I think LDAP would be a good fit for most if not all of the use cases
mentioned recently, and would greatly simplify the design.
As for initial user validation, I was going to suggest something like a
WoT too.
It would be easy enough to integrate both PKI (LOTW and any other CAs
deemed trustworthy) as well as a PGP web of trust, with mandated minimum
trust levels set by the community.
I think that the development of this sort of system needs to be open and
transparent to the ham community, not just a small closed group.
Without transparency, I wouldn't be too keen to point any of my systems
at it for authorization.
I'd be interested in being involved in the development if it was to
happen - even though it sounds far too much like my 9-5 job :(
Josh
On 16/09/2017 5:50 PM, G1FEF via 44Net wrote:
It’s the validation bit that’s difficult, for most
countries you can’t
automate the process, it would need a human being to validate the
request. My thoughts were along the lines of establishing and building
a web of trust to delegate the work. It’s not just coding effort, it’s
social engineering as well.