On 07/15/2014 03:00 PM, Otto de Voogd wrote:
> Actually, I'd like Enigmail to either show clearly that a key is revoked
> (as one would see when querying the keyserver), or not show revoked keys
> at all.

The keyservers do not check whether the revocation is cryptographically
correct, so their "(revoked)" is merely advisory.  Even if they did
check the cryptographic validity, you probably don't want to rely on
them doing the check correctly (that is, the local client should verify
the revocation anyway).

I agree that the standard operation should be simpler from what the end
user sees, but that doesn't mean that we should just believe the
response from the keyserver directly.

It may mean that we need to fetch more data and do some local processing
on it before providing more UI, though.

        --dkg

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
enigmail-users mailing list
[email protected]
To unsubscribe or make changes to your subscription click here:
https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net

Reply via email to