[openpgp] Re: Review of draft-ietf-openpgp-replacementkey-04
Andrew Gallagher <[email protected]>
| Newsgroups | gmane.ietf.openpgp |
|---|---|
| Message-ID | <[email protected]> |
Hi, Falko. On 12 Aug 2025, at 09:19, Falko Strenzke <[email protected]> wrote: > >>> Equivalence doesn’t mean that all userids are valid, it means that they are *as* valid for one primary key as they are for any other in the equivalence set. If [email protected] is claimed by one cert but not verified, then a receiving implementation will treat it as claimed but not verified by the other cert of the set. >>> >>> Put another way, Alice does not “trust eve’s key” - she trusts a particular userid claimed by eve’s key. >>> >>> Does that help? >> Yeah, of course it makes sense to model trust on a per-user-ID basis. In my view that is something that could be mentioned in the document in at least one sentence (even though it might be obvious to a sensible implementer). I’ve used the following language in the editor’s copy, let me know if this is sufficiently unambiguous? — * An "identity" is any unique identifier such as an email address or "real name"; it is not limited to User IDs, for example it may be a record in a local database. * An "identity claim" is any statement, explicit or implied, that an identity belongs to a particular primary key; it does not need to be a certification signature and is not necessarily true. * An "identity link" is an identity claim that is considered to be true and accurate by the receiving implementation. * A "Identity Equivalence Binding" is a doubly-linked, directed relationship between two primary keys, one of which is the stated replacement for the other. * A "Identity Equivalence Set" is a collection of two or more primary keys whose Identity Equivalence Bindings form a maximal connected graph. … The existence of a matching pair of forward- and backward-reference Replacement Key subpackets on the most recent direct self-signatures or key revocations over two primary keys, with each referring to the other primary key, forms an Identity Equivalence Binding. A collection of certificates whose Identity Equivalence Bindings form a maximal connected graph (see {{graph-topology}}) is an Identity Equivalence Set, and all members of that set are said to be Identity Equivalent to each other. If an implementation links a particular identity (such as a User ID or a database record) to one primary key by a means other than Identity Equivalence, then it SHOULD treat that identity as being linked, in the same manner and to the same extent, with each other primary key in the same Identity Equivalence Set. Each such “derived" identity link is a subsidiary relationship of the original “direct" identity link. If the same identity is directly linked into the Identity Equivalence Set by multiple identity claims, the derived link(s) are subsidiary to the strongest or most reliable direct link. A derived identity link is otherwise independent of any identity claims over the other primary keys, or lack thereof. Each distinct identity SHOULD be modelled separately; a direct or derived link to one identity makes no statement any other identities found in the Identity Equivalence Set. -- A _______________________________________________ openpgp mailing list -- [email protected] To unsubscribe send an email to [email protected]
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKR55odxVrielLu+DXB7EBNWQZikFAmibCM4ACgkQXB7EBNWQ Zinx9A/+McpuBpQcRTW8x8COfK3lWHI19niVWlMxSmW47m1KJgGWH7HDFHIxU59T GkL2IGmDGSSTSrk6wxZ1xbkOZLi/RruGRvEhKN44T286JuC/eik7IxK3W1AO2riH 9j1SkMyuvQaIUdUTOOtqecibs5SQPBvUNNvPJ1Hd9hcJZNTj3pUVX4if8PekhhUf 4WxbR/5SzO3EKCpK0ZtE9FbQ8Tyne5rHOXFLkz83EZhFqbJxPtzMPhVI+3XPySFc cVupVf16YTZeC6sOtqA/TlHa813yonlXn3Q2+NAxu2hDM6i/xMEhbrRtQmdHAq/8 zb+k9umirna1JF0tBpWoerJbbSLCTu0rkwzi3Q5F61ChyUxE8jhZb2O2i0EHIUcI AbGBNgQzyjcrdHDo/aoRmvdR51xY07L0X31RH8Ji/qDGiVjPiPV8xIOn1mOGspup FFpYiATyLQ06dAOqOe7UO8JU9NWzrSuLZr3pSI75eHVbL8kreWWs0Dmr1zUO2AEg t42Lsn4Fyi4D/YVpWwvvJEVOkhBHwMjNkP0EDmqT1ksBtQZjbM3L0KzNMCoXe5nT LC/MsaqetY33jVolaLTp+xxgAMCvyuS0SFJSPAVMc8jP8dLhT4h0iB/auCF1Jy3h IRvFnU1WIPb6yPswYdWmhxoBB/q8SmG57n6TTtrCpx7MEjSBHD0= =LQy/ -----END PGP SIGNATURE-----