Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Daniel Clery
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Tangentially related - I've seen docs recommending having your portable keychain have a subkey for signing, and that keychain to lack the master secret key entirely ( and putting that one in an undisclosed secure location), with a different passphras

Re: Key poisoning

2019-08-17 Thread Daniel Clery
Thanks - I knew I was being naive. Is it correct that the thesis that describes the fundamentals of the current reconciliation algorithm is 'Spreading Rumors Cheaply, Quickly, and Reliably'? ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists

Key poisoning

2019-08-14 Thread Daniel Clery
If the keyserver implemented a signer blacklist, (which would scrub the blacklisted signature from any current or incoming public keys), what consequences am I missing? In essence, shadowbanning a signing key. Keyservers without blacklist support would still pass around the toxic keys, but only un