sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] sks should not allow id cert packets after a subkey


From: Kristian Fiskerstrand
Subject: Re: [Sks-devel] sks should not allow id cert packets after a subkey
Date: Tue, 31 Jul 2012 00:54:06 +0200
User-agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:14.0) Gecko/20120713 Thunderbird/14.0

On 2012-07-31 00:32, Daniel Kahn Gillmor wrote:
> I think his analysis is correct, although:
> 
>  0) i don't have a patch to propose, and
> 
>  1) i'm not sure how to deploy such a fix across the whole keyserver
> network, since it looks to me like it would effectively appear as a
> "filter" change.
> 
> any thoughts on how to address this?

Hi Daniel,

If you don't mind, please open a ticket at [0].

If it indeed is in error, it might not be necessary with a filter
change, it might be something that can be fixed in the cleaning of keys,
which is a less intrusive change (removing the signature at all). But if
you open a ticket we can discuss it.

(It has been a while since I read the specs, so I will have to re-read a
bit at least.)

[0] https://bitbucket.org/skskeyserver/sks-keyserver/issues/new

-- 
----------------------------
Kristian Fiskerstrand
http://www.sumptuouscapital.com
Twitter: @krifisk
----------------------------
Corruptissima re publica plurimæ leges
The greater the degeneration of the republic, the more of its laws
----------------------------
This email was digitally signed using the OpenPGP
standard. If you want to read more about this
The book: Sending Emails - The Safe Way: An
introduction to OpenPGP security is now
available in both Amazon Kindle and Paperback
format at
http://www.amazon.com/dp/B006RSG1S4/
----------------------------
Public PGP key 0xE3EDFAE3 at http://www.sumptuouscapital.com/pgp/

Attachment: signature.asc
Description: OpenPGP digital signature


reply via email to

[Prev in Thread] Current Thread [Next in Thread]