[openpgp] Re: Using OpenPGP card hardware security devices w ith modern key packets
Heiko Schäfer <[email protected]>
| Newsgroups | gmane.ietf.openpgp |
|---|---|
| Message-ID | <[email protected]> |
On 7/29/26 7:09 PM, Paul Schaub wrote: > As I understand it, the fingerprint field on the card serves multiple > purposes: > > * Quick identification of keys stored in slots, by either humans and > machines (though this information MUST be treated as unverified). I'd > rate this purpose low priority. > * Positive confirmation that a PGP key has been reconstructed from the > raw cryptographic public key and additional parameters (algorithm ID, > creation time, version number, EC parameters...). I'd rate this > purpose high priority. > > Are there other purposes / use cases I'm not aware of? Thanks again for this impulse! I've made a PR that includes an enumeration of the purposes of the identifier: https://codeberg.org/heiko/openpgp-identifiers-for-legacy-devices/pulls/1 Separately, I also replaced the term "lookup hint" with "identifier". The term "lookup hint" was clearly confusing and unhelpful. While the shortened identifier *can* be reasonably used for lookups in some limited circumstances, that is not its primary function. Thoughts welcome! Heiko _______________________________________________ openpgp mailing list -- [email protected] To unsubscribe send an email to [email protected]