This forum is a place where people can post their (pgp) public keys. The basic idea is simple, that if your irc connection is susceptible to a man-in-the-middle attack, a reasonable solution is to exchange public keys using an alternate communication line.
Remember that anyone can post here, so a clever man-in-the-middle attack over irc could still replace an entire conversation you might have in order to orchestrate a complex scheme to convince you that you are getting the key for the person you want, but in effect directing you to the public key of the attacker, though this seems unlikely.
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
This forum is a place where people can post their (pgp) public keys. The basic idea is simple, that if your irc connection is susceptible to a man-in-the-middle attack, a reasonable solution is to exchange public keys using an alternate communication line.
Remember that anyone can post here, so a clever man-in-the-middle attack over irc could still replace an entire conversation you might have in order to orchestrate a complex scheme to convince you that you are getting the key for the person you want, but in effect directing you to the public key of the attacker, though this seems unlikely.