Question regarding unknown certificates

Werner Koch wk at gnupg.org
Wed Jan 4 10:38:29 CET 2012


On Tue,  3 Jan 2012 22:37, jerome at jeromebaum.com said:

> of people happy to help out with general crypto-related questions. In my
> mind for most cases the chain model is overly risky, no?)

Yes.  To make it work it requires online revocation checks.  That opens
yet another can of worms.  See also the recent discussion thread on
coderpunks about revocations of software signing certificates.


Shalom-Salam,

   Werner


-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.




More information about the Gnupg-users mailing list