Re: PGP Key Poisoner

2019-08-12 Thread Playfair via Gnupg-users
Juergen Bruckner via Gnupg-users wrote: > Thats pretty interesting, but the author also says he did this as showcase. > Nontheless, its not really good to have such a tool "in the wild", and > even on a plattform like GitHub A tool like this has been in the wild for several weeks. As skeeto says

Re: allow-non-selfsigned-uid issue with key from keys.openpgp.org that contains no identity information

2019-08-02 Thread Playfair via Gnupg-users
On 8/1/19 4:13 PM, David wrote: > Playfair via Gnupg-users: >> If keys.openpgp.org won't publish a user ID other than a verified email >> address, is its only recourse to remove the user ID? Could it instead >> substitute the hex key ID, fingerprint or a dummy string lik

Re: allow-non-selfsigned-uid issue with key from keys.openpgp.org that contains no identity information

2019-08-01 Thread Playfair via Gnupg-users
On 8/1/19 7:37 AM, Werner Koch via Gnupg-users wrote: > On Mon, 29 Jul 2019 09:43, gnupg-users@gnupg.org said: >> it that way", i think. Perhaps Werner can provide more background on >> why GnuPG is generally resistant to holding OpenPGP certificates that >> have no User ID at all in its local key