[openpgp] Re: Primary Key Binding sigs on authentication sub keys

Justus Winter <[email protected]>
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
Hi,

Daniel Huigens <[email protected]> writes:

> So, unless folks think it's worth changing that, we could also consider
> deprecating authentication subkeys entirely, and say that an application
> that (for some reason) wants to do authentication using OpenPGP, should
> use a dedicated key/certificate, and just use a normal signing (sub)key?

Wait, what?  Counting individual uses, I think authentication as in
creating signatures using my authentication-capable subkey is my primary
use case for OpenPGP.

FWIW, Sequoia requires primary key binding signatures on signatures
binding authentication-capable subkeys.

Best,
Justus

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
signature.asc (application/pgp-signature, 584 B)
-----BEGIN PGP SIGNATURE-----
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==
=vsfk
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.