Re: disconnected binding of sub and master keys

2015-02-25 Thread NIIBE Yutaka
On 02/26/2015 03:22 AM, Matthew Monaco wrote: > I think we should easily be able to create subkeys on our day-to-day machine, I'd understand your point. IIUC, you don't want to export "secret" from an air-gapped machine by any chance. The practice of having air-gapped master key is because of ri

disconnected binding of sub and master keys

2015-02-25 Thread Matthew Monaco
I think we should easily be able to create subkeys on our day-to-day machine, while maintaining an air-gapped master, without transferring secret material back and forth. This seems possible [1][2] using gpgsplit and possibly some hand editing of hex files. By operating an offline master setup, we