-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 08/09/2015 23:20, Mike Acker wrote:
> 2. interfacing w ith the keyserver needs to be automated   e.g. if
> I sign your key it might be best if the programming then updated
> the keyserver by default .

Speaking from a user PoV -

I instinctively back away from actions-by-default.  My preference here
would be a dialog - update the keyserver now/later.  "Later" in effect
provides a nag screen, but gives newer users time to think about what
they are doing.

A related issue - I've seen many people not really understand the Web
of Trust.  An urgent need is to educate them about local signing for
less investigated signatures.  There isn't much you can do about those
who take the lazy route and sign keys without any investigation, but
somehow we have to try to rein in un-investigated keys being uploaded.

Not trying to teach granny to suck eggs :-) but this is my immediate
reaction.

Anne
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iEYEARECAAYFAlXv94kACgkQj93fyh4cnBf5igCfSrj2bC4DKMiRe1MLY6XWCG2A
spQAnihQ3O8yuZtvHK9DGsCgf3t8Wefe
=nboO
-----END PGP SIGNATURE-----

_______________________________________________
enigmail-users mailing list
[email protected]
To unsubscribe or make changes to your subscription click here:
https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net

Reply via email to