On 01.03.2012 17:05, Ike Devolder wrote:
>> 1) Nowadays, your application should be a PGP-signed email. You
>> should also somehow verify that you are who you say you are, for
>> example, by uploading your PGP key or fingerprint to your server or
>> github.
> 
> 
>> i'll do this tonight, i have no access to my keys because i'm at
>> work
> 
> voila,
> 
> fingerprint: 0xdb2277bcd500aa3825610bdddb323392796ca067
> http://pgp.mit.edu:11371/pks/lookup?search=0xDB2277BCD500AA3825610BDDDB323392796CA067&op=vindex&fingerprint=on

Please also switch to PGP/MIME so the signature isn't part of the mail
text, but rather an attachment.

In thunderbird/enigmail it's under account settings -> opengpg security

-- 
Florian Pritz

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to