This IS about GD - a proposal on dealing with the problem

Zeljko Vrba zvrba at globalnet.hr
Sun Sep 11 07:58:00 CEST 2005


Pawel Shajdo wrote:
> 
> I think this is public more keyservers design problem than GD. Keyserver
> should accept new signatures only from key owner.
> 

Hm, maybe to define a "key upload format" which must be signed with the
uploaded key itself (analogon of PKCS#10)? Of course, the public key
itself should have some flag set to "signed upload only" so that the
server doesn't accept it without the corresponding signature.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 256 bytes
Desc: OpenPGP digital signature
Url : /pipermail/attachments/20050911/80a578f6/signature.pgp


More information about the Gnupg-users mailing list