sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] IPv6 peering; keydumps annoyingly large


From: Robert J. Hansen
Subject: Re: [Sks-devel] IPv6 peering; keydumps annoyingly large
Date: Wed, 1 Jun 2011 09:39:45 -0400

> So just wait and see until the last minute to clean it up when DB does become 
> a issue ?

No.  Wait for it to become any kind of a problem, and then solve it -- not 
before.

Fixing things that are not problems and are not projected to become problems is 
an inefficient use of a highly limited resource.

> Why wait ? Why can't we run a script that will at least delete keys that have 
> expired and revoked ? And then prevent such keys from being re-imported back 
> into the db ? That would be the sensible thing to do now when we don't have 
> any emergencies.

At risk of pointing out the obvious, you've just added to the keyserver network 
a way to delete keys and keep them from getting re-entered into the DB.

This is exactly what the keyserver network is meant to avoid.  If that's 
possible, the keyserver system will have failed.  For your idea to be adopted, 
the network must fail.  This may explain some of the pushback you're 
receiving...




reply via email to

[Prev in Thread] Current Thread [Next in Thread]