Re: recommendation for key servers

2021-06-27 Thread Jason Harris via Gnupg-users
There are still SKS servers running, but several are unsynchronized, including, apparently, pgp.mit.edu. Of course, they have the same key import/poisoning problems already mentioned on these lists… Here are the hockeypuck servers I could find, all synchronizing properly and apparently exchan

Re: Difficulty of fixing reconciliation

2019-08-15 Thread Jason Harris via Gnupg-users
> On Aug 15, 2019, at 3:33 PM, Werner Koch wrote: > > On Thu, 15 Aug 2019 00:02, gnupg-users@gnupg.org said: > >> But at least then we will want to add cryptography to see which >> selfsigs are truly legitimate, right? > > That would be the first and most important step to get the keyservers >

Re: Difficulty of fixing reconciliation

2019-08-14 Thread Jason Harris via Gnupg-users
> On Aug 14, 2019, at 6:32 PM, MFPA via Gnupg-users > wrote: > On Wednesday 14 August 2019 at 10:39:56 AM, in > , Alessandro Vesely > via Gnupg-users wrote:- > >> I'm no expert, but it seems to me that 3rd party >> signatures should not >> be allowed. > > Perhaps a "keyserver no-third-party-s

Re: How much load are keyservers willing to handle?

2013-12-18 Thread Jason Harris
debian-security/2013/12/msg00031.html 1) setup your own DNS so you can shut things off if anything goes wrong! (you can use dyn.com or others, no servers required) 2) probably best discussed on the sks-devel list, Reply-To set accordingly 3) try running your own keyserver(s), SKS is easy

GnuPG mirrors

2013-10-05 Thread Jason Harris
rc.org/gcrypt/gnupg/ http://mirrors.dotsrc.org/gnupg/gnupg/ Thanks. -- Jason Harris | PGP: This _is_ PGP-signed, isn't it? jhar...@widomaker.com _|_ Got photons? (TM), (C) 2004 pgprdHkcehbzl.pgp Description: PGP signature ___ Gnupg-us

Re: How to find and verify a trust path?

2013-09-19 Thread Jason Harris
t;make makesum"), "svn diff distinfo" to make sure the "official" FreeBSD SHA256 hashes haven't changed, and might even check the other BSD and Linux distributions' MD5/SHA-1/etc. hashes for the same tarball. Even before a port/package is updated in FreeBSD, I can do

Re: 2.0.20 beta available

2013-04-24 Thread Jason Harris
alpha/gnupg/gnupg-2.0.20-beta118.tar.bz2 Thanks. -- Jason Harris | PGP: This _is_ PGP-signed, isn't it? jhar...@widomaker.com _|_ Got photons? (TM), (C) 2004 pgpE_07nLZ9le.pgp Description: PGP signature ___ Gnupg-users ma

Re: ld.so.1: gpg: fatal: libusb.so.1: open failed: No such file or directory

2011-02-16 Thread Jason Harris
On Wed, Feb 16, 2011 at 12:48:15AM -0500, Robert J. Hansen wrote: > On 2/15/11 11:25 PM, Jason Harris wrote: > > Geez, doesn't anybody READ anymore?! Even _I_ just managed to read: > > Some of us read quite well: others less so. So true. You complained about seeing the ld

Re: ld.so.1: gpg: fatal: libusb.so.1: open failed: No such file or directory

2011-02-15 Thread Jason Harris
On Wed, Feb 16, 2011 at 12:02:43AM -0500, David Shaw wrote: > On Feb 15, 2011, at 11:25 PM, Jason Harris wrote: > > On Tue, Feb 15, 2011 at 05:50:11PM -0500, David Shaw wrote: > > Geez, doesn't anybody READ anymore?! Even _I_ just managed to read: > > So, it is in

Re: ld.so.1: gpg: fatal: libusb.so.1: open failed: No such file or directory

2011-02-15 Thread Jason Harris
READ anymore?! Even _I_ just managed to read: [ldd output quoted to whatever level] >>>> libusb.so.1 => /usr/sfw/lib/libusb.so.1 So, it is in the LD_LIBRARY_PATH quoted above, and therefore IT IS ON THE SYSTEM, right? If I were to guess, LD_LIBRARY_PATH is being ignored/reset... --

gnupg mirrors (was: Re: [Announce] GnuPG 1.4.11 released)

2010-10-23 Thread Jason Harris
tp://ftp.surfnet.nl/pub/security/gnupg/stopped mirroring gpg in 2007 http://gd.tuwien.ac.at/privacy/gnupg/ serves files, but no listings http://www.gnupg.ca/ mirrors website, not files -- Jason Harris | PGP: This _is_ PGP-signed, isn'

Re: [Announce] GnuPG 1.4.11 released

2010-10-18 Thread Jason Harris
s/Mk/bsd.sites.mk have the .tar.bz2{,.sig} files yet. Ever consider publishing a .torrent with web-based seeds? http://mktorrent.sourceforge.net/ should make it easy to generate. Thanks. -- Jason Harris | PGP: This _is_ PGP-signed, isn't it? jhar...@widomaker.com _|_

Re: WoT cluster analysis tools?

2010-08-10 Thread Jason Harris
with a single connection between sets. Any keys which aren't specifically listed are (essentially) only self-signed and also need a connection to/from the strong set. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? jhar...@widomaker.com _|_ web: htt

Re: changing key expiration

2009-08-27 Thread Jason Harris
Bernhard K?mel 1 signature not checked due to a missing key > I downloaded the key so I could revoke the unwanted signatures. That isn't really necessary - it will just clutter your key and the keyservers. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn'

new (2007-12-09) keyanalyze results (+sigcheck)

2007-12-30 Thread Jason Harris
194402 top1000table.html b120c020a7c843fc7a76cc60ffceaddb13a9353d29491 top1000table.html.gz 029b559b576e6f3e5a46854db50fb7c66f5ff0e99707top50table.html 9bcd31ce12d03bcd9b2e83fd5310704940fd107d2489D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_

new (2007-11-25) keyanalyze results (+sigcheck)

2007-12-09 Thread Jason Harris
194398 top1000table.html 8cf9a604f5cf7799c957260074eebfa20320551429506 top1000table.html.gz 9f464af31a83c9a0b04a399e3179d4cff516ac419707top50table.html 9df9d75d005471401faab9bd005e9f1544c5e4962489D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_

new (2007-11-11) keyanalyze results (+sigcheck)

2007-11-12 Thread Jason Harris
194350 top1000table.html 06eee34ef4b44e62ea8569707f594d6bcbedf61529427 top1000table.html.gz 5323d32e1f5e2fe189dd25f5113e4be1657a21f69710top50table.html 6f84087ba24aebfc637addbe28d8f971fd27197c2469D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_

Re: PGP messages getting flagged as spam

2007-10-18 Thread Jason Harris
? Does everyone now have to start publishing lists of the hashes for all their unencrypted, signed messages and the intended recipient(s) for each message? How would these lists be verified? -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_

new (2007-06-24) keyanalyze results (+sigcheck

2007-07-04 Thread Jason Harris
29469 top1000table.html.gz cae4113ba50ea044406ea43f943e2d51ff86760c9712top50table.html 564551becfcd0ad911704c48b1774a1f118e30152529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-06-10) keyanalyze results (+sigcheck)

2007-06-17 Thread Jason Harris
29602 top1000table.html.gz ad7643888b57086d0c88be4d39cc133bc9b05dac9714top50table.html 022e831a11ef152e44e483a65638b1b712f0eea82529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-05-27) keyanalyze results (+sigcheck)

2007-06-03 Thread Jason Harris
29612 top1000table.html.gz 543753bdb2fee73548f6b8e3a2bc9931598946219763top50table.html 846209e98a82e5003577bdea5643041fc9219f092529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-05-13) keyanalyze results (+sigcheck)

2007-05-19 Thread Jason Harris
29669 top1000table.html.gz 34cdd07ae84b2a4514b9ff5efb7bf40f3bb1a65c9785top50table.html bcc7aa2e0e46d1b08bf2324d54f9de7b64826f9a2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-04-29) keyanalyze results (+sigcheck)

2007-05-06 Thread Jason Harris
29638 top1000table.html.gz 25aa72776820f1d3fdfb8fe710ec63bb3c95c0379783top50table.html 2c6f44cf8045d4e5ae172ef84e1b22605251dc432529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-04-15) keyanalyze results (+sigcheck)

2007-04-19 Thread Jason Harris
29651 top1000table.html.gz d1104dc76d1e52f9fb488edf84cc1db5f042e2e09781top50table.html 5cf52de9f2c6ce4979ffa577292970fe340e84bd2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

Re: Check integrity of gnupg-w32cli-1.4.7.exe

2007-04-14 Thread Jason Harris
self > turns up nothing. Choose a different search engine. google.com has several hits for that hash, and dogpile.com shows results from several search engines for that hash. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web:

Re: Problem interoperating with PGP Univeral?

2007-04-08 Thread Jason Harris
G EE81D7633DB00BFDE1DC722211F659471415B654 2007-02-01 1170342237 0 3 0 17 2 00 EE81D7633DB00BFDE1DC722211F659471415B654 (Julian <[EMAIL PROTECTED]> BCC'd) -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAI

new (2007-04-01) keyanalyze results (+sigcheck)

2007-04-05 Thread Jason Harris
29679 top1000table.html.gz 0591cb468b3c1311a76be940e853773aacb3d3779800top50table.html 40a774d1848adec9c6cf3b204b1ea8182fd2a1b22529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

new (2007-03-18) keyanalyze results (+sigcheck)

2007-03-20 Thread Jason Harris
29708 top1000table.html.gz 96623cdd38aeae9904db8df3772bdc0f19f758fe9781top50table.html 4a0ddb9ad55ed7dca50ef41dd36ec75ac3c635042529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kj

Re: signing source code with gpg

2007-03-14 Thread Jason Harris
ast one VALIDSIG from every fingerprint in the list.) NB: This facilitates [re]fetching the key(s) in advance of the signature check to help catch any revocations _and_ removes the need to --[l]sign keys to "memorize" them as "expected" signers and/or to juggle ke

new (2007-03-04) keyanalyze results (+sigcheck)

2007-03-10 Thread Jason Harris
table.html 24fd44baa56b935bb2e161133d9f41ff3c70144a29653 top1000table.html.gz 2dfdcc48bf337724c3de823706c8bdb5d3a53f9b9785top50table.html fddf52c615f22c8dccb9161215e76b989c42b48f2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Keyserver refresh period after gpg --send-keys

2007-02-22 Thread Jason Harris
On Thu, Feb 22, 2007 at 06:33:38PM +0100, Bruno Costacurta wrote: > On Monday 19 February 2007 17:51:02 Jason Harris wrote: > > Specifically, these were in a batch update from SKS to onak/OpenPKSD/pks/ > > etc. (all times are TZ=UTC): > > 2007-02-18 23:02:27.870255691 dis

new (2007-02-18) keyanalyze results (+sigcheck)

2007-02-21 Thread Jason Harris
table.html 36e0127b31c75a1051ba0fc32ff6d973ed468faf29703 top1000table.html.gz be7a6d26967cc3f5021bba2bfa0633fd3b25d3059791top50table.html 16c570a7443f24cb544c8eab20efec045e9fbc2d2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Keyserver refresh period after gpg --send-keys

2007-02-19 Thread Jason Harris
display_new_sig: new sig 2 by 2E604D51 added to 2E604D51 pubmb02 <[EMAIL PROTECTED]> and these were in another batch update: 2007-02-18 23:02:27.870255691 display_new_sig: new sig 71 by 2E604D51 added to 2E604D51 Bruno Costacurta <[EMAIL PROTECTED] 2007-02-18 23:02:27.870319946 displ

new (2007-02-04) keyanalyze results (+sigcheck)

2007-02-09 Thread Jason Harris
table.html a23e213fb8c0a2a6064100d392b337127824fdf429780 top1000table.html.gz dae7b4ddf0d5d71940632bffb9cdbfe9a54cd80d9782top50table.html e26e21e89dc47cbe4a79f8bf775c7eb0edb243412529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2007-01-21) keyanalyze results (+sigcheck)

2007-01-21 Thread Jason Harris
table.html c61d92b8f7f8361555d4c578270d37743cccf11029764 top1000table.html.gz 811ff47a9cc566756426eac42d85d52668f8d8519781top50table.html 4e88e0c17120106099cd5845c58fc17b33018d7b2549D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2007-01-07) keyanalyze results (+sigcheck)

2007-01-08 Thread Jason Harris
table.html 033ed67b22c71f0ed6fe66740a3e8f1ca7293e0d29670 top1000table.html.gz ad9f37767dbdaf186e7028670c1fbe6763ffd3159765top50table.html 17064c0f17b9d83e4a82ce9e4564ce96d7fbbc1e2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-12-24) keyanalyze results (+sigcheck)

2006-12-26 Thread Jason Harris
table.html 35b33efe94b9dda7d408645c95295827147f147729703 top1000table.html.gz 5688b67938e2680e6b9611e266393b213323a98e9778top50table.html 72be4d586527de48feee8cf6931fcdeca9bf01b82529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-06-25) keyanalyze results (+sigcheck)

2006-07-02 Thread Jason Harris
table.html 8f6a49a77df3a85eccab3269c0b12aa603a83b4730035 top1000table.html.gz 1012650fa78cd185cd28cc8e1ae8eba72f6603c410804 top50table.html 969d04994a0940c6b0f407d04642822a18a83dab2529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-06-11) keyanalyze results (+sigcheck)

2006-06-18 Thread Jason Harris
table.html a5ffd88331b1957d3560cacec11e9e9e219aa3d230052 top1000table.html.gz 0bd927f2ec8dbe88efd8152638fc4cadc58ac24d10804 top50table.html 1f8084ce6578d8559d8998fe928ad77b7f2bfcc52529D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-05-28) keyanalyze results (+sigcheck)

2006-05-29 Thread Jason Harris
table.html 75feab961dccdf1f89f498f1127cb24820d07e2829972 top1000table.html.gz f8e6a492a33b28871730c6c61e51bf18cc556b0b10799 top50table.html fa60f6104db7642535c289218499578ed2c3d0f12544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-05-14) keyanalyze results (+sigcheck)

2006-05-21 Thread Jason Harris
table.html 2a8d8035e179ceab45aeb901c69003bd6089094029938 top1000table.html.gz 0bf2d12670f813def17ff312799a80dfa42556b210789 top50table.html b560f460ec3350b76234b5b8267ff1e008ba76b02544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-04-30) keyanalyze results (+sigcheck)

2006-05-07 Thread Jason Harris
table.html 3d48ed7719e6e0cf8f66d1876f10b80d90fa597029956 top1000table.html.gz 1bdfb1066ed3518180d95db17bc1dfa5d97d5c0010776 top50table.html a34f50531c228cc99ac92985e754a7f907f247142544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-04-16) keyanalyze results (+sigcheck)

2006-04-23 Thread Jason Harris
table.html 7e054a1b7d423bf4ead6425a252654eb0a9e40bd29874 top1000table.html.gz 9b6a0a0dbb6b85d7e951f228c1df6db0fa02f53b10776 top50table.html 83a3a2e3a1d33385b01706c729350d9606c19bc72544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-04-02) keyanalyze results (+sigcheck)

2006-04-02 Thread Jason Harris
table.html 0f21e259655d76a377c7bd2a879d492c1cd508bf29891 top1000table.html.gz 5883bd1406c034432ec60637cb2619da9a1e7c3910776 top50table.html ead1d8416085827976f5ed9a9e88bb819650a0fa2544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: URL returned error: 500 when sending key to server

2006-03-19 Thread Jason Harris
mean "Internal Server Error" as with http? I don't know what > to do about this or even if I can do anything about this. I haven't > found any solution here or with google. Any hint greatly appreciated! > Thanks in advance! Hopefully the admins of these servers will

new (2006-03-19) keyanalyze results (+sigcheck)

2006-03-19 Thread Jason Harris
table.html a9e02c0d2e37d042f79ca19580d0a8206b138abc29875 top1000table.html.gz 4f0864a9f27b28166cf4762ac61eb9d23257a10710776 top50table.html ffb4922c1a83ead0d6316366e4e5485de5e2a7cb2544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-03-05) keyanalyze results (+sigcheck)

2006-03-12 Thread Jason Harris
table.html 75f811cc1d420da4f4b9a6aea831835a82fac8c329977 top1000table.html.gz cf55849b2ded63023a6bcff388da2d0823a902fc10779 top50table.html dfc7fdf2deb3ddfb375ee811ce8c04715b0288b12544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-02-19) keyanalyze results (+sigcheck)

2006-02-26 Thread Jason Harris
table.html 97f7c9c49dc802ccc296eabfb0f1f4227f65908f30049 top1000table.html.gz 7b167ed506954f3bfee1ebfa0d5dff67f21035c510771 top50table.html 756af2551f40f00819d79a522235b18f1d05f10f2544D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-02-05) keyanalyze results (+sigcheck)

2006-02-12 Thread Jason Harris
table.html fab0c3335f83206022071e4482de5070bf8dd46429975 top1000table.html.gz 71fa5ae45b87e106e6d9de00f5312d2c005d485f10771 top50table.html 007a8942805745092c82693fb77682f470d5599e2494D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2006-01-08) keyanalyze results (+sigcheck)

2006-01-15 Thread Jason Harris
table.html e506bb7f276b3ee43632998b19084211b9d2951e30083 top1000table.html.gz a28e7f0cd5362b007604f00a1bdd3fca8005b99c10780 top50table.html b1610820aa1e16cabf4b6e4f2e6c07aeb871f8b22514D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-12-25) keyanalyze results (+sigcheck)

2005-12-26 Thread Jason Harris
table.html e506bb7f276b3ee43632998b19084211b9d2951e30083 top1000table.html.gz a28e7f0cd5362b007604f00a1bdd3fca8005b99c10780 top50table.html b1610820aa1e16cabf4b6e4f2e6c07aeb871f8b22514D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-12-11) keyanalyze results (+sigcheck)

2005-12-18 Thread Jason Harris
table.html e506bb7f276b3ee43632998b19084211b9d2951e30083 top1000table.html.gz a28e7f0cd5362b007604f00a1bdd3fca8005b99c10780 top50table.html b1610820aa1e16cabf4b6e4f2e6c07aeb871f8b22514D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-11-13) keyanalyze results (+sigcheck)

2005-11-14 Thread Jason Harris
table.html 57377a5b009885b06c444d9aea86392e6d5bc3c030121 top1000table.html.gz aef23bbfb09a79b083723ab8206a50752c272ea210785 top50table.html 719884cf58db62d417b0624421cc7779527efd1b2554D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-10-30) keyanalyze results (+sigcheck)

2005-10-30 Thread Jason Harris
table.html b337b7ed2195bcd6c0747ea19ac4032efc98348130190 top1000table.html.gz f0255b1e1a0aef19b925b0cba8d2c9c8ba37551410789 top50table.html 3480e6c8561f512c476eb74f2d78d47701b2edb82554D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-10-16) keyanalyze results (+sigcheck)

2005-10-16 Thread Jason Harris
table.html d52e1c405cb167e970f4475a4b9b9a9babd5b0ef30228 top1000table.html.gz a54f6dd2ea497b7a0b5bad758c1e0a8a1d762e7610778 top50table.html 40b84290946d44d87126d31075da13027fe72b802534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-10-02) keyanalyze results (+sigcheck)

2005-10-02 Thread Jason Harris
table.html 53b6f84a522ff51e50ca7aa464560068cbeeb28130145 top1000table.html.gz a0b818d1dc685c364de317ca2adb4b094529faa610778 top50table.html a93b13a379789fde934a552e5be01ea11034b8ff2514D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-09-18) keyanalyze results (+sigcheck)

2005-09-18 Thread Jason Harris
table.html 03abcce67ca888a06771f249f507eb1c9fc2779130107 top1000table.html.gz fceaa0d92d604bbc272339a0f025ac84e1ef864510782 top50table.html abf0af0da327a1558770cbed3c85097936e2bc7a2534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: [Sks-devel] stripping GD sigs (was: Re: clean sigs)

2005-09-09 Thread Jason Harris
On Fri, Sep 09, 2005 at 08:31:35AM -0400, David Shaw wrote: > On Fri, Sep 09, 2005 at 12:22:00AM -0400, Jason Harris wrote: [I'll address your other points later.] > If you insist on presenting a different view to users than the entire > rest of the keyserver net, without any way

Re: [Sks-devel] stripping GD sigs (was: Re: clean sigs)

2005-09-08 Thread Jason Harris
On Thu, Sep 08, 2005 at 11:23:08PM -0400, David Shaw wrote: > On Thu, Sep 08, 2005 at 11:10:23PM -0400, Jason Harris wrote: > > Not at all. Anyone who wants sigs from the GD should use that > > keyserver. They're still available from it, and, remember, > > expired sig

Re: [Sks-devel] stripping GD sigs (was: Re: clean sigs)

2005-09-08 Thread Jason Harris
On Thu, Sep 08, 2005 at 10:28:29PM -0400, David Shaw wrote: > On Thu, Sep 08, 2005 at 10:08:24PM -0400, Jason Harris wrote: > > keyserver.kjsl.com is now stripping all GD sigs. The extra variable > > in kd_search.c and code for 'case 2:' of make_keys_elem(), res

stripping GD sigs (was: Re: clean sigs)

2005-09-08 Thread Jason Harris
make_keys_elem(), respectively: static unsigned char gdkeyid[8] = {0x97, 0x10, 0xB8, 0x9B, 0xCA, 0x57, 0xAD, 0x7C}; if ((keyid.size == 8) && (keyid.offset == 0) && (memcmp (keyid.data, gdkeyid, 8) == 0)) { break;

new (2005-09-04) keyanalyze results (+sigcheck)

2005-09-05 Thread Jason Harris
table.html 8447fc107e1c02788ee5bed7143a13aa608c97d530191 top1000table.html.gz 483d02289f157c12fd4a00a8fa6722a20785bf2a10785 top50table.html 56ac06d6254b663d9ed114144f621cf53c8ea65c2534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-08-21) keyanalyze results (+sigcheck)

2005-08-21 Thread Jason Harris
table.html d360f72be6186cbd44f0742793ff992e26cb7c2e30253 top1000table.html.gz 9e3e836b381fecfa38946c36cbf50a0e6f72413610789 top50table.html a79f628ea931b2a47270ab827ec9e20dc95162052534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: tracing the Web of Trust?

2005-08-11 Thread Jason Harris
id chain of signatures leading > from me to him. > > I imagine that this is a difficult problem. :-) Has anyone solved it > for Joe Average user? See the last paragraph of: http://keyserver.kjsl.com/~jharris/keysigning.html -- Jason Harris | NIC: JH329, PGP: This _

Re: [Sks-devel] Re: zero-length MPIs (was: Re: mpi error with check-trustdb in 1.4.2 - resolved)

2005-08-11 Thread Jason Harris
On Thu, Aug 11, 2005 at 09:54:59PM +0200, Peter Palfrader wrote: > On Thu, 11 Aug 2005, Jason Harris wrote: > > Fetching them from keyserver.kjsl.com is now possible with gnupg-1.4.2. > > To patch pks, add this to the middle of decode_mpi() (in pgputil.c): > > > > /*

zero-length MPIs (was: Re: mpi error with check-trustdb in 1.4.2 - resolved)

2005-08-11 Thread Jason Harris
On Thu, Aug 11, 2005 at 12:02:17PM -0400, Jason Harris wrote: > On Wed, Aug 10, 2005 at 10:30:09PM -0500, John Clizbe wrote: > > Tracked down the two offending keys and deleted them with 1.4.1. They both > > failed to import from a keyserver with 1.4.2 with the same mpi error, so

Re: validate_key_list failed

2005-08-08 Thread Jason Harris
(I've not seen any such problems on FreeBSD 4.x with GPG 1.4.2.) -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got photons? (TM), (C) 2004 pgpFyWeY5zFiX.pgp Description: PGP sig

new (2005-08-07) keyanalyze results (+sigcheck)

2005-08-07 Thread Jason Harris
table.html 8d4bffb3742a167614fb6086a36c366e73ec5fdd30261 top1000table.html.gz 56eef4a6a68dcd62cb6735d11f186d60f509b42a10846 top50table.html b352fe275772434c4750d54719d29ff8e3535f7c2534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: SKS v. unknown HTTP headers (was: Re: IPv6 failover?)

2005-08-05 Thread Jason Harris
On Thu, Aug 04, 2005 at 07:54:09AM -0400, David Shaw wrote: > On Thu, Aug 04, 2005 at 12:24:27AM -0400, Jason Harris wrote: > > Thus, in reality, the "Expect: 100-continue" header appears to be confusing > > SKS (during POSTs). > Hmm. No really good way to fix th

SKS v. unknown HTTP headers (was: Re: IPv6 failover?)

2005-08-03 Thread Jason Harris
On Wed, Aug 03, 2005 at 08:44:18PM -0400, David Shaw wrote: > On Wed, Aug 03, 2005 at 08:18:35PM -0400, Jason Harris wrote: > > Looking at http://curl.haxx.se/libcurl/c/curl_easy_setopt.html , > > this might do the trick: > > > > curl_easy_setopt (..., CURLOPT_I

Re: IPv6 failover?

2005-08-03 Thread Jason Harris
, which always seems to prefer IPv6, doesn't at first succeed. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got photons? (TM), (C) 2004 pgpzELgIB0r

Re: IPv6 failover?

2005-08-03 Thread Jason Harris
On Wed, Aug 03, 2005 at 02:48:16PM -0400, David Shaw wrote: > On Wed, Aug 03, 2005 at 02:32:16PM -0400, Jason Harris wrote: > > Here's one, on a box with IPv6 support but not connectivity: > > > > %gpg --keyserver keyserver.linux.it --send 0xd39da0e3 > >

Re: [Announce] GnuPG 1.4.2 released

2005-08-03 Thread Jason Harris
On Sat, Jul 30, 2005 at 09:28:28PM -0400, David Shaw wrote: > On Sat, Jul 30, 2005 at 02:20:35PM -0400, Jason Harris wrote: > Thought you'd get a kick out of that... :) > Note that in the next release of GnuPG, --with-libcurl will be the > default. (So the more people wh

Re: [Announce] GnuPG 1.4.2 released

2005-07-30 Thread Jason Harris
defined in RFC 2616). Enjoy (responsibly)! -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got photons? (TM), (C) 2004 pgpDoCZiY5

new (2005-07-24) keyanalyze results (+sigcheck)

2005-07-24 Thread Jason Harris
table.html bee92bfedf809a5828365a840e00443f47465f6430298 top1000table.html.gz 9bdf18aeab3060ee7130f5b5aff0c2812756b76010865 top50table.html 203306fcd34c52e8d4787012466983dad7b758142534D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-07-10) keyanalyze results (+sigcheck)

2005-07-10 Thread Jason Harris
table.html 76a25f6578c0044a723ead174bce9e4a02d11a3c30101 top1000table.html.gz 32a420454f06a3d181233cc8c8239c3d2015808710895 top50table.html c710731bd1ef697ba6db1a2436231303904af8ff2639D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: HTTP keyserver creation.

2005-06-28 Thread Jason Harris
On Tue, Jun 28, 2005 at 04:00:54PM +0500, Victor Harutyunyan wrote: > I have installed gnupg-1.4.1 and apache_1.3.3. > How can I configure HTTP keyserver? Try SKS: http://www.nongnu.org/sks/ (Victor appears to be using Debian; can someone point him to a/the packaged version?) --

new (2005-06-26) keyanalyze results (+sigcheck)

2005-06-26 Thread Jason Harris
table.html 6e685336416a71d4952b98dd910f99f63f7c166030382 top1000table.html.gz c693ef22a86ab244e3120e7ebf151170ce61c71710890 top50table.html 27dfe522be1c9f7e8a604b10b72150a338c1e3ec2619D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Corrupt keys

2005-06-21 Thread Jason Harris
on Key sig! CA57AD7C 2004-12-06 PGP Global Directory Verification Key 458 signatures not checked due to missing keys -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got phot

new (2005-06-12) keyanalyze results (+sigcheck)

2005-06-13 Thread Jason Harris
table.html 364609600299db153fceab18b29efa9575d8f9d830404 top1000table.html.gz 6dfd8e1368929ba071c5905cfbabbb79465a377d10893 top50table.html 5d7f4886765b2513b188a80b2369f020ebfa14b82619D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Unsynchronized public and secret key uids

2005-06-07 Thread Jason Harris
o come back when you refresh your key from a keyserver), and recreating and re-signing the userids will add another selfsig to each, but (unless you can do surgery on secring.gpg) that can't be helped now. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn'

new (2005-05-29) keyanalyze results (+sigcheck)

2005-05-31 Thread Jason Harris
table.html 092024e4e842f9e07f99b49fe2f631bea8aa778330334 top1000table.html.gz fad88de3dde4b0a9900dbdea30fb55f89d53178310893 top50table.html c168ccca8e2a13c85ffb8e7e2cd4ff00a07ad0132599D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-05-15) keyanalyze results (+sigcheck)

2005-05-15 Thread Jason Harris
table.html ac659127cf2d5bb391d705cd78ecf239366a637030425 top1000table.html.gz e56eee43c3cf3abfd06ecf395f6ec9d6a1dc2e9410887 top50table.html c386ac676bc0df24f2b7931007bbfc48055d60642639D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Keyserver

2005-05-14 Thread Jason Harris
also subkey safe), which will propagate them to the rest of the keyserver network (without photos).) -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got photons? (TM), (C) 2004 pg

new (2005-05-01) keyanalyze results (+sigcheck)

2005-05-01 Thread Jason Harris
table.html f11f307dafccadbc1600e7b5748710ceaa922ebc30385 top1000table.html.gz 042d7e9d2f0465f4d1e7749812a2fbaeb928efef10898 top50table.html fd0b8b62f5208b74a390d4fff01973db0698f2572429D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: importing large keyring

2005-04-20 Thread Jason Harris
r importing several thousand > keys gpg uses more memory than is available as physical RAM, so it's > continously swapping. After 2 days without significant progress I've > aborted the import. (Out of curiosity, what do you plan to have GPG do with the keys once they're

new (2005-04-17) keyanalyze results (+sigcheck)

2005-04-17 Thread Jason Harris
table.html 89eeec826d5e2923cfa8406942d2ddc5f098389230355 top1000table.html.gz 4f94061558602bbf7dfe999407f96af3022123e710946 top50table.html d5ea1aa85c27442e0d87173d265f18aadc749f0f2429D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

new (2005-04-03) keyanalyze results (+sigcheck)

2005-04-09 Thread Jason Harris
table.html 40501100f167072304086610ff4a6f7f0428ffc330349 top1000table.html.gz b6ae7a04520091fac591d4c80dca9a6492a39be510946 top50table.html 08fb84a189b03da03cbbc2ce6b5ae97f3c3aa9692409D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Shouldn't keyservers store and provide subkeys?

2005-03-24 Thread Jason Harris
ther than creating yet another DNS RR name. I'd be happy to get you going with either an email feed from pks or an SKS feed. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/

Re: Retaining expired sigs

2005-03-22 Thread Jason Harris
On Mon, Mar 21, 2005 at 02:03:06PM -0500, David Shaw wrote: > On Mon, Mar 21, 2005 at 01:41:46PM -0500, Jason Harris wrote: > > As you seem to have concluded, that fact takes precedence in my > > logic, and as I have concluded, it seems to take no precedence in > > y

Re: new (2005-03-20) keyanalyze results (+sigcheck)

2005-03-21 Thread Jason Harris
On Mon, Mar 21, 2005 at 08:21:43AM +, Neil Williams wrote: > On Sunday 20 March 2005 9:50 pm, Jason Harris wrote: > > New keyanalyze results are available at: > > > > http://keyserver.kjsl.com/~jharris/ka/2005-03-20/ > > Jason, I've been meaning to ask yo

Re: Retaining expired sigs

2005-03-21 Thread Jason Harris
On Sun, Mar 20, 2005 at 11:36:42PM -0500, David Shaw wrote: > On Sun, Mar 20, 2005 at 11:07:50PM -0500, Jason Harris wrote: > > I really don't think it is worth trying to protect against these > > scenarios. A user can simply remove any non-revocable sigs they > >

Re: Retaining expired sigs

2005-03-20 Thread Jason Harris
n-cert-level doesn't create the conditions for this to happen (as explained above). > I just checked PGP 8.1 and the results were interesting. > > When importing a sig+expired sig set, PGP does what we ended up with: > it strips the sig and leaves the expired sig. OK. > Wh

new (2005-03-20) keyanalyze results (+sigcheck)

2005-03-20 Thread Jason Harris
table.html e6dd66ed046af2f9691f76cf18681bb7fa6cb04f30370 top1000table.html.gz 685af96a26caccceef5d0c9566d6be2fa288acc410954 top50table.html 5c35baeb21edf9953a8518b4f5a8c3b70c0f6b7f2409D3/D39DA0E3 -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed

Re: Retaining expired sigs

2005-03-20 Thread Jason Harris
On Sun, Mar 20, 2005 at 01:37:04PM -0500, David Shaw wrote: > On Sun, Mar 20, 2005 at 12:18:42PM -0500, Jason Harris wrote: > > On Sat, Mar 19, 2005 at 10:35:47PM -0500, David Shaw wrote: > > > I agree with your general idea here, but not the details, exactly. > > > W

Re: Retaining expired sigs

2005-03-20 Thread Jason Harris
On Sat, Mar 19, 2005 at 10:35:47PM -0500, David Shaw wrote: > On Sat, Mar 19, 2005 at 03:25:32PM -0500, Jason Harris wrote: > > The sig. of 1-Jan-2000 is valid and usable. It can only be ignored when > > superceded. > > I agree with your general idea here, but not the det

Re: Retaining expired sigs

2005-03-19 Thread Jason Harris
perceded. Also, if multiple non-revocable sigs. exist, the latest (valid) one supercedes all others, which can be safely removed. -- Jason Harris | NIC: JH329, PGP: This _is_ PGP-signed, isn't it? [EMAIL PROTECTED] _|_ web: http://keyserver.kjsl.com/~jharris/ Got photo

Re: Retaining expired sigs

2005-03-19 Thread Jason Harris
On Sat, Mar 19, 2005 at 01:24:13AM -0500, David Shaw wrote: > On Sat, Mar 19, 2005 at 12:22:54AM -0500, Jason Harris wrote: > > c) Always keep the latest (valid) signature from a given issuer, even if > > it has expired. > Remember that the original thing that spawned t

Re: Retaining expired sigs

2005-03-18 Thread Jason Harris
On Fri, Mar 18, 2005 at 02:37:33PM -0500, David Shaw wrote: > On Fri, Mar 18, 2005 at 02:06:46PM -0500, Jason Harris wrote: > > My point is that once GPG sees a newer signature that overrides an > > older one, it can safely remove the older one, in all cases, in the > > int

Re: Retaining expired sigs

2005-03-18 Thread Jason Harris
On Fri, Mar 18, 2005 at 01:23:39PM -0500, David Shaw wrote: > On Fri, Mar 18, 2005 at 12:30:32PM -0500, Jason Harris wrote: > > Everyone who feels expiring signatures hamper their keys should > > raise the issue with those generating such burdensome signatures. > > That&#

  1   2   >