[md@Linux.IT: Re: PGP breakage with latest INN2 packages]

Werner Koch wk at gnupg.org
Thu Oct 17 14:37:02 CEST 2002


On Thu, 17 Oct 2002 13:10:36 +0200, Florian Weimer said:

> I strongly suggest to remove the user ID from the status FD output --
> it's a security problem.

That is the reason why VALIDSIG should be used instead of GOODSIG.
And yes, a MUA should display all valid user IDs.

I know that we should display the user ID with the highest trust value
first and not just the primary one. 


Salam-Shalom,

   Werner






More information about the Gnupg-devel mailing list