[openpgp] Re: I-D Action: draft-ietf-openpgp-replacementke y-06.txt
Heiko Schäfer <[email protected]>
| Newsgroups | gmane.ietf.openpgp |
|---|---|
| Message-ID | <[email protected]> |
Hello Andrew, list, I reviewed version 05 of this draft, and just compared the changes since then. The current git version (and editor's copy), which is two commits ahead of draft-ietf-openpgp-replacementkey-06.txt, strikes me as a very good state. I have no nits or complaints about it. While reading the draft, one question/idea arose for me: Could it be useful to specify that a certificate holder can add a replacement key subpacket to the unhashed area (if they have lost control of their private key material)? I don't know what guidance should be given to implementers for how to deal with an unhashed replacement key subpacket. However, I think when obtaining certificates from a verifying keyserver, unhashed replacement key subpackets could bring real world benefits. If no one is excited about fleshing out and specifying unhashed replacement key subpackets, then I'm happy to leave the idea unpursued. I just wanted to raise it as a question. Thanks, regards, Heiko _______________________________________________ openpgp mailing list -- [email protected] To unsubscribe send an email to [email protected]