force-v4-certs and digest-algo
Brian M. Carlson
karlsson@hal-pc.org
Thu May 9 22:54:02 2002
--bKyqfOwhbdpXa4YI
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On Thu, May 09, 2002 at 03:51:08PM -0400, David Shaw wrote:
> On Thu, May 09, 2002 at 07:40:24PM +0000, Brian M. Carlson wrote:
>=20
> > I have set force-v4-certs in my options file. I also have
> > digest-algo RIPEMD160 set. Yet, my signatures still are made with
> > SHA1, which I deprecate strongly. If I have a preference on my key,
> > I'd prefer that gpg choose that, unless I choose a digest-algo
> > option, in which case gpg uses that. gpg has done neither.
>=20
> Let me make sure I understand what you are doing. You want your key
> signatures - not data signatures - to use RIPEMD160 and not SHA1?
>=20
> --digest-algo only applies to data signatures.
>=20
> Why do you strongly deprecate SHA1?
SHA1 was created by the US government. I feel that the US government does n=
ot
have its citizens best interest at heart in the realm of cryptography, and
sometimes not with privacy in general. I prefer RIPEMD160 as it was created
independently outside of the US. Anyway, whatever my reason, shouldn't it
be my choice?
digest-algo has worked before, with my RSA key and with my ElGamal 20 key (=
see
sig) on key signatures. I might be able to dig them up for you.
--=20
Brian M. Carlson
<karlsson@hal-pc.org>
OpenPGP: 0x351336B2DCA1913A
--bKyqfOwhbdpXa4YI
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
Comment: Ubi libertas, ibi patria.
iQEVAwUBPNriMOWR/8lWBVPnAQMc1Af/Wm+U4ujICM9ur9JRxWBhRVR5zuiPhxVT
RtpmsROW/0opBSi3e1Y1BUwzO6f6z1M+1lD65xuTsCG57nzIsNNmgVI/CH7SZrBj
RXbp8DuLt0WTGsXvGrJRqGNrrPtLg9FsaGz+rWgylStNyujzg2dpNbDti6YkqoN5
IcFckpX5KxW3kIbFZ/9JR41LzxwiR4reZoiIrXCnkarGvSYlbtnSREkmYhdrSkaH
Dn+BY05stL4mfuKXEpuEAgK9qVIt14xx8QyjevlYkpl80AD5Hw+O1mR1eqb7OLnQ
NL8rBwOd4Dhgejq06WP3+pEujAqxssjRmOddPguvRbvbItwUAHLnaQ==
=SIup
-----END PGP SIGNATURE-----
--bKyqfOwhbdpXa4YI--