<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Is the state of Mastodon (and most of the fediverse?) such that user&#x2F;message signing keys are still all RSA?]]></title><description><![CDATA[<p>Is the state of Mastodon (and most of the fediverse?) such that user/message signing keys are still all RSA?  I've seen there's been some discussion of Ed25519 support, but it seems like not much progress?</p><p><a href="https://chaos.social/tags/ActivityPub" rel="tag">#<span>ActivityPub</span></a> <a href="https://chaos.social/tags/Mastodon" rel="tag">#<span>Mastodon</span></a> <a href="https://chaos.social/tags/Questions" rel="tag">#<span>Questions</span></a></p>]]></description><link>https://bb.devnull.land/topic/a3c38ef3-f53d-4c2d-a390-dae85fe7a5ac/is-the-state-of-mastodon-and-most-of-the-fediverse-such-that-user-message-signing-keys-are-still-all-rsa</link><generator>RSS for Node</generator><lastBuildDate>Fri, 05 Jun 2026 23:19:44 GMT</lastBuildDate><atom:link href="https://bb.devnull.land/topic/a3c38ef3-f53d-4c2d-a390-dae85fe7a5ac.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 27 May 2026 20:44:29 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Is the state of Mastodon (and most of the fediverse?) such that user&#x2F;message signing keys are still all RSA? on Thu, 28 May 2026 16:35:42 GMT]]></title><description><![CDATA[<p><span><a href="/user/swetland%40chaos.social" rel="noopener">@swetland</a></span> FEP-8b32 implementations use Ed25519:</p><p><a href="https://codeberg.org/fediverse/fep/src/branch/main/fep/8b32/fep-8b32.md#implementations" rel="noopener">https://codeberg.org/fediverse/fep/src/branch/main/fep/8b32/fep-8b32.md#implementations</a></p><p>But for HTTP signatures everyone still uses RSA because dominant implementations don't support Ed25519</p>]]></description><link>https://bb.devnull.land/post/https://mitra.social/objects/019e6f71-1468-7573-bc34-423611f128c1</link><guid isPermaLink="true">https://bb.devnull.land/post/https://mitra.social/objects/019e6f71-1468-7573-bc34-423611f128c1</guid><dc:creator><![CDATA[silverpill@mitra.social]]></dc:creator><pubDate>Thu, 28 May 2026 16:35:42 GMT</pubDate></item><item><title><![CDATA[Reply to Is the state of Mastodon (and most of the fediverse?) such that user&#x2F;message signing keys are still all RSA? on Wed, 27 May 2026 21:12:53 GMT]]></title><description><![CDATA[<p><span><a href="/user/swetland%40chaos.social">@<span>swetland</span></a></span> </p><p>Also, this at Github:</p><p>"Update HTTP signatures to support IETF draft from October 2021 # 21429"</p><p>Here: <a href="https://github.com/mastodon/mastodon/issues/21429" rel="nofollow noopener"><span>https://</span><span>github.com/mastodon/mastodon/i</span><span>ssues/21429</span></a></p><p><a href="https://sfba.social/tags/ActivityPub" rel="tag">#<span>ActivityPub</span></a> <a href="https://sfba.social/tags/Mastodon" rel="tag">#<span>Mastodon</span></a> <a href="https://sfba.social/tags/Questions" rel="tag">#<span>Questions</span></a> <a href="https://sfba.social/tags/PublicKeys" rel="tag">#<span>PublicKeys</span></a></p>]]></description><link>https://bb.devnull.land/post/https://sfba.social/users/FinchHaven/statuses/116648599432348969</link><guid isPermaLink="true">https://bb.devnull.land/post/https://sfba.social/users/FinchHaven/statuses/116648599432348969</guid><dc:creator><![CDATA[finchhaven@sfba.social]]></dc:creator><pubDate>Wed, 27 May 2026 21:12:53 GMT</pubDate></item><item><title><![CDATA[Reply to Is the state of Mastodon (and most of the fediverse?) such that user&#x2F;message signing keys are still all RSA? on Wed, 27 May 2026 21:07:45 GMT]]></title><description><![CDATA[<p><span><a href="/user/swetland%40chaos.social">@<span>swetland</span></a></span> </p><p>What there is would seem to be here:</p><p>"Security</p><p>Public key cryptography and supported signature schemes over HTTP and JSON-LD."</p><p>That said, I can offer no support or explanation</p><p>Here: <a href="https://docs.joinmastodon.org/spec/security/" rel="nofollow noopener"><span>https://</span><span>docs.joinmastodon.org/spec/sec</span><span>urity/</span></a></p><p><a href="https://sfba.social/tags/ActivityPub" rel="tag">#<span>ActivityPub</span></a> <a href="https://sfba.social/tags/Mastodon" rel="tag">#<span>Mastodon</span></a> <a href="https://sfba.social/tags/Questions" rel="tag">#<span>Questions</span></a> <a href="https://sfba.social/tags/PublicKeys" rel="tag">#<span>PublicKeys</span></a></p>]]></description><link>https://bb.devnull.land/post/https://sfba.social/users/FinchHaven/statuses/116648579279375285</link><guid isPermaLink="true">https://bb.devnull.land/post/https://sfba.social/users/FinchHaven/statuses/116648579279375285</guid><dc:creator><![CDATA[finchhaven@sfba.social]]></dc:creator><pubDate>Wed, 27 May 2026 21:07:45 GMT</pubDate></item></channel></rss>