TOFU for GnuPG

Neal H. Walfield neal at
Fri Oct 30 22:08:25 CET 2015

At Fri, 30 Oct 2015 14:32:07 +0000,
MFPA wrote:
> On Friday 30 October 2015 at 11:51:27 AM, in
> <mid:871tcc8thc.wl-neal at>, Neal H. Walfield wrote:
> > Sure.  But your point is a red herring.  There is
> > *currently* no way to do this.  However, the next
> > version of the OpenPGP spec should have a way to do
> > this.
> My point was "there is already a way to do this: use signature
> notations". Is that a red herring?

It's not standardized.  Sure, GnuPG could use a particular notation
for this purpose, but we want to interoperability, which is why this
should be standardized in RFC 4880bis.


More information about the Gnupg-users mailing list