> --weak-digest SHA1 --disable-cipher-algo 3DES Yeah, but that's ... *bad*. Breaks most of the Web of Trust, makes most cert sigs meaningless, removes the fallback cipher ... I think this is a great example of a cure worse than the disease. :)
Phil Pennock made a post a bit ago detailing his experiment with disabling SHA1. It was informative, to say the least.
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users