1.4.3 // proper syntax for --edit-key cross-certify ?

David Shaw dshaw at jabberwocky.com
Thu Apr 6 17:03:44 CEST 2006


On Thu, Apr 06, 2006 at 09:51:32AM -0400, vedaal at hush.com wrote:
> >Message: 6
> >Date: Wed, 5 Apr 2006 22:02:16 -0400
> >From: David Shaw <dshaw at jabberwocky.com>
> >Subject: Re: 1.4.3 // proper syntax for --edit-key cross-certify ?
> 
> >PGP does not generate signing subkeys.  You generated a RSA 
> >encryption
> >key that happened to be without key flags (I guess that version of 
> 
> >PGP
> >didn't use them yet), and so it appears as a RSA sign+encrypt key 
> >in
> >GnuPG.
> 
> well,
> it is an 'atypical' pgp build ;-)
> 
> but the subkey is recognized by gnupg as a 'signing' subkey,
> and moreover, is 'forced' by gnupg front ends to be used for 
> signing
> (there is no '!' indicator available to put as an option in 
> gpg.conf)

PGP generated keys are not any different than GPG generated keys in
this regard.  Go ahead and use a ! if you like.

David



More information about the Gnupg-users mailing list