Question About Accumulated Bad Signatures in Public Key

John W. Moore III jmoore3rd at bellsouth.net
Sat Jul 25 01:36:58 CEST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Erik Lotspeich wrote:
> Hi,
> 
> The public key that I use for work has accumulated various "bad
> signatures".  To be honest, I don't know how these signatures got there.
>  Anyway, I can use GPG to "clean" the public key and remove them.
> 
> Public key servers do not seem to scrub or clean public keys.  Is it a
> reasonable thing to delete the public key and re-add it?  This doesn't
> seem to be something that most public keyservers allow or recommend.  Or
> is it normal for bad signatures to accumulate over the years and it is
> to be expected.
> 
> Note that in my case the bad signatures are redundant since there are
> good, valid, signatures in addition to the valid bad ones by those
> individuals.
> 
> I hope that I've explained this clearly.  I've searched on the Internet
> and I haven't seen a definitive answer.

The simple & direct Answer is that anything that gets recorded on
Keyservers _stays_ there forever.  :-\

There is *no* was to delete a Key from the Public Keyservers.

JOHN ;)
Timestamp: Friday 24 Jul 2009, 19:36  --400 (Eastern Daylight Time)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10-svn5085: (MingW32)
Comment: Public Key at:  http://tinyurl.com/8cpho
Comment: Gossamer Spider Web of Trust: http://www.gswot.org
Comment: Personal Web Page:  http://tinyurl.com/yzhbhx

iQEcBAEBCgAGBQJKakWXAAoJEBCGy9eAtCsPWvAH/3Q4pOZ/6URxQw0gi22+zOUw
gwaqDYC/Vu96UoF+DCFV6/ucL4x1YvynnXPwrDBaxNLF5iGXP9Lgbr4CR26uS6t7
VYEhL0w3o+kXPFdqW1k3ZGHNrLiENPr6r9DQ8IlJ1g4l3fCwsABStqjExUS6nxyU
kEbpD7zQUc24dbLVsyygdoacFAyBgPP+8SCkmtpFf7K3+sdLTrBvkI5/O/uQH6dx
RpvfkK5XlbeRzwTfaVDk3MHuBBDlU1MOz3C1ALQmifNtux83BrwlNpGbjwMPj471
cRfO2oT4cyo18NoXgQ3I66EXZdgwAMPonjptZqwrVGsh7xpvUMGQhn7lp+X5xVE=
=HSQ/
-----END PGP SIGNATURE-----



More information about the Gnupg-users mailing list