-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

the question to be settled is "do I trust the key?"   completely?  
possibly?   or I have no resason to trust it at all.   This is related
to the trust level and you derive that from the previous signatures
attached to the key -- or from your own knowlege.

I would sign the key if I meant to help the other party to build trust
in their key.    but I don't see that I would then upload their public
key,-- I don't see how that would work unless the key-server combines my
update with whatever she already has up there....   I don't think that
happens -- anymore than uploading a revoke key will automatically
invalid the key that I have on the server.   I have to depend on the
other party checking for a revoke signature -- "AFIK"

the one thing that we should not do is dilute the mechanism

I'm on Enigmain 1.8.2 using LMDE/2 MINT right now -- I can't sign a key
using ENIGMAIL; I have to use command line.   I don't mind doing that by
the dialog should get fixed sometime .

On 05/26/2015 02:17 PM, Daniel Kahn Gillmor wrote:
> On Tue 2015-05-26 11:50:23 -0400, Patrick Brunschwig wrote:
>
>> I would definitely want the "owner trust" and "validity" columns to be
>> merged for non-expert users. The idea should be that users should only
>> specify if they verified the key or not. Depending on this, the owner
>> trust level and signature should be created automatically (or not).
>> I'd replace the validity column with a "share" (upload to key server)
>> column.
>
> there should be no ownertrust set on any key in the normal case about
> whether the user has verified the key or not.
>
> I agree with Patrick that we might not want to put ownertrust columns in
> place at all for the normal case -- let people start by using the key
> manager just to keep track of their own verifications.
>
> If a user wants to start relying on other people to certify keys, then
> we could introduce ownertrust -- but in some sense, that's a different
> view of the keyring entirely.  Please keep ownertrust and user ID
> validity as orthogonal concepts!
>
>          --dkg
>
> _______________________________________________
> enigmail-users mailing list
> [email protected]
> To unsubscribe or make changes to your subscription click here:
> https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net

- -- 
/Mike
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBCAAGBQJVZMHgAAoJEMxYQmPg90u5Ib0H/3mI7DUoeUa4H4Wpt4sAvjcO
cy0iSAwE1idiBuZ5jKbIcYPeAERDKTDcWTe1ekdNSZuHpi0xCwPI1m+mKH07O87J
HjrzUy3JgB4TQZAEeTm2KE4b2pUVFXOTo19ghx7eGmszM6KwA8PRASEbxF4UyBfI
bBYabxNkqNDrSSXfz05ki/BHs2495FWLmI6fu2DOQ1e63R3Tusl5ebtMD4JJB1vK
c9M3Y70/bSShwRD9WL7ZCs0BMUgyzo3MSPnBqjw9NNhN895THS48GT1CSf5Z0PKY
ICiSQ7zYQ8Acq2OxQKNqMPnwkhx+hAsY9K6F53s8iXK5nXKGClo4O78Wi1yW89w=
=QWrQ
-----END PGP SIGNATURE-----


_______________________________________________
enigmail-users mailing list
[email protected]
To unsubscribe or make changes to your subscription click here:
https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net

Reply via email to