using subkey signatures

Adrian 'Dagurashibanipal' von Bidder avbidder@fortytwo.ch
Mon Sep 2 14:44:01 2002


--=-1AC6ONNwc4B2NuqTENq7
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

Yo!

It just came to my attention (thanks Matthew) that gpg can't
auto-retrieve a key if the signature was made by a subkey, since the
main keyid is not contained in the signature package at all.

Is there some work done to make this work?
 - the keyserver could index the subkey id's, too or
 - the primary keyid could be included in the signature somehow
(NOTATION subpacket?)

gpg of course would need to parse this.

I'll do the 2nd for now, although I feel the first would be 'cleaner'
(although I don't know why, really).

Hmmm... I understand that the proposed way to define a local notation is
<name>@<site>=3D..., so the probability of namespace conflict is
minimized. gpg won't let me do this. (1.0.7, that is.)

cheers
-- vbi

--=20
secure email with gpg                        http://fortytwo.ch/gpg

NOTICE: keyserver.kjsl.com is known to carry a valid copy of my key

--=-1AC6ONNwc4B2NuqTENq7
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iJsEABECAFsFAj1zXUUmFIAAAAAADQAQcHJpbWFyeV9rZXlpZDE0Mzg1MTY4OTIw
ODI0ODEtGmh0dHA6Ly9mb3J0eXR3by5jaC9ncGcvcG9saWN5L2VtYWlsLjIwMDIw
ODIyAAoJECqqZti935l6kywAnRScEweuNw+yy81OieF9hfCS+e10AKDALRyJck2j
u8Q9GbfJdqvrYRfy0w==
=NRzl
-----END PGP SIGNATURE-----
Signature notation: primary_keyid=1438516892082481
Signature policy: http://fortytwo.ch/gpg/policy/email.20020822

--=-1AC6ONNwc4B2NuqTENq7--