[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Sks-devel] sks should not allow id cert packets after a subkey
From: |
Kristian Fiskerstrand |
Subject: |
Re: [Sks-devel] sks should not allow id cert packets after a subkey |
Date: |
Tue, 31 Jul 2012 00:54:06 +0200 |
User-agent: |
Mozilla/5.0 (Windows NT 6.1; WOW64; rv:14.0) Gecko/20120713 Thunderbird/14.0 |
On 2012-07-31 00:32, Daniel Kahn Gillmor wrote:
> I think his analysis is correct, although:
>
> 0) i don't have a patch to propose, and
>
> 1) i'm not sure how to deploy such a fix across the whole keyserver
> network, since it looks to me like it would effectively appear as a
> "filter" change.
>
> any thoughts on how to address this?
Hi Daniel,
If you don't mind, please open a ticket at [0].
If it indeed is in error, it might not be necessary with a filter
change, it might be something that can be fixed in the cleaning of keys,
which is a less intrusive change (removing the signature at all). But if
you open a ticket we can discuss it.
(It has been a while since I read the specs, so I will have to re-read a
bit at least.)
[0] https://bitbucket.org/skskeyserver/sks-keyserver/issues/new
--
----------------------------
Kristian Fiskerstrand
http://www.sumptuouscapital.com
Twitter: @krifisk
----------------------------
Corruptissima re publica plurimæ leges
The greater the degeneration of the republic, the more of its laws
----------------------------
This email was digitally signed using the OpenPGP
standard. If you want to read more about this
The book: Sending Emails - The Safe Way: An
introduction to OpenPGP security is now
available in both Amazon Kindle and Paperback
format at
http://www.amazon.com/dp/B006RSG1S4/
----------------------------
Public PGP key 0xE3EDFAE3 at http://www.sumptuouscapital.com/pgp/
signature.asc
Description: OpenPGP digital signature