[openpgp] Re: review of draft-ietf-openpgp-persistent-symmet ric-keys-01
Falko Strenzke <[email protected]>
| Newsgroups | gmane.ietf.openpgp |
|---|---|
| Organization | MTG AG |
| Message-ID | <[email protected]> |
Am 11.09.25 um 16:28 schrieb Daniel Huigens: >> But what I think the draft should account for in the private key >> packets - under the assumption that they will be of a new type - is a >> list of user IDs this key has been shared with. I think there is >> consensus that public key packets with symmetric keys should not be >> exported. So tracking the key holder group in the private key itself >> would be the logical solution. > > In my view, this could also be managed by the application by storing > metadata external to the key. Giving it a second thought, my proposed mechanism would be unreliable anyway: If A exports a secret key to B, and afterwards A exports the same key to C, B would still not now that the key is now also shared with B. Thus it seems this problem can't be reliably solved with a user list in the key. Falko -- *MTG AG* Dr. Falko Strenzke Phone: +49 6151 8000 24 E-Mail: [email protected] Web: mtg.de <https://www.mtg.de> ------------------------------------------------------------------------ MTG AG - Dolivostr. 11 - 64293 Darmstadt, Germany Commercial register: HRB 8901 Register Court: Amtsgericht Darmstadt Management Board: Jürgen Ruf (CEO), Tamer Kemeröz Chairman of the Supervisory Board: Dr. Thomas Milde This email may contain confidential and/or privileged information. If you are not the correct recipient or have received this email in error, please inform the sender immediately and delete this email.Unauthorised copying or distribution of this email is not permitted. Data protection information: Privacy policy <https://www.mtg.de/en/privacy-policy> _______________________________________________ openpgp mailing list -- [email protected] To unsubscribe send an email to [email protected]
smime.p7s
(application/pkcs7-signature, 4.9 KB) - not displayed