[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Migrating to GPG - A mini-HOWTO

Philip Hands wrote:
> Martin Schulze <joey@finlandia.Infodrom.North.DE> writes:
> > If the people that signed the key are still known and also use GnuPG
> > these days, they can sign the new key as well.  If not, the maintainer
> > has to decide what to do.  It's good to have the option to continue
> > with the old key, though.
> Are you saying that people should sign keys received via e-mail,
> rather than face to face ?
> If so, I'm strongly against this.

Only if they met face to face to sign the first key.  Only in that
single case they can trust that key, signing a new one.



Let's call it an accidental feature.  --Larry Wall

Please always Cc to me when replying to me on the lists.

Reply to: