{gnupg 2.1.6} Howto change s2k cipher from AES -> AES256?

thomas dieamme at googlemail.com
Wed Aug 5 15:02:02 CEST 2015

thx for your feedback.

>2015-07-20 - Werner Koch schrieb:
>With GnuPG 2.1 the s2k options are only used for --symmetric encryption.

Ok, but the secret Keys in "private-keys-v1.d" are
encrypted with (symmetric) AES128.

> Right now that is not possible because it would
> break too many old installations.

Ok, but can the hash algo changed to sha2?

If i understand it right, with gnupg < 2.1.x, the private keys in
the sec Keyring are stored with the usage of a stronger hash algo.

My question is, why securing the private key's with sha1?

Best regards,

More information about the Gnupg-users mailing list