How secure is GnuPG

Adrian 'Dagurashibanipal' von Bidder avbidder@fortytwo.ch
Wed Jul 24 08:35:01 2002


--=-oze5u1Z02WzwO3kBSfUH
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

On Tue, 2002-07-23 at 22:39, David Shaw wrote:

> It is very easy to upgrade, and all your keyrings will still work.
> There is no such thing as translation to RSA.  GnuPG 1.0.6 can use RSA
> as well - what was added was the ability to generate new RSA keys.  If
> you have an existing key it should work fine.
>=20
> Downgrading from 1.0.7 to 1.0.6 can be a little sticky, so if you want
> to go back and forth, make a backup of your keyrings.

The specific case of going from 1.0.6 to 1.0.7 is not as easy as I would
expect an upgrade of the minor version to be.

But the 1.0.7 release notes contain a good description of all that's
necessary, basically you have to set your own keys to be trusted
explicitly, and rebuild the trust database.

cheers
-- vbi

--=20
secure email with gpg                         http://fortytwo.ch/gpg

--=-oze5u1Z02WzwO3kBSfUH
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQA9PkrWwj49sl5Lcx8RAlUqAJ9EGdeGbVrRp3hR3qZxToLUwvDd+wCeOnzA
C3WEdnu+WDyca9y+WBxm3ps=
=KqxS
-----END PGP SIGNATURE-----

--=-oze5u1Z02WzwO3kBSfUH--