Expiry bug (can convert v3 key to current?)

Kurt Fitzner kurt-fitzner@home.com
Sat Jun 30 23:21:01 2001

On 27-Jun-2001 Len Sassaman wrote:

>> Also, I was wondering why I can generate a 2048 bit signing DSA subkey, but
>> can't make one as the primary key.
> (And you can't make *any* DSA keys greater than 1024 bits, because of the
> hash limitation.)
This was my mistake. When you make a DSA subkey in --edit mode, it tells you the maximum is 2048 bits, but it actually is only 1024 bit maximum. But, the bug on editing v3 key expiry dates is there. GnuPG does tell you that it can't change the expiry, but you can. Change the expiry, it will complain, but let it. Then, do something else... add a uid, or delete one. Then exit --edit mode and save. If you look, the expiry date for the key will have changed. There is either a bug in the software telling you it can't or a bug in it doing it when it's not supposed to.

Kurt.