Dev/apt-revoker

Concept to develop a software to revoke APT signing keys in case these are compromised.
Contents
Materials[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Materials
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#Materials|Materials]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[Materials](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Materials)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[Materials](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Materials)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Materials]Materials[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
UNFINISHED (barely started)
Materials - pieces of information and links that should be included in the draft.
keyserver discussion[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#keyserver_discussion
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#keyserver_discussion|keyserver discussion]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[keyserver discussion](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#keyserver_discussion)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[keyserver discussion](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#keyserver_discussion)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#keyserver_discussion]keyserver discussion[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
reread this whole thread https://lists.nongnu.org/archive/html/sks-devel/2013-12/threads.html#00073
find and reread this discussion[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#find_and_reread_this_discussion
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#find_and_reread_this_discussion|find and reread this discussion]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[find and reread this discussion](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#find_and_reread_this_discussion)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[find and reread this discussion](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#find_and_reread_this_discussion)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#find_and_reread_this_discussion]find and reread this discussion[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
https://lists.nongnu.org/archive/html/sks-devel/2013-12/msg00075.html
>> Good question. Probably, but some keyserver operators might view >> it as rude. Best to ask on address@hidden
> Will do.
separate DNS[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#separate_DNS
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#separate_DNS|separate DNS]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[separate DNS](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#separate_DNS)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[separate DNS](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#separate_DNS)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#separate_DNS]separate DNS[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
aptrevoker.debian.org so this can be turned off / redirected in case keyservers cannot handle the load
/etc/apt-revoker.d[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#.2Fetc.2Fapt-revoker.d
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#.2Fetc.2Fapt-revoker.d|/etc/apt-revoker.d]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[/etc/apt-revoker.d](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#.2Fetc.2Fapt-revoker.d)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[/etc/apt-revoker.d](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#.2Fetc.2Fapt-revoker.d)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#.2Fetc.2Fapt-revoker.d]/etc/apt-revoker.d[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
The code for downloading the revocation certificates should be configurable.
Download the signing key revocation certificates from:
- version 1 - download from clearnet keyservers
- version 2 - optionally download from onion keyservers
- version 3 - optionally download from freenet / or something that implements a permanent takedown attack defense
Proposal[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Proposal
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#Proposal|Proposal]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[Proposal](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Proposal)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[Proposal](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Proposal)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Proposal]Proposal[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.
TODO:
- Take any of the above bullet points one by one and convert those into a good wording that can be posted on the debian-devel mailing list.
Related[edit]
Copy or share this direct link!
Click = Copy
Copied to clipboard!
https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Related
Click below ↴ = Copy to Clipboard
Click = Copy
Copied to clipboard!
[[Dev%2Fapt-revoker#Related|Related]]
Copy as Wikitext
Click = Copy
Copied to clipboard!
[Related](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Related)
for Discourse, reddit, GitHub
Click = Copy
Copied to clipboard!
[Related](https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Related)
Copy as Markdown
Click = Copy
Copied to clipboard!
[url=https://www.kicksecure.com/wiki/Dev%2Fapt-revoker?oldid=78208#Related]Related[/url]
Copy as phpBB
Click below ↴ = Open social URL with share data
We don't use embedded scripts
This share button is completely self-hosted by this webserver. No scripts from any of the social networks are embedded on this webserver. See also
Social Share Button.


Copy as Wikitext

for Discourse, reddit, GitHub

Copy as Markdown

Copy as phpBB Click below ↴ = Open social URL with share data











We believe security software like Kicksecure needs to remain Open Source and independent. Would you help sustain and grow the project? Learn more about our 12 year success story and maybe DONATE!