new (2003-11-30) keyanalyze results

Adrian von Bidder avbidder at fortytwo.ch
Mon Dec 1 09:06:08 CET 2003


On Monday 01 December 2003 00:08, David Shaw wrote:

> According to the stats you sent earlier, only around 11% of Elgamal
> sign+encrypt keys have been revoked.  21% are expired.  69% are still
> usable.  (The numbers don't add up to 100 since some keys are both
> revoked and expired, plus I'm rounding).
>
> I hope that when 1.2.4 comes out there will be some more revocations
> since there is nothing else that can be done with a type 20 key in
> 1.2.4.  Still, it is more likely that some of these are forgotten
> keys.

Hmm. I wonder if somebody shouldn't just revoke them. (As proof that they are 
*really* vulnerable). Of course, this is only easy where it's the primary, 
where the selfsig is available.

cheers
-- vbi

-- 
OpenPGP encrypted mail welcome - my key: http://fortytwo.ch/gpg/92082481
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 331 bytes
Desc: signature
Url : /pipermail/attachments/20031201/2dbac61f/attachment.bin


More information about the Gnupg-users mailing list