Clarification on purpose of subordinate keys
Charly Avital
shavital at mac.com
Mon Mar 28 08:53:30 CEST 2005
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
John,
here's the information I get on your key:
pub 1024D/F65A739E created: 2002-10-02 expires: never usage: CS
trust: unknown validity: unknown
sub 1024R/C7658196 created: 2003-10-02 expires: never usage: E
sub 1024g/C6C536C3 created: 2002-10-02 expired: 2003-10-02 usage: E
sub 1024D/B23241CB created: 2003-10-01 expires: never usage: SA
[ unknown] (1). "John M. Harrold" <jmh at member.fsf.org>
[ unknown] (2) John Mark Harrold <jmh17 at pitt.edu>
[ unknown] (3) [jpeg image of size 5337]
On 2003-10-01 you generated an additional subkey B23241CB (usage: SA =
Sign Authenticate). This is the subkey that is being used for signing,
instead of the primary key F65A739E. In order to authenticate your
signature, the recipient of your signed messages must have this
additional subkey in your key's keyblock, in his/her pubring.
The other subkeys (usage: E) are used to encrypt (to you).
Don't pay attention to the "unknown", it means that in my keyring, your
key's trust is unknown, because I have not signed your key and have not
assigned trust to it.
Charly
On Mar 27, 2005, at 5:50 PM, John Harrold wrote:
> Hello,
>
> I've been signing my emails with my gpg key (F65A739E) at least that
> is what
> mutt says. However, when it's sent it appears to be signed with a
> sub key
> (B23241CB). Can someone explain the purpose of subordinate keys and
> what I'm
> doing wrong?
>
> -----------------------------
> pub 1024D/F65A739E 2002-10-02
> uid "John M. Harrold" <jmh at member.fsf.org>
> uid John Mark Harrold <jmh17 at pitt.edu>
> uid [jpeg image of size 5337]
> sub 1024D/B23241CB 2003-10-01
> sub 1024R/C7658196 2003-10-02
>
> [...]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (Darwin)
Comment: GnuPG for Privacy
iQIVAwUBQkep+G69XHxycyfPAQhw+w/9HSpvO4a9id4k8/siqZEMDAFgXh7KePlW
iYwYe6fS0d3JUoeXsMH6lo1+sVu0aWuJtPgEi4tbfebY50sWVHp2/FSY2a2Xvlkb
vviBTQ+gT6aRoLCiJsm5lMIsCVIuaZ6uMRHGxYAVLLIUCip4igW4uq51DhvCX2Zz
a2ldaedh/mFYeKsml5GXFTqqW0zWvB1Mj7YA77yJq6Ak8gV0vh0FKUMSHJt0dWHe
TcIykaJlLGjBAVjM01b1GRkkuRuyza9PO7P9JT6ILuV/cibKQHF4xdk9FwLROCgP
Y/izs/Fx8ZygxaaO+LXKZDheD77kr+FTPrhhn6HBdjL7skPRSHqg+wtYWk0bZDZJ
SvMMRpBh4AVBWeJfyfc7D/JAXlJttApoDf15T47u1VbPU7nJLQYqzkCvPttfrOrF
w/iyxO6qeAt5OKEZ6PlKIMyT/JHYoyP0qyyXaLn5gZgbhO8Nwmi3+aKKDDEsT+OF
flWKryGj/4g1GuYivs75V3yKe1IB1Iqxe5LE9+B6+8rcrOpKh0XariORuPaukizo
H3W5yMvOFmdLCHvBGO6GRsNGRkCGX2BnQJ+Nv6MoLQGTqtnmhqoPQ45ZrRBoQEZw
vgqDiZekPgXkbT/GZg6ZtM0S8sDrgKXd7wXknSLMYgygGXKUw5fpbK4QaK/BV5qk
HfVN/flQYAM=
=/o6S
-----END PGP SIGNATURE-----
More information about the Gnupg-users
mailing list