"Andreas K. Huettel" <[email protected]> writes: > This kind of branches out into three questions. > > 1) What types of keys and standards to we require for Gentoo package > management and infrastructure (i.e. GLEP 63). > >> What I think makes sense right now is to update GLEP 63 to require >> RFC4880 compliant keys, with some explicitly permitted extensions (like >> curve 25519 support). > > This makes sense here. The current v4 is not "badly broken" in any way that > I know of at the moment. So let's stick to it as much as possible for now > and allow some minimal functional extensions, which are ideally compatible > with all the software out there.
This is the natural thing we should do to avoid making the problem worse, agreed.
