Hello Ives/Michael,

question:
  - would it be necessary to keep the user-signature?

If you mean that we should not remove the user's signature then you are correct. The removal is a bug.

hmm I have a general question on this - when a users makes a CRR than he will do this (99%) for one of two things:

a) he lost his key - if so he cant make a signature

b) the key was stolen - if so the signature is wortless

So whats the idea behind ?

Oliver
--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to