NAI PGP open to ADK attack

John A. Martin jam at jamux.com
Sun Aug 27 12:02:57 CEST 2000


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

>>>>> "MB" == Matthias Bruestle
>>>>> "Re: NAI PGP open to ADK attack"
>>>>>  Sat, 26 Aug 2000 18:18:17 +0200 (MET DST)

    MB> Mahlzeit Rich Wales1 wrote:
    >> (1) Modify GnuPG to notify the recipient whenever a message has
    >> been encrypted to any key that isn't in the user's secret
    >> keyring.  (This situation isn't necessarily an error, of course
    >> -- the sender may have intentionally encrypted the message for
    >> multiple users.)

    MB> And keys used to sign the message?

Why not all keys used, whether or not on the secret keyring?

	jam

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.2 (GNU/Linux)
Comment: OpenPGP encrypted mail preferred.  See <http://www.gnupg.org/>

iEYEARECAAYFAjmpLXwACgkQUEvv1b/iXy8n5wCcC+i9QHMHuYbKm9bHMW58Pi5k
haMAnjU7Atk6t+VTEQx9qgj09Y0zzQWC
=T0aH
-----END PGP SIGNATURE-----



More information about the Gnupg-devel mailing list