[8158] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Is PGP broken?

daemon@ATHENA.MIT.EDU (Russell Nelson)
Sun Dec 3 02:45:39 2000

From: Russell Nelson <nelson@crynwr.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Date: Fri,  1 Dec 2000 20:49:29 -0500 (EST)
To: cryptography@c2.net
In-Reply-To: <200011290914.KAA30802@rom.antech.de>
Message-ID: <14888.20407.263515.669438@desk.crynwr.com>

Stefan Kelm writes:
 > BTW, what do you mean by "point-source PGP signing"?

Instead of leaving your key signing up to your friends, PGP could
benefit from a policy-based signature.  You could come up with any
number of policies:
  o This keyholder is a Mason/Scout/Rotarian.
  o This keyholder is a Catholic/Mormon/Lutheran/Quaker.
  o This keyholder paid $X to sign their key (where X is a number large
    enough that key abandonment has consequences).
  o This keyholder has $Y in escrow, to be paid out under some
    circumstances.
  o This keyholder has identified themselves to a Notary Public.  A
    photocopy of the identification is on file.
  o And last but not least: this keyholder publishes their key's
    signature weekly in the Sunday New York Times.

-- 
-russ nelson <sig@russnelson.com>  http://russnelson.com | If I knew the
Crynwr sells support for free software  | PGPok | destination of the
521 Pleasant Valley Rd. | +1 315 268 1925 voice | handbasket, I never would
Potsdam, NY 13676-3213  | +1 315 268 9201 FAX   | have gotten into it!


home help back first fref pref prev next nref lref last post