Reading new key packages (Re: Coexistence with OpenPGP/IETF)

Werner Koch wk at gnupg.org
Tue Jan 2 15:22:07 CET 2024


On Tue,  2 Jan 2024 13:31, Andrew Gallagher said:

> Hi, Werner. Would allowing type 40 subpackets in v6 sigs as well as v4
> address this concern?

The Literal Data Meta Hash is specified as

  This subpacket MAY be used to protect the meta data from the Literal
  Data Packet with V4 signatures. [...]

and as such a band-aid for a long standing problem.  Sure, you may use it
for v6 signatures.  But after all why should you do it, given that it
was removed from crypto-refresh for some incomprehensible reason.


Shalom-Salam,

   Werner

-- 
The pioneers of a warless world are the youth that
refuse military service.             - A. Einstein
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openpgp-digital-signature.asc
Type: application/pgp-signature
Size: 247 bytes
Desc: not available
URL: <https://librepgp.org/pipermail/librepgp-discuss/attachments/20240102/f3dd247c/attachment.sig>


More information about the LibrePGP-discuss mailing list