.li is shown as "no
port 80". How is this determined? Access via Port 80 (and 443, also) is
possible with Firefox and IE. Configuration uses haproxy to check
requested host and selecting desired backend.
Christian
Hello,
following peerings were removed from key.ip6.li:
sks.undergrid.net
pek1.sks.reimu.io
reason: No crosspeering
best regards
Christian Felsing
smime.p7s
Description: S/MIME Cryptographic Signature
___
Sks-devel mailing list
Sks-devel
Hey,
the server has recovered yesterday and is back to operational state.
-Christian
On 25/01/15 11:39, Christian wrote:
> Hey,
>
> Server is back online, new IP is 46.229.47.134, DNS CNAME has been
> updated accordingly. Missing keys are being resynced right now. I expect
>
Hey,
Server is back online, new IP is 46.229.47.134, DNS CNAME has been
updated accordingly. Missing keys are being resynced right now. I expect
it to be synced within the hour.
Cheers!
-Christian.
On 25.01.2015 11:17, Christian wrote:
> Hey folks,
>
> I am currently having trouble
sync peers: Keep syncing -- I am expected to be back up
within a few hours.
Cheers!
-Christian.
--
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
GPG Key: http://gpg.christian-reiss.deX ag
works with other peers for a long time w/o any problems, so I
consider problem is local. Are there issues with peerings and NAT?
best regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hey,
It's now 24 hours after the switch and I am not seeing any errors. To all my
sync-peers: Please ensure that you are not refusing connect from 46.229.47.146.
Cheers!
-Christian.
(Send via Zimbra Webinterface, not gpg signed.)
- Original Message -
| From: "Christian R
.
The DNS zones ttl is set to 1 hour, so expect a 1h downtime tomorrow.
Thank you all and have a great start into the week ;)
-Christian.
--
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
GPG Key:
hat coming and retract my statement :)
-Christian.
--
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
GPG Key: http://gpg.christian-reiss.deX against HTML
Jabber : c
igned certificates by default, alongside
of the SKS Ca and only turn the button red on self-signed (or invalids).
- -Christian.
On 27.05.2014 23:21, dirk astrath wrote:
> Hello Kristian
>
>>>> You are quite correct, and I will revoke and issue new
>>>> certificates
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hello,
due to long time downtimes and no response to clean up announcement
(May, 2nd. 2014), following sks server were depeered from key.ip6.li:
keyserver.cais.rnp.br
keyserver.reinig-it.de
pgp.codelabs.ru
ranger.ky9k.org
best regards
Christian
up a peering with key.ip6.li please add
key.ip6.li 11370 # Christian Felsing 0xFDCAC0E5
to your membership file and leave me a message.
best regards
Christian Felsing
-BEGIN PGP SIGNATURE-
Version: GnuPG v1
iQIcBAEBAgAGBQJTY5KoAAoJEPDmcZn9ysDlQVEP/1L+cSccS9IDaNQ4XfHRKHp5
It's a facepalm.
https://www.youtube.com/watch?feature=player_detailpage&v=wjLgekyOZA0#t=57
(I did the facepalm several times over the course of this convsersation.)
-Christian.
On 20/04/14 19:51, Frank Villaro-Dixon wrote:
> Excuse my ignorance, but i'm curious to know what
only). If you like drop me
a line, here is my suggested peering line:
sks.alpha-labs.net 11370 # Christian Reiss
0x44E29126ABCD43C
Cheers!
- -Christian.
- --
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
break compatibility with clients.
So, just up a new ip and serve all requests to that cert. Not really
stressing, eh? :)
-Chris.
""
On 11/02/14 16:34, Daniel Kahn Gillmor wrote:
> On 02/11/2014 10:27 AM, Christian Reiß wrote:
>
>> hkps is basically a 443 to hkp forward
/hkps.
tl;dr: Just up a new ip and set up nginx on 443 on that, accepting all
and forwarding to local hkp.
-Christian.
On 11/02/14 16:23, Tyler Schwend wrote:
> My SKS instance is behind a reverse proxy, plaintext on the standard
> port. I have connections on port 80 that reference my serve
: I'll share. Drop me a line.
-Christian
--
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
GPG Key: http://gpg.christian-reiss.deX against HTML
Jabber : ch...@alph
. As sad
as it sounds, my uplink provider was yet unable to route ipv6.
tl;dr - This is a request for PEERING.
My suggesed Peering-line:
sks.alpha-labs.net 11370 # Christian Reiss
0x44e29126abcd43c5
(Fingerprint=9549 F537 2596 86BA 733C A4ED 44E2 9126 ABCD 43C5 )
I will, of course, gladly
still operative.
tl;dr: good.
- -Chris.
- --
Christian Reiss - em...@christian-reiss.de /"\ ASCII Ribbon
\ /Campaign
GPG Key: http://gpg.christian-reiss.deX against HTML
Jabber : ch...@alpha-lab
Hello,
it was possible to recover our sks installation, so it seems to be
online again.
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hello,
due to a major hardware failure key.ip6.li is no longer available.
sorry for inconvenience
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hi Stefano,
thank you for information. Unfortunally rt.ubuntu.com has a problem, if I login
with a Launchpad account,
rt.ubuntu.com replies with Must specify 'Name' attribute
I try to contact them via e-mail
Christian
Am 16.08.13 19:49, schrieb Stefano Rivera:
> Hi Christian (201
Hello,
does anybody know how to contact admin of keyserver.ubuntu.com?
regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hello,
now I updated from sks 1.1.3 to 1.1.4, logs show nothing bad. If you
experience any difficulties in your peerings to key.ip6.li , please let
me know.
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman
: SKS is a OpenPGP keyserver whose goal is to provide easy to
: deploy, decentralized, and highly reliable synchronization.
[root@key ~]#
I would consider to update to 1.1.4, if ensured, that this will not kill
my database files.
cheers
Christian
Am 13.10.2012 00:37, schrieb David
Hi Kristian,
how do you detect presence of a reverse proxy ? Today I did set up a reverse
proxy based on Apache httpd for testing.
On status page proxy did not appear. Due to peering problems I removed reverse
proxy now.
Christian
Am 09.04.2012 20:07, schrieb Kristian Fiskerstrand:
> trac
Hi Nick,
thank you for new rpm. I will give it a try. Update with rpm was smooth,
Rebuilding database was not necessary.
Christian
Am 21.04.2012 19:38, schrieb Nick Bebout:
> http://kojipkgs.fedoraproject.org/packages/sks/1.1.3/1.el6/ now and w
/sks-keyserver/
Summary : Synchronizing Key Server
Description :
SKS is a OpenPGP keyserver whose goal is to provide easy to
deploy, decentralized, and highly reliable synchronization.
is version diff caused by rpm maintainer or is it simply a bug in
original source ?
Christian
* double check peerings after these changes...
regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
ig iron in
a hosting center and this host has to run several different operating
systems.
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hi Kristian,
clocksource tsc solved problem
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hi Kristian,
Am 17.03.2012 18:50, schrieb Kristian Fiskerstrand:
> You can change the clocksource by setting the clocksource= kernel
> option in your respective GRUB/LILO* setup, e.g. "clocksource=tsc" ** .
I will give it a try:
[0.180033] Switching to clocksourc
Hi Kristian,
Clock is still absolutely synchronous, but ptree error already persists.
Other clocksources than kvm-clock have significant jitter.
Unfortunally sks needs several peerings to get a reproduction of that problem.
Christian
Am 17.03.2012 18:50, schrieb Kristian Fiskerstrand:
>
I disabled ntp on guest, so kvm-clock is the only clock source. A
reference clock (DCF) and systems clock are now absolutely synchronous
(1 second resolution)
Let's see if problem still persists.
Christian
Am 17.03.2012 18:50, schrieb Kristian Fiskerstrand:
>> kvm-clock
> You
ksource0/ where
> I'd expect to see the files (i) available_clocksource, and (ii)
> current_clocksource.
# cat /sys/devices/system/clocksource/clocksource0/available_clocksource
kvm-clock tsc hpet acpi_pm
# cat /sys/devices/system/clocksource/clockso
Hello,
key.ip6.li is back online
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
Hello,
due to infamous
2012-01-27 08:19:28 Raising Sys.Break -- PTree may be corrupted:
Failure("remove_from_node: attempt to delete non-existant element
from prefix tree")
key.ip6.li needs an extended downtime. Running db4.7_recover was not able to
resolve problem.
regards
key.ip6.li is online again, now.
I will give it a try
Christian
Am 03.01.2012 10:08, schrieb Johan van Selst:
> Christian Felsing wrote:
> suffice to run a db_recover command that should be done in a couple of
> minutes at most.
___
Hello,
due to infamous ptree error I have to rebuild complete database.
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
I have added the following line to my membership file:
pgp.circl.lu 11370 # CIRCL - i...@circl.lu - 0x22BD4CD5
Please add this line to your membership file:
key.ip6.li 11370 # Christian Felsing 0x5386E2A0
Am 06.06.2011 10:35, schrieb Alexandre Dulaunoy:
> # CIRCL - i...@circl
Seems, we are both in status now :-)
Regards
Christian
Am 27.05.2011 20:59, schrieb Hauke Lampe:
> Then let's try and shorten the edges.
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
UmZfSav/4NWLKjHzpT59k/VSt TDN0YUuWrBNh";
};
Christian
Am 23.05.2011 23:14, schrieb Scott Grayban:
> Maybe you don't have the lookaside option set which is still recommended.
>
> File /etc/bind/named.conf.options
>
> options {
> ..
> dnssec-enable yes;
>
key.ip6.li is listed, but status is
"NOT OK"
Any hints ? How does sks-keyservers.net detect status ?
best regards
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org/mailman/listinfo/sks-devel
key-server.de, dated 2011-05-21.
I see 2952010 keys loaded.
For operational issues, please contact me directly.
key.ip6.li 11370 # Christian Felsing 0x5386E2A0
Thank you
Christian
___
Sks-devel mailing list
Sks-devel@nongnu.org
https
I added you server, too
Thank you
Christian
Am 21.05.2011 13:07, schrieb Scott Grayban:
> I added you to my membership list, please add mine.
>
> keyserver.borgnet.us 11370 # Scott Grayban
> 0x29ba72e529caa214
>
> My sks server is down right now while the system is runnin
physically located in Frankfurt a.M. / Germany.
The machine has both IPv4 and IPv6 connectivity, 193.17.17.6 /
2a01:7a0:1::6.
I have loaded a keydump at 2011-05-20 from ftp://key-server.de/dump, I
see 2952010 keys loaded.
For operational issues, please contact me directly.
key.ip6.li 11370 # Christian
Hello Scott,
of course there are static IPv4/6 addresses and it is _not_ a dialin
connection.
See http://key.ip6.li:11371/pks/lookup?op=stats for details regarding
SKS stats.
key.ip6.li resolves to both IPv4 and IPv6
Christian
Am 21.05.2011 11:30, schrieb Scott Grayban:
> You need to hav
Hello,
I am interested to join the SKS network. What are the requirements to do
so besides installing an d running SKS ?
best regards
Christian Felsing
(hostmaster ip6.li)
___
Sks-devel mailing list
Sks-devel@nongnu.org
https://lists.nongnu.org
62 matches
Mail list logo