riseup.net OpenPGP Best Practices article

Hauke Laging mailinglisten at hauke-laging.de
Tue Jun 24 19:57:12 CEST 2014


Am Di 24.06.2014, 09:50:04 schrieb Nex6|Bill:

> anykind of "best practice", should
> be simple, so that it encourages a sane baseline for people.

That depends on it whether you need security or the illusion of security 
is enough for you.

IMHO it is one of the main problems that hardly anyone cares about 
telling protection levels apart. "Security" is a really wide spectrum, 
for some beginning at "random six letter passwords". You cannot say in a 
useful sense what is a good recommendation without looking at what is 
needed in the respective situation.


Thus I advocate a standardized set of security levels for data, keys and 
systems. And authentication on the other hand:

http://www.crypto-fuer-alle.de/wishlist/securitylevel/
(German only)


Hauke
-- 
Crypto für alle: http://www.openpgp-schulungen.de/fuer/unterstuetzer/
http://userbase.kde.org/Concepts/OpenPGP_Help_Spread
OpenPGP: 7D82 FB9F D25A 2CE4 5241 6C37 BF4B 8EEF 1A57 1DF5
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 490 bytes
Desc: This is a digitally signed message part.
URL: </pipermail/attachments/20140624/b2b80bee/attachment.sig>


More information about the Gnupg-users mailing list