Problem with faked-system-time option

MFPA expires2011 at ymail.com
Tue Jun 14 21:25:06 CEST 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Hi


On Tuesday 14 June 2011 at 12:33:08 AM, in
<mid:201106140133.09131.mailinglisten at hauke-laging.de>, Hauke Laging
wrote:

> You should tell apart who has to prove something. Your
> argument is valid if the signer has to prove that he
> has made the signature at (or before or after) a
> certain date and time. His own signature is no proof in
> that case as he can easily fake the timestamp.

> If a third party has to prove that and when the signer
> has signed a document then the signature timestamp is
> perfectly OK.

Suppose the party who originated the document to be signed
subsequently presents (possibly faked) evidence showing the document
to have been prepared later than the signature timestamp. The signer
is now unexpectedly in the position of having to prove something.

- --
Best regards

MFPA                    mailto:expires2011 at ymail.com

There is no snooze button for a cat that wants breakfast
-----BEGIN PGP SIGNATURE-----

iQE7BAEBCgClBQJN97W8nhSAAAAAAEAAVXNpZ25pbmdfa2V5X0lEIHNpZ25pbmdf
a2V5X0ZpbmdlcnByaW50IEAgIE1hc3Rlcl9rZXlfRmluZ2VycHJpbnQgQThBOTBC
OEVBRDBDNkU2OSBCQTIzOUI0NjgxRjFFRjk1MThFNkJENDY0NDdFQ0EwMyBAIEJB
MjM5QjQ2ODFGMUVGOTUxOEU2QkQ0NjQ0N0VDQTAzAAoJEKipC46tDG5ptlID/jG5
iQ/mY7tbhArxIDsT7O6RJcQcN6tMHmtQnQuFlPFUzebh57M1xfTBPn+fHnCJBl5h
oDb/qKKU0OXSwcqrBkE42yhlc4KT2KE8bb9Yw/sqezS+qvijwlHqojnuQPtIby+Q
mY8/54Z0Xj4m0HosIbGgjVXEuoEOHv5kGr0fLzb/
=1qYm
-----END PGP SIGNATURE-----




More information about the Gnupg-users mailing list