[md@Linux.IT: Re: PGP breakage with latest INN2 packages]

Florian Weimer Weimer at CERT.Uni-Stuttgart.DE
Thu Oct 17 14:09:03 CEST 2002


Werner Koch <wk at gnupg.org> writes:

> Yes.  You have to do a keylisting using the given fingerprint.  We
> can't enhance that status message becuase it would eventually provide
> the same information as the keylistsing. 

I strongly suggest to remove the user ID from the status FD output --
it's a security problem.

-- 
Florian Weimer 	                  Weimer at CERT.Uni-Stuttgart.DE
University of Stuttgart           http://CERT.Uni-Stuttgart.DE/people/fw/
RUS-CERT                          fax +49-711-685-5898




More information about the Gnupg-devel mailing list