Signing already-encrypted files (all to self)?

Chris Poole lists at
Fri Nov 11 20:24:17 CET 2011


I have thousands of files in a maildir directory.

I've encrypted them all, individually, with the recipient as myself.
Just in case someone steals the machine or something.

It occurs to me it would be a good idea to sign these emails. Making
the assumption that I can trust they haven't already been tampered
with, is it OK to simply run

    gpg -o somefile.gpg -s somefile.gpg

or is it better to decrypt them all, and then sign and encrypt in one go?


Chris Poole

