Re: A request for those attending key signing parties

2011-02-01 Thread Thijs Kinkhorst
On Mon, January 31, 2011 21:18, Martin Zobel-Helas wrote: a more theoretical question quite related to this: If one plans to have the key replaced in the keyring, and we have a fellow DD in the keyring who's only trust path to other Debian Developers goes via that key (this might become a

Re: A request for those attending key signing parties

2011-02-01 Thread Jonathan McDowell
On Mon, Jan 31, 2011 at 09:18:18PM +0100, Martin Zobel-Helas wrote: a more theoretical question quite related to this: If one plans to have the key replaced in the keyring, and we have a fellow DD in the keyring who's only trust path to other Debian Developers goes via that key (this might

Re: A request for those attending key signing parties

2011-02-01 Thread Gunnar Wolf
Martin Zobel-Helas dijo [Mon, Jan 31, 2011 at 09:18:18PM +0100]: a more theoretical question quite related to this: If one plans to have the key replaced in the keyring, and we have a fellow DD in the keyring who's only trust path to other Debian Developers goes via that key (this might

A request for those attending key signing parties

2011-01-31 Thread Theodore Ts'o
At the most recent Linux.conf.au pgp keysigning, I noticed a number of Debian developers present. Like me, they had new keys that they offered up for signing, presumably so they could start replacing their 1024DSA keys with stronger keys. If you are signing keys where you've verified the

Re: A request for those attending key signing parties

2011-01-31 Thread Stefano Zacchiroli
On Mon, Jan 31, 2011 at 01:49:26PM -0500, Theodore Ts'o wrote: If you are signing keys where you've verified the identity of fellow Debian developers at a key signing party, please do us all a favor and don't just sign it with your brand-new key --- but *also* sign the DD's key with whatever

Re: A request for those attending key signing parties

2011-01-31 Thread Martin Zobel-Helas
Hi, a more theoretical question quite related to this: If one plans to have the key replaced in the keyring, and we have a fellow DD in the keyring who's only trust path to other Debian Developers goes via that key (this might become a real scenario when we do a bigger round of key