On Thu, 2013-01-10 at 09:48 +0000, Tom Galloway wrote: > Nick has raised an issue on FreedomBuddy that there should be some > tests available to confirm what FreedomBuddy does with data that has > been signed/encrypted by expired GPG keys. > > I've been able to confirm that FreedomBuddy correctly handles this > situation by not decrypting the data but I've been unable to create a > repeatable test to cover this issue. > > The closest I got was to create a GPG key with an expiry date of > tomorrow. The test would then be able to decrypt the data (TEST FAIL) > until tomorrow+1 when it would stop decrypting the data (TEST PASS). > > This means that the test is repeatable but only 2 days after the GPG > key was created which isn't ideal. > > Does anyone on the list know of a way of being able to test this?
I'd say UML + change the system clock. best, -- mirsal
signature.asc
Description: This is a digitally signed message part
_______________________________________________ Freedombox-discuss mailing list [email protected] http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/freedombox-discuss
