Re; Sig classification (was Re: discussion on increasing amount of gpg signatures...)

Michael Young mwy-gpg41 at the-youngs.org
Tue Oct 16 18:09:02 CEST 2001


-----BEGIN PGP SIGNED MESSAGE-----

> Before you sign, GnuPG will prompt you for which level of
> certification you want to use.  Answer "?" for an explanation of the
> different levels.

Excellent!  A couple of months ago, I built a command-line switch
to do this, but didn't get around to posting it.  (When I looked
back through the mailing list archives, it appeared that signature
types were an unpopular idea at some past OpenPGP meetings.)

How would you feel about adding a command-line option?  As it
stands, batch operations get a "generic" signature.  I used
"--sig-type" in my patch.  I could recreate it against yours
if you're interested.

To make good use of these additional validity levels, the trust
model really should understand them.  For example, I might
fully trust type-3 signatures from "John Smith", partially
trust his type-2 signatures, and not trust any type-1.
But that's for another day... I'm glad to see the first step.

-----BEGIN PGP SIGNATURE-----
Version: PGP Personal Privacy 6.5.3

iQEVAwUBO8xM32NDnIII+QUHAQH52gf9Gmd7v524TaY+qJo9UhX8aG4naq69dn/b
M+79JQj68xLpeWOVDtKFqSWVSOWcVBA2tiW6+JvZaJ9a5AAmfsk4yie3lQpS2Srp
9wmye2hm/y9CNfHD58PLiUYUlzWDhAj2V3+OZntkC7w9FWMRX3hz+9YCQ5XqpApj
59V5OjWV9XNgB4TkCvCEfGiY8dhJ9BMFBnQzYKvQoffsxVZdgoDK3x9Em+8OFLIw
IeiIea6b3+AizaYQxUhAywxE6fdw0gX+gHP7I9Gxb0mZwLD//PY+jVGAW6QVvLAi
l2lonJ6e1V5KuZpgNKzT1XK95w8/jzNZhstaEjOd+To4rnRYsYirRw==
=i6n2
-----END PGP SIGNATURE-----






More information about the Gnupg-devel mailing list