Re: PATCH: Less fragile lookup of gpg key

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



At Sat, 01 May 2010 12:54:24 -0700, Junio C Hamano <gitster@xxxxxxxxx> wrote:
Subject: Re: PATCH:  Less fragile lookup of gpg key
> 
> If I have two keys like these:
> 
>     Junio C Hamano <gitster@xxxxxxxxx>
>     Junio Hamano <gitster@xxxxxxxxx>

I'm not an expert on PGP internals or such, but I think that's a really
bad thing to do.  I'm surprised you were able to get gpg to do it in the
first place.  I would have hoped it wouldn't allow it.  As far as I can
tell it's _not_ compatible with other implementations of PGP.

PGP keys normally are searched by the e-mail portion only.  All the
other stuff (comments and the display name, etc.) is for decoration
only.  This is just as it is in e-mail routing too of course.

You can of course have more than one e-mail address per key, but you
should NEVER have more than one key per e-mail.

I.e. it's less reliable in the first place to have two different keys
which can be found using the same e-mail address.

-- 
						Greg A. Woods
						Planix, Inc.

<woods@xxxxxxxxxx>       +1 416 218 0099        http://www.planix.com/

Attachment: pgpOp2F9ElK4E.pgp
Description: PGP signature


[Index of Archives]     [Linux Kernel Development]     [Gcc Help]     [IETF Annouce]     [DCCP]     [Netdev]     [Networking]     [Security]     [V4L]     [Bugtraq]     [Yosemite]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux SCSI]     [Fedora Users]