feature request: always-trust [<keyring>]
Jeff Breidenbach
jab@debian.org
Mon Apr 29 06:41:02 2002
--=-gNp7JRx7LjSIZPLwDc2+
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable
Feature request:
What: ability to specify that everything in a specific
keyring will trusted by default.
Why: In Debian, I can have a list of hundreds of developer=20
keys stored in locally in /usr/share/keyrings/debian-keyring.gpg.
This file is trusted by me, dynamic, and is maintained by the
Debian Project. So I use the file as one of my keyrings.
When I validate Debian gpg signatures (which I do a lot,
usually on email messages), I don't want gpg to warn me about
trust if the key is validated from this keyring. However, if the
validation comes from some other source (a different keyring, for
example), I would like the usual web of trust should apply.
Having this feature (ability to always-trust from a specific
keyring only) would allow me to more efficiently and safely use
GNU privacy guard. I do not feel locally importing all the keys
into a personal keyring, adding signatures, or making a large
local trustdb is appropriate for this type of real world use.
PS I apologize if this is a frequently requested feature -- I did
not find a reference in the faq or gnupg-user/gnupg-devel archives.
Jeff
--=-gNp7JRx7LjSIZPLwDc2+
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org
iD8DBQA8zM+lazfo3TSzaFYRAuFrAJ9bxkkJUkHqGxlcRPsL/EWLNyCvJACdGxbU
9TfkGipRaG53cvUqpackePg=
=Q24J
-----END PGP SIGNATURE-----
--=-gNp7JRx7LjSIZPLwDc2+--