key management

Robert Fendt
Mon, 27 Sep 1999 17:59:05 +0200 (MEST)

On 26-Sep-99 Andreas Jellinghaus wrote:

> no i want to migrate to gnupg. my preferences are :
> - there must be a way to get rid of old email addresses. realy.
> - this could be done with one key per email address. but i don=B4t want
> to have everyone subscribe several keys. one signature on one key
> sh ould be enough. maybe some master/slave key or so ?
> i saw the adduid and addkey commands in gnupg, but i=B4m not sure if they
> will do what i want. most important: can i revoke one subkey, but leave t=
> whole key intact ? more exactly, i don=B4t want to revoke a subkey, but a
> userid.
> and the key with all other user id=B4s intact.=20
You *can* revoke a single subkey (although gpg is able to use it anyway, I think), and you can revoke the signing key (which is the "main" key). It would be possible to remove userids from keys, but when you upload it to a key server, the userids are merged like the certificates. So, you cannot remove a userid from a keyserver, like you also cannot "remove" a key.