using subkey signatures
Adrian 'Dagurashibanipal' von Bidder
avbidder@fortytwo.ch
Mon Sep 2 14:44:01 2002
--=-1AC6ONNwc4B2NuqTENq7
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable
Yo!
It just came to my attention (thanks Matthew) that gpg can't
auto-retrieve a key if the signature was made by a subkey, since the
main keyid is not contained in the signature package at all.
Is there some work done to make this work?
- the keyserver could index the subkey id's, too or
- the primary keyid could be included in the signature somehow
(NOTATION subpacket?)
gpg of course would need to parse this.
I'll do the 2nd for now, although I feel the first would be 'cleaner'
(although I don't know why, really).
Hmmm... I understand that the proposed way to define a local notation is
<name>@<site>=3D..., so the probability of namespace conflict is
minimized. gpg won't let me do this. (1.0.7, that is.)
cheers
-- vbi
--=20
secure email with gpg http://fortytwo.ch/gpg
NOTICE: keyserver.kjsl.com is known to carry a valid copy of my key
--=-1AC6ONNwc4B2NuqTENq7
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
iJsEABECAFsFAj1zXUUmFIAAAAAADQAQcHJpbWFyeV9rZXlpZDE0Mzg1MTY4OTIw
ODI0ODEtGmh0dHA6Ly9mb3J0eXR3by5jaC9ncGcvcG9saWN5L2VtYWlsLjIwMDIw
ODIyAAoJECqqZti935l6kywAnRScEweuNw+yy81OieF9hfCS+e10AKDALRyJck2j
u8Q9GbfJdqvrYRfy0w==
=NRzl
-----END PGP SIGNATURE-----
Signature notation: primary_keyid=1438516892082481
Signature policy: http://fortytwo.ch/gpg/policy/email.20020822
--=-1AC6ONNwc4B2NuqTENq7--