Implications of a common private keys directory in 2.1

MFPA 2014-667rhzu3dc-lists-groups at riseup.net
Sat Dec 3 18:21:47 CET 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512



On Saturday 3 December 2016 at 2:35:09 PM, in
<mid:17f5cadc-c7fb-c43a-a141-5d269ab45eaa at digitalbrains.com>, Peter
Lebbing wrote:-


> An option --only-try-secret <keyID> would solve both
> (your software
> would know which to try for a given nym account), but
> such an option is
> not available. You could try to make the case that
> such an option would
> be a good idea to implement. It would serve more
> scenarios than just
> yours. For instance, people with smartcards could use
> it when a message
> is also encrypted to an on-disk key, when they can't
> or don't want to
> insert their smartcard. And if somebody knows which
> key is the hidden
> recipient, but has multiple secret keys, it would
> save them declining
> all the dialogs for the keys that aren't the recipient.

If the recipients are hidden, doesn't GnuPG first try the key set with
- --default-key, followed by any keys set with --try-secret-key? That is
sufficient for your smartcard and known-hidden-key examples, but not
for Caro's situation. And I don't think --try-secret-key can be
followed by --skip-hidden-recipients to mean "try this/these key(s)
and if they won't decrypt it, give up on hidden recipients".


- --
Best regards

MFPA                  <mailto:2014-667rhzu3dc-lists-groups at riseup.net>

Only dead fish go with the flow
-----BEGIN PGP SIGNATURE-----
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=
=w7RF
-----END PGP SIGNATURE-----




More information about the Gnupg-users mailing list