Adding new UID problems.

David Shaw dshaw@jabberwocky.com
Tue Jun 3 18:30:07 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tue, Jun 03, 2003 at 04:52:42PM +0200, Werner Koch wrote:
> On Tue, 3 Jun 2003 13:46:08 +0100, Stewart V Wright said:
> 
> > Could this problem be a result of the openpgp option?
> 
> No.  It is a keyserver problem.  Some keyservers do run newer
> software without these problems or at least with feature to remove the
> invalid stuff from other keyservers.
> 
> > Is there anything I can do to recover my key, or should I revoke and
> > start from scratch?
> 
> IIRC, http://keyserver.kjsl.com is a fixed pksd keyserver.
> 
> Hmmm, we should add a page to www.gnupg.org with a list of good
> keyservers. 
> 
> David, I guess you have a list of those?

I did add some code to the PKS tree to at least avoid the worst
problems (it will reject additional subkeys rather than corrupting
them), but this is a far cry from full subkey support.

My current recommendation is to use the SKS keyservers.

  hkp://keyserver.bu.edu
  hkp://sks.keyserver.penguin.de
  hkp://sks.dnsalias.net
  hkp://ensemble02.cs.cornell.edu

Any of those, or hkp://keyserver.kjsl.com will work correctly with
multiple subkeys.

It is unfortunate that the usual recommendation of "use
wwwkeys.pgp.net" is no longer the right answer as some of the servers
in the wwwkeys rotation have subkey bugs.

David
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3-cvs (GNU/Linux)
Comment: Key available at http://www.jabberwocky.com/david/keys.asc

iD8DBQE+3M1U4mZch0nhy8kRAp6jAJ9SKXxKog4tlB127fI7vSZlG86Y+QCeK23b
Hvc1ug/LXy2WNsSJiV23Dfw=
=cjhz
-----END PGP SIGNATURE-----