Leonard Rosenthol on Tue, 4 Dec 2001 18:00:30 +0100 |
At 11:28 AM 12/4/2001 -0500, Chris Beggy wrote: Another difference is the trust mechanism. X.509 requires a Certificate Authority and knows how to deal with chained authorizations. Correct. X.509 uses a "hierarchical trust" model, while PGP is based on a "web of trust". The former works nicely for corporations and governments, where there is a formal hierarchy. The latter works much better for the average user sending personal email. The latter can also be used to SIMULATE the former, while the former can NOT be used as the latter.
|
|