Am Mittwoch 12 Januar 2011 17:44:48 schrieb Daniel Kahn Gillmor:
> On 01/12/2011 11:39 AM, Hauke Laging wrote:
> > a) usual ("not thought about") email, just as a first hard line of
> > defense against forgery
> 
> What do you think you would gain from a signature made by an individual
> if they did not think they were making it?

If only one person is capable of making a signature then it's not important 
whether he "thinks" he made it.


> How is this a "hard line of defense against forgery" ?

Let's take this email as an example. I write it on my PC which may be more 
secure than the average system but has all the weaknesses of a system which 
does all the daily work.

I mean: It is POSSIBLE to steal my secret key but it is not EASY. For normal 
email communication I regard this as enough. For signing treaties or other 
keys I use other keys (and a different environment).


Hauke
-- 
PGP: D44C 6A5B 71B0 427C CED3 025C BD7D 6D27 ECCB 5814

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to