[Q] DSA 1024-bit limit.

Daniel Carrera dcarrera@math.umd.edu
Wed May 14 00:29:02 2003


--UlVJffcvxoiEqYs2
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

> You can have more than one key pair on your keyring. To create a key
> like that of David Shaw (or mine) you create a new key choosing the
> option (5) RSA (sign only). Then you add the other (sub) keys:

Thanks.  Now I have a 2048-bit RSA key as well.

Where can I learn more about how subkeys work?  I just tried to do=20
something and I goofed.  These are my current keys:

Command> list daniel
pub  1024D/0FEBCEC3  created: 2003-05-10 expires: 2005-05-09 trust: u/u
sub  2048g/0D1C25EC  created: 2003-05-10 expires: 2005-05-09
sub  2048R/E3CA8FAE  created: 2003-05-13 expires: 2006-05-12
(1). Daniel Carrera (PhD Student, Math) <dcarrera@math.umd.edu>

I tried to change the expire date of the ElGamal key to 2006, but instead=
=20
it changed that of the DSA key:

Command> expire 0D1C25EC
[snip]                 =20
pub  1024D/0FEBCEC3  created: 2003-05-10 expires: 2006-05-12 trust: u/u
sub  2048g/0D1C25EC  created: 2003-05-10 expires: 2005-05-09
sub  2048R/E3CA8FAE  created: 2003-05-13 expires: 2006-05-12


What just happened there?

> You can have either DSA (sign) and ElGamal (encrypt), or stay with RSA,
> which will allow you to have a bigger signing subkey (2048 bits for
> example).

Great.  How do I do that? I don't mean to ask too many RTFM questions.  I=
=20
am reading the FM, but I don't always find the information I want there.
For instance, the man page tells me how to sign keys, but not how to use=20
an alternate key for signing.

Thanks for the help.
--=20
Daniel Carrera         | OpenPGP fingerprint:
Graduate TA, Math Dept | C678 4F28 6418 6A62 F186 98FC 9E04 B9A0 0FEB CEC3
UMD  (301) 405-5137    | http://www.math.umd.edu/~dcarrera/pgp/key.html

--UlVJffcvxoiEqYs2
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (SunOS)

iQEVAwUBPsFx2ZMuikfjyo+uAQIF3wf8CI5nOnCd8GqEFaz97S94AJD9j64WNfX5
ZX4X2BSjW3XEZdAjg/0ibiwc8b9DGnHzhvKLZgys6NMvvOg/fulorPiIf9hDANzw
4CosrpTS4zrcQHuQm7t+m/zF6B7HztsFUPDtJvsXC2dPs6Kx3h6oMkoQXvZIvjLL
zc48Wop1hCkqSSwCLFEVLwjapuBq6uDhn2Mer4GO6RqVVNDLgkg4nxsaUNLhnfOs
HuG8/HiB3B++aKFsVsEgnGIuawmhhw6FXJzzAbESqKBlGJ2N9RH8qgjGNAnIGGIk
/fcyXicZWdbik1VGYegqPOiW4DAumi3n7tbMBZhsZAlsulEoabCJnw==
=GyxB
-----END PGP SIGNATURE-----

--UlVJffcvxoiEqYs2--