[openpgp] Re: I-D Action: draft-ietf-openpgp-replacementke y-06.txt

Heiko Schäfer <[email protected]>
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
Hello Andrew, list,

I reviewed version 05 of this draft, and just compared the changes since 
then.

The current git version (and editor's copy), which is two commits ahead 
of draft-ietf-openpgp-replacementkey-06.txt, strikes me as a very good 
state. I have no nits or complaints about it.


While reading the draft, one question/idea arose for me:

Could it be useful to specify that a certificate holder can add a 
replacement key subpacket to the unhashed area (if they have lost 
control of their private key material)?

I don't know what guidance should be given to implementers for how to 
deal with an unhashed replacement key subpacket. However, I think when 
obtaining certificates from a verifying keyserver, unhashed replacement 
key subpackets could bring real world benefits.

If no one is excited about fleshing out and specifying unhashed 
replacement key subpackets, then I'm happy to leave the idea unpursued. 
I just wanted to raise it as a question.

Thanks, regards,
Heiko

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.