feature request: always-trust [<keyring>]

Jeff Breidenbach jab@debian.org
Mon Apr 29 06:41:02 2002


--=-gNp7JRx7LjSIZPLwDc2+
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

Feature request:

What: ability to specify that everything in a specific
      keyring will trusted by default.

Why:  In Debian, I can have a list of hundreds of developer=20
      keys stored  in locally in /usr/share/keyrings/debian-keyring.gpg.
      This file is trusted by me, dynamic, and is maintained by the
      Debian Project. So I use the file as one of my keyrings.

      When I validate Debian gpg signatures (which I do a lot,
      usually on email messages), I don't want gpg to warn me about
      trust if the key is validated from this keyring. However, if the
      validation comes from some other source (a different keyring, for
      example), I would like the usual web of trust should apply.

      Having this feature (ability to always-trust from a specific
      keyring only) would allow me to more efficiently and safely use
      GNU privacy guard. I do not feel locally importing all the keys
      into a personal keyring, adding signatures, or making a large
      local trustdb is appropriate for this type of real world use.


PS I apologize if this is a frequently requested feature -- I did
not find a reference in the faq or gnupg-user/gnupg-devel archives.

Jeff


--=-gNp7JRx7LjSIZPLwDc2+
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQA8zM+lazfo3TSzaFYRAuFrAJ9bxkkJUkHqGxlcRPsL/EWLNyCvJACdGxbU
9TfkGipRaG53cvUqpackePg=
=Q24J
-----END PGP SIGNATURE-----

--=-gNp7JRx7LjSIZPLwDc2+--