On Thu, 2013-01-10 at 09:48 +0000, Tom Galloway wrote:
> Nick has raised an issue on FreedomBuddy that there should be some
> tests available to confirm what FreedomBuddy does with data that has
> been signed/encrypted by expired GPG keys.
> 
> I've been able to confirm that FreedomBuddy correctly handles this
> situation by not decrypting the data but I've been unable to create a
> repeatable test to cover this issue.
> 
> The closest I got was to create a GPG key with an expiry date of
> tomorrow. The test would then be able to decrypt the data (TEST FAIL)
> until tomorrow+1 when it would stop decrypting the data (TEST PASS).
> 
> This means that the test is repeatable but only 2 days after the GPG
> key was created which isn't ideal.
> 
> Does anyone on the list know of a way of being able to test this?

I'd say UML + change the system clock.

best,

-- 
mirsal 

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
Freedombox-discuss mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/freedombox-discuss

Reply via email to