Ian Jackson writes ("Re: [pkg-gnupg-maint] Bug#840669: Need way to avoid agent, 
or reliable way to kill agent"):
>  * Creating a socketpair and setting GNUPG_AGENT_LIFETIME_FD should be
>    documented as a way to get a privately-scoped gnupg.

There is a part missing here where the caller who does this need to
spawn the agent.  I will think about this (and suggest a revised
design) but only if you like the general idea.

I've done this kind of thing before (see watershed(1) for example) so
if you want I can implement it.


Ian Jackson <ijack...@chiark.greenend.org.uk>   These opinions are my own.

If I emailed you from an address @fyvzl.net or @evade.org.uk, that is
a private address which bypasses my fierce spamfilter.

