Re: Moving from openpgp card to cryptostick

2012-02-10 Thread MFPA
...), then deleting that secret key from your keyring gpg --delete-secret-key your_key_ID. - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't ask me, I'm making this up as I go! -BEGIN PGP SIGNATURE- iQCVAwUBTzWIhaipC46tDG5pAQqvHwP/VjQjhOSwpDkWc4pKI8kdNiGZ

Re: invalid gpg key revocation

2012-03-07 Thread MFPA
the revocation certificate with that other private key? - -- Best regards MFPAmailto:expires2...@rocketmail.com The best way to destroy your enemy is to make him your friend. -BEGIN PGP SIGNATURE- iQCVAwUBT1fSGKipC46tDG5pAQrKowP/QP7tjkIA1sobWrUmu9gjf8VZI/ds84CJ

Re: comments on uid

2012-03-15 Thread MFPA
not been shared, you can delete the old UIDs, but if it is already on the keyservers the copies there cannot have bits removed. - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't cry because it is over - smile because it happened -BEGIN PGP SIGNATURE

Re: invalid gpg key revocation

2012-03-18 Thread MFPA
or your private key to generate a revocation certificate for your key. - -- Best regards MFPAmailto:expires2...@rocketmail.com If you save the world too often, it begins to expect it -BEGIN PGP SIGNATURE- iQCVAwUBT2Zm7aipC46tDG5pAQrAsQQAuOr3xcFPDywFHiwmd9AcPdkbuD1XnIBk

Re: Website link broken

2012-05-15 Thread MFPA
MFPAmailto:expires2...@rocketmail.com Wait. You think I'm right? -BEGIN PGP SIGNATURE- iQCVAwUBT7LOA6ipC46tDG5pAQqvMQQAyHfV3G5xQ94b5nfUS+3eThbxAAbot3Ks ct7imvys177iPVrSNaBD3J0qivjX95G0W6xAxHXt+Uz1sGZX24qUr9zBj/kEDE// 5JIgl3bxg96pER2Au8/BF9Jsjv0RdifHfWpuj/pfI0ft0KKn7FKkBl

Re: Some people say longer keys are silly. I think they should be supported by gpg.

2012-05-27 Thread MFPA
as informers. Planted informers numbering 1 in 6 of the protesters would still be a statistically negligible percentage of the population at large. - -- Best regards MFPAmailto:expires2...@rocketmail.com Never interrupt me when I'm trying to interrupt you. -BEGIN PGP SIGNATURE

Re: PGP interoperability

2012-05-30 Thread MFPA
Hi On Friday 25 May 2012 at 10:22:45 AM, in mid:4fbf4f65.3000...@vulcan.xs4all.nl, Johan Wevers wrote: Maybe the NSA has found a workable solution for factoring but not for DL? And shared the fact privately with Symantec? -- Best regards MFPAmailto:expires2

Re: Some people say longer keys are silly. I think they should be supported by gpg.

2012-05-30 Thread MFPA
happens when all the real protesters have gone on to something else and plants from various agencies make up 100%? -- Best regards MFPAmailto:expires2...@rocketmail.com When it comes to humility, I'm the greatest. ___ Gnupg-users

Re: Some people say longer keys are silly. I think they should be supported by gpg.

2012-06-01 Thread MFPA
and agencies mentioned by the OP to coordinate their efforts, that seemed so far-fetched to me as to not merit consideration. -- Best regards MFPAmailto:expires2...@rocketmail.com No man ever listened himself out of a job ___ Gnupg-users

Re: Documentation error: --allow-freeform-uid not needed?

2012-07-08 Thread MFPA
than null but I also tried --no-options, and I tried actually pointing to an empty gpg-conf file just to be sure.) - -- Best regards MFPAmailto:expires2...@rocketmail.com You're only young once; you can be immature forever -BEGIN PGP SIGNATURE- iQCVAwUBT/mV

Re: KeePass or any other password wallet to store and transport keys

2012-07-21 Thread MFPA
? Is it any safer or is just a waste of time with the conversion to ASCII and back? What combination? Give people a clue! - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't learn safety rules by accident... -BEGIN PGP SIGNATURE

Re: GPA and Windows

2012-07-21 Thread MFPA
if. - -- Best regards MFPAmailto:expires2...@rocketmail.com No matter what a man's past may have been, his future is spotless. -BEGIN PGP SIGNATURE- iQCVAwUBUAraEqipC46tDG5pAQps7gP/Y9FjkGA0a7gv1zF2Fv1WSlA3bhidoQbJ TdMklfNdlz+P4+EzitC1erFp7QEwKoQZXviQELHZLAp/x5BBlaO0Acorm8ZBLHb

Is there a GnuPG command that shows the number of keys on a keyring?

2012-07-24 Thread MFPA
know there are GUI frontends that show this info in their key management windows, but wondered if there is a GnuPG command to get it directly. - -- Best regards MFPAmailto:expires2...@rocketmail.com It is easy to propose impossible remedies. -BEGIN PGP SIGNATURE

Re: Is there a GnuPG command that shows the number of keys on a keyring?

2012-07-24 Thread MFPA
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi On Tuesday 24 July 2012 at 9:39:04 AM, in mid:500e5f28.4010...@sixdemonbag.org, Robert J. Hansen wrote: On 7/24/2012 4:33 AM, MFPA wrote: Is there a GnuPG command to show the number of keys on a keyring? On Linux, FreeBSD, OS X, etc., you

Re: Is there a GnuPG command that shows the number of keys on a keyring?

2012-07-25 Thread MFPA
to check the string pub: was at the start of the line, so the figure will be inaccurate as a key count in the event any user-ids contain that string. Thanks to everybody who helped me with this question. - -- Best regards MFPAmailto:expires2...@rocketmail.com Never lean forward

Re: how vulnerable is hidden-encrypt-to

2012-08-19 Thread MFPA
packet targets 4096-bit el gamal. You can rule out a key. But not a person can have more than one key. - -- Best regards MFPAmailto:expires2...@rocketmail.com Reality is nothing but a collective hunch. -BEGIN PGP SIGNATURE

Re: how vulnerable is hidden-encrypt-to

2012-08-22 Thread MFPA
, the QDPGP plugin for using PGP with Pegasus Mail does that. I don't know about the GnuPG version, QDGPG. http://www.grt.net.tt/qdgpg.html - -- Best regards MFPAmailto:expires2...@rocketmail.com Ballerinas are always on their toes. We need taller ballerinas! -BEGIN PGP

Re: what is killing PKI?

2012-08-28 Thread MFPA
that looked like a real name, nobody would have spotted it. - -- Best regards MFPAmailto:expires2...@rocketmail.com Experience is the name everyone gives to their mistakes -BEGIN PGP SIGNATURE- iQCVAwUBUD1lnKipC46tDG5pAQqDxAQAtKL6mbbyF2wHt50r34r9gZiMTfxPZR6O F6vxA

Re: what is killing PKI?

2012-08-28 Thread MFPA
, and keep secret the PIN for their cashpoint cards? - -- Best regards MFPAmailto:expires2...@rocketmail.com Wait. You think I'm right? -BEGIN PGP SIGNATURE- iQCVAwUBUD1bz6ipC46tDG5pAQpIUQP/aw0CSeboFBI6mOJDyFdbzRgZDtA5x8R0 2s0EUVZhARKwt1+mdqieb

Re: On PKI

2012-08-28 Thread MFPA
. It is not a centralized product, nor is trust maintained by any government / private institutions (banks, clerks, notaries, etc ) to prove identity. I don't know anybody who trusts a government or a bank. - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't

Re: if you have something to hide, please step aside...?

2012-08-28 Thread MFPA
only on the depth of one's pockets in the best of places, but also on things like skin color, ethnicity and gender in many other?) Dependence on depth of pocket is probably more abhorrent than dependence on the other factors you mention. - -- Best regards MFPAmailto:expires2

Re: what is killing PKI?

2012-08-29 Thread MFPA
they barely inconvenience the recipient. The envelope is analogous to a self-decrypting message that the recipient can trivially open on their PC or phone without installing any special tool. - -- Best regards MFPAmailto:expires2...@rocketmail.com When you're caffeinated, all

Re: what is killing PKI?

2012-08-29 Thread MFPA
. Avoiding others is not a trait of _usual_ _social_ behaviour, There are innumerable clubs that require membership in order to participate. This indicates that avoiding/excluding others *is* a well-established usual social behaviour. - -- Best regards MFPAmailto:expires2

Re: what is killing PKI?

2012-08-30 Thread MFPA
only get it by getting inside my computer. Or by using a discrete surveillance camera to watch your key presses. Or how about social engineering, alcohol, pillow talk, hypnosis, rubber hose attack, etc.? - -- Best regards MFPAmailto:expires2...@rocketmail.com Dreams come

Re: GnuPG 1.4.12

2012-08-30 Thread MFPA
party sent you their public key? If so, have you imported it into your keyring? - -- Best regards MFPAmailto:expires2...@rocketmail.com When you're through changing, you're through -BEGIN PGP SIGNATURE- iQCVAwUBUD/gvaipC46tDG5pAQoD5gQAl4I1n/HSvDlhhM75Vq3ao/wR1YYaLaTs wMAQ

Re: on running C-Z/SUV without a group manager

2012-08-31 Thread MFPA
approve. At the very least, is she stealing from her employer by doing something other than work in the time her employer has bought from her? - -- Best regards MFPAmailto:expires2...@rocketmail.com Puns are bad but poetry is verse. -BEGIN PGP SIGNATURE

Re: A safe text editor // why??

2012-09-10 Thread MFPA
to usb only, using any ubuntu editor, and then rebooting when done. What about TEMPEST as a potential eavesdropping vector? - -- Best regards MFPAmailto:expires2...@rocketmail.com A bird in the hand makes it awfully hard to blow your nose -BEGIN PGP SIGNATURE

Re: A safe text editor // why??

2012-09-12 Thread MFPA
. Is there any truth in the claim from some employers that having a mobile phone switched on within about 3 metres of a computer monitor allows the potential for remote compromise of the data on the screen via the mobile phone network? - -- Best regards MFPAmailto:expires2

Re: what is killing PKI?

2012-10-03 Thread MFPA
, the burden of which you speak would become barely noticeable. - -- Best regards MFPAmailto:expires2...@rocketmail.com Dreams come true on this side of the Rainbow too! -BEGIN PGP SIGNATURE- iQCVAwUBUGyx4aipC46tDG5pAQqkdwQAtRmAean0DbFLkCtgq/pcgaFHALiZFvi

Re: what is killing PKI?

2012-10-04 Thread MFPA
of the private key. Some will lose (access to) data through carelessness and/or misfortune. Two choices: multiple secure backups of the private key stored in different locations, or don't bother encrypting. Hmm. Which of the two should we promote? - -- Best regards MFPAmailto:expires2

Re: what is killing PKI?

2012-10-04 Thread MFPA
that it's their responsibility to make informed choices? And what's wrong with having safe and sane defaults for those who choose not to make their own informed choices? - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't cry because it is over - smile because

Re: what is killing PKI?

2012-10-06 Thread MFPA
the software are capable of forming an opinion as to what they consider to be safe and sane. - -- Best regards MFPAmailto:expires2...@rocketmail.com The best way to destroy your enemy is to make him your friend. -BEGIN PGP SIGNATURE

Re: spam and crypto (was: Re: what is killing PKI?)

2012-10-06 Thread MFPA
of the internet. Done (with small effort). But at the expense of destroying the internet. - -- Best regards MFPAmailto:expires2...@rocketmail.com When duty calls...hang up immediately -BEGIN PGP SIGNATURE- iQCVAwUBUHB5N6ipC46tDG5pAQqBagP

Re: what is killing PKI?

2012-10-07 Thread MFPA
and telling them that it's their responsibility to make informed choices? - -- Best regards MFPAmailto:expires2...@rocketmail.com None are so fond of secrets as those who do not mean to keep them -BEGIN PGP SIGNATURE- iQCVAwUBUHIWjqipC46tDG5pAQqKowQAhTpSAyqgcF

Re: new release of GPA

2012-11-01 Thread MFPA
and installed the version packaged with gpg4win-light-2.1.0, and it gives me the same error (line too long) as with the version I tried in 2009. -- Best regards MFPAmailto:expires2...@rocketmail.com All generalizations are dangerous, even this one

Re: new release of GPA

2012-11-03 Thread MFPA
still get the same error message on attempting to run GPA. - -- Best regards MFPAmailto:expires2...@rocketmail.com It is not necessary to have enemies if you go out of your way to make friends hate you. -BEGIN PGP SIGNATURE- iQCVAwUBUJU26KipC46tDG5pAQpU+QP

Re: new release of GPA

2012-11-05 Thread MFPA
mileage may vary, so probably a wise precaution to back things up first. - -- Best regards MFPAmailto:expires2...@rocketmail.com Always forgive your enemies; nothing annoys them so much -BEGIN PGP SIGNATURE

Re: new release of GPA

2012-11-05 Thread MFPA
MFPAmailto:expires2...@rocketmail.com Puns are bad but poetry is verse. -BEGIN PGP SIGNATURE- iQCVAwUBUJgsVKipC46tDG5pAQq3aAP/RGawnLB3AqDup0ljHvK80Uhod+G+78Di R+ulcBtlV6FMLd2ujiqH5vZAPx1kQ8YyciSXNKiWxF8Gi8moU0jlcZLWz8q3PVrq

Re: new release of GPA

2012-11-06 Thread MFPA
install it in a different folder than gpg 1.4.x? Yes. Both under P:\Program Files\GNU\. - -- Best regards MFPAmailto:expires2...@rocketmail.com Don't ask me, I'm making this up as I go! -BEGIN PGP SIGNATURE- iQCVAwUBUJln16ipC46tDG5pAQpkIQP9G+9sOn2

Re: setting primary UID of other's keys and allowing direct UID subaddressing

2012-11-16 Thread MFPA
a choice. And if the email in the UID is not surrounded by angle brackets, it does not match. - -- Best regards MFPAmailto:expires2...@rocketmail.com Only dead fish go with the flow -BEGIN PGP SIGNATURE- iQCVAwUBUKbL/aipC46tDG5pAQoXEQP/YNq7x0339pLYcPimsKl/gSK/UBgjMrv

Re: A few newbie questions, I'am doing this right?

2012-12-15 Thread MFPA
in the Web of Trust. That strikes me as good advice even if your main key is not stored offline. • If you create two keys then create your work key with your personal key as designated revoker Sounds like a sensible precaution if work policy allows. - -- Best regards MFPA

Re: A few newbie questions, I'am doing this right?

2012-12-17 Thread MFPA
that through properly. MFPA: There is no real limitation here. If a need arose for higher security signing or encryption keys, new subkeys with those capabilities could be created and circulated, and the secret subkeys stored offline just like the main key. That's right but makes the whole thing

Re: A few newbie questions, I'am doing this right?

2012-12-17 Thread MFPA
that depends on the threat model. - -- Best regards MFPAmailto:expires2...@rocketmail.com During an eruption - move away from the volcano - not towards it -BEGIN PGP SIGNATURE- iQCVAwUBUM+4pKipC46tDG5pAQqJKgP/RbtxHXImcwzHL9cGAv3cWWkh0YmRz48J j2nG9y8E5wvWEFo1i

Re: GnuPG 1.4.13 released

2012-12-24 Thread MFPA
. Will you be including IDEA in the 2.x branch as well? - -- Best regards MFPAmailto:expires2...@rocketmail.com Always forgive your enemies; nothing annoys them so much -BEGIN PGP SIGNATURE- iQCVAwUBUNhA46ipC46tDG5pAQo02wP/ZjQS2WTNKXpuvuQ5cYmKQFfkIiClH7R3 IR+DZWc

Re: Is a document signed with hellosign legally binding?

2013-01-03 Thread MFPA
see it, the service provided by hellosign.com has nothing to do with the topics in European Directive (EC/1999/93). Am I right or wrong? There is certainly a lot in the linked EC document that has nothing to do with the service offered by hellosign.com. - -- Best regards MFPA

Re:

2013-01-19 Thread MFPA
MFPAmailto:expires2...@ymail.com Why is the universe here? Well, where else would it be? -BEGIN PGP SIGNATURE- iQCVAwUBUPs5mKipC46tDG5pAQpagwP/WO4+FZLyF13N4t0W025hvBYZmM8IyYMw cWiDa6LCaDht1ojE18E+pEzr30bXg9o70NlBS6BJ/3Poz6d/DQoq5Ly064FNvWz6 vlmmLRt86951+Ex2xRF0x

Re: Please fix subscribe at http://lists.wald.intevation.org/mailman/listinfo/gpg4win-announce

2013-04-14 Thread MFPA
by the warning untrusted. That's not something that needs fixing. It provides the user with a greater level of security if they need to make their own informed decision to trust a certificate, rather than the browser developers making that decision without any user input. - -- Best regards MFPA

[OT] Re: Please fix subscribe at http://lists.wald.intevation.org/mailman/listinfo/gpg4win-announce

2013-04-15 Thread MFPA
that you see no reason to trust. - -- Best regards MFPAmailto:expires2...@ymail.com Change is inevitable except from a vending machine -BEGIN PGP SIGNATURE- iQCVAwUBUWx6O6ipC46tDG5pAQqxxwP8CIH5zx1y7Q2aO0ARlVmKdfJKElUodhkC KyWZNH7diu9OhbEMGQyPc9

Re: [OT] Trusting X.509 certificate

2013-04-16 Thread MFPA
of (or interaction with) the site. To register an email address on a mailing list, I would probably spend practically zero time checking. - -- Best regards MFPAmailto:expires2...@ymail.com I think not, said Descartes, and promptly disappeared -BEGIN PGP SIGNATURE

Re: [OT] Trusting X.509 certificate

2013-04-20 Thread MFPA
. - -- Best regards MFPAmailto:expires2...@ymail.com Don't learn safety rules by accident... -BEGIN PGP SIGNATURE- iQCVAwUBUXMsyqipC46tDG5pAQpPfwQAisBsQuLdSwJvK6yjUoflqWuajIOu5EH/ H+lCFJwUXgXdQid/UgQRfph/AGKZtkIfOsDHtk9eMWoRrMmjL/jvQGMu0vnStbii

Re: Do we need / want (or already have) a mascot for OpenPGP?

2013-07-08 Thread MFPA
regards MFPAmailto:expires2...@ymail.com Two wrongs don't make a right. But three lefts do. -BEGIN PGP SIGNATURE- iQCVAwUBUdsyXKipC46tDG5pAQpdLQP9Fee1HBIvlOmalTtlH7LD5/95POwKAIee 8LRJp5+6CvZXzKI6cw5cGExGkhoRFj2RfcGw0oITuQfW7vwmGFzG+TxLl+8+meeG

Re: Do we need / want (or already have) a mascot for OpenPGP?

2013-07-08 Thread MFPA
... Or a red-eared terrapin, kind of like a teenage mutant ninja turtle... - -- Best regards MFPAmailto:expires2...@ymail.com Change is inevitable except from a vending machine -BEGIN PGP SIGNATURE- iQCVAwUBUdsyuKipC46tDG5pAQq7VwP8CkdTKAn59e/BCmDoN7QlFdYeONFzkAWl

Re: Multiple email addresses - any alternative to ask everyone to sign all my keys?

2013-07-25 Thread MFPA
meaning of the word trust. There are plenty of people I have no basis to trust, except in the context of me-in-my-job-role interacting with them-in-their-job-role. - -- Best regards MFPAmailto:expires2...@ymail.com Gypsy Dwarf Escapes Prison: Small Medium at large -BEGIN PGP

Re: Multiple email addresses - any alternative to ask everyone to sign all my keys?

2013-07-25 Thread MFPA
be answered in the event of a staff member being unexpectedly unavailable) and a designated revoker (for use as soon as a staff member leaves)? - -- Best regards MFPAmailto:expires2...@ymail.com The secret to creativity is knowing how to hide your sources. -BEGIN PGP

Re: [#INN-651-31269]: Re: key management APG

2013-08-04 Thread MFPA
from the list and thereby causing the list to be spammed with those irritating auto-replies. - -- Best regards MFPAmailto:expires2...@ymail.com Ballerinas are always on their toes. We need taller ballerinas! -BEGIN PGP SIGNATURE- iQCVAwUBUf7NxaipC46tDG5pAQqL3wP7BXiY

Re: [#INN-651-31269]: Re: key management APG

2013-08-05 Thread MFPA
was to Hauke Laging. Whichever member sends a message, all list members receive it. Any individual list member can spam the list with auto-replies. - -- Best regards MFPAmailto:expires2...@ymail.com Never trust a dog with orange eyebrows -BEGIN PGP SIGNATURE

Re: [#JYM-378-41570]: Re: Why trust any software?

2013-08-06 Thread MFPA
to your attorney saying to not say anything if you are the victime. You cure the problem. They didn't reply so I have no choice. Definitely something wrong when messages to ab...@teamspeakusa.com get returned 550 Recipient unknown. -- Best regards MFPAmailto:expires2

Re: Can I create domain keys?

2013-08-14 Thread MFPA
message to the email address in that user-id cannot send you their certification. - -- Best regards MFPAmailto:expires2...@ymail.com Live your life as though every day it was your last. -BEGIN PGP SIGNATURE- iQCVAwUBUgv0X6ipC46tDG5pAQq+mQP8CdqRujnRMI0KrvWvdTT3x941Ne9Xscyx

Re: Can I create domain keys?

2013-08-15 Thread MFPA
...@mydomain.test or group f...@example.com = 0xDECAFBAD - -- Best regards MFPAmailto:expires2...@ymail.com Dreams come true on this side of the Rainbow too! -BEGIN PGP SIGNATURE- iQCVAwUBUg0yyKipC46tDG5pAQqwPAP+Jy4E3doG2AmCuYcGJVAL9Hh6nrsDeWF3 Gn

Re: Should the use of multiple UID per key be discouraged?

2013-09-13 Thread MFPA
by you. The mailed key is encrypted with itself as a means to verify that key belongs to the recipient. - -- Best regards MFPAmailto:expires2...@ymail.com Never lean forward to push an invisible object. -BEGIN PGP SIGNATURE- iQCVAwUBUjOhB6ipC46tDG5pAQoShAP

Re: Sign key and export for each UID

2013-09-16 Thread MFPA
as a public key is published or shared, the person who created it no longer has control. - -- Best regards MFPAmailto:expires2...@ymail.com I would like to help you out. Which way did you come in? -BEGIN PGP SIGNATURE- iQCVAwUBUjdf3aipC46tDG5pAQpGWAP

Re: Sign key and export for each UID

2013-09-18 Thread MFPA
and the email address, they don't have access to your signature on that uid. - -- Best regards MFPAmailto:expires2...@ymail.com Live your life as though every day it was your last. -BEGIN PGP SIGNATURE- iQCVAwUBUjozzqipC46tDG5pAQqvxQP+PHgNpjl9joLZQHH2iHXD7MnE3LC65LT1

Re: Sign key and export for each UID

2013-09-18 Thread MFPA
them. - -- Best regards MFPAmailto:expires2...@ymail.com The One with The Answer is seldom asked The Question -BEGIN PGP SIGNATURE- iQCVAwUBUjo0JaipC46tDG5pAQp76AP/RKT2ziOH9vwJWB6QOFz2G9XNTlEftCSI D2RLAkussGaLhviFi/umDIQIOUirTAEyoscTvxOlU+Vj+LyKwDXElWnw99rK0V0u

Re: Sign key and export for each UID

2013-09-18 Thread MFPA
keeping track of selectively-signed uids on other people's keys on an ongoing basis might be very burdensome indeed. - -- Best regards MFPAmailto:expires2...@ymail.com War is a matter of vital importance to the State. -BEGIN PGP SIGNATURE

Re: Generation of key ID's

2013-09-25 Thread MFPA
the answer to the OP's other question:- And why is it done that way? - -- Best regards MFPAmailto:expires2...@ymail.com We're all shipwrecked on this idea that everything has to be explained. -BEGIN PGP SIGNATURE- iQCVAwUBUkM5u6ipC46tDG5pAQqmbwP

Re: GPG2 encryption options

2013-10-08 Thread MFPA
key that has an empty passphrase. Another suggestion is to store the files on an encrypted disk instead of using GnuPG. This would require disk encryption software, of which one example is TrueCrypt (see http://www.truecrypt.org/). - -- Best regards MFPAmailto:expires2

Re: First steps with GPG, am I off to a good start?

2013-10-13 Thread MFPA
. Indeed. So long as one UID is certified, the certification can be counted by GnuPG when calculating trust or validity for the whole key. - -- Best regards MFPAmailto:expires2...@ymail.com The secret to creativity is knowing how to hide your sources. -BEGIN PGP

Re: trust your corporation for keyowner identification?

2013-10-16 Thread MFPA
computer, all bets are off regarding Bob being the only one with access to a copy. - -- Best regards MFPAmailto:expires2...@ymail.com A wise man once said ...I don't know. -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJfBPtXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: trust your corporation for keyowner identification?

2013-10-22 Thread MFPA
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi On Thursday 17 October 2013 at 11:37:35 AM, in mid:l3oel7$7ur$1...@ger.gmane.org, Brian J. Murrell wrote: On 13-10-16 05:28 PM, MFPA wrote: If the key was generated, stored, or used on the company's computer, all bets are off regarding

Re: 2048 or 4096 for new keys? aka defaults vs. Debian

2013-10-27 Thread MFPA
open and public about SHA being insecure and needing to be replaced as soon as possible. Which raises the question in my mind: was SHA really flawed, or was it advantageous to NSA's purposes to have people use SHA-1 instead? - -- Best regards MFPAmailto:expires2...@ymail.com

Re: 2048 or 4096 for new keys? aka defaults vs. Debian

2013-10-27 Thread MFPA
public at airports by enforcing their participation in security theatre. - -- Best regards MFPAmailto:expires2...@ymail.com He's an environmentalist - his arguments are 100% recycled -BEGIN PGP SIGNATURE

Re: 2048 or 4096 for new keys? aka defaults vs. Debian

2013-10-27 Thread MFPA
? - -- Best regards MFPAmailto:expires2...@ymail.com Confusion is always the most honest response -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJtJhFXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl bnBncC5maWZ0aGhvcnNlbWFuLm5ldEJBMjM5QjQ2ODFGMUVGOTUxOEU2QkQ0NjQ0

Re: gpgsm and expired certificates

2013-11-01 Thread MFPA
about the NSA) Isn't the NSA a government based organisation? Surely guilt-by-association renders every government based organisation just as nefarious as the NSA. - -- Best regards MFPAmailto:expires2...@ymail.com Free advice costs nothing until you act upon it -BEGIN

Re: trust your corporation for keyowner identification?

2013-11-01 Thread MFPA
email address. - -- Best regards MFPAmailto:expires2...@ymail.com Beware the deadly donkey falling slowly from the sky -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJzx6xXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: gpgsm and expired certificates

2013-11-02 Thread MFPA
is just as nefarious as the NSA. There are a lot of people on this list who have some kind of connection to the government. [...] You owe all of us an apology. I wish to extend my sincere and unreserved apologies to all the people I unintentionally offended. - -- Best regards MFPA

Re: gpgsm and expired certificates

2013-11-02 Thread MFPA
of unpalatable/nefarious behaviour on the part of a government organisation seems a pretty odd reason to call for services, currently provided by private-sector CAs, to instead be provided by a government organisation. - -- Best regards MFPAmailto:expires2...@ymail.com

Re: gpgsm and expired certificates

2013-11-02 Thread MFPA
Fellows in July 1985.[1] [1] The very short quote at http://www.criminalsolicitor.net/forum/forum_posts.asp?TID=5833PN=1get=last is the only reference I can find at the moment. - -- Best regards MFPAmailto:expires2...@ymail.com The second mouse gets the cheese -BEGIN

Re: gpgsm and expired certificates

2013-11-04 Thread MFPA
potentially be derived from numerous certifications that are independent from each other, but how do you tell which are truly independent? Where actual identity is not required, just continuity of communication, I see no value in obtaining any certification at all. - -- Best regards MFPA

Re: gpgsm and expired certificates

2013-11-04 Thread MFPA
the need for a CA. The only value in using a recognised CA rather than a self-signed certificate is convenience for the recipient, whose MUA is likely to automatically trust a recognised CA but would need to be told to accept a self-signed certificate. - -- Best regards MFPA

Re: Quotes from GPG users

2013-11-04 Thread MFPA
bringing you to their attention? - -- Best regards MFPAmailto:expires2...@ymail.com Two wrongs don't make a right. But three lefts do. -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJ3vVlXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: trust your corporation for keyowner identification?

2013-11-04 Thread MFPA
? And as an aside, does it really make a difference to only sign some UIDs and not others? Does GnuPG actually take account of which UIDs are signed in its validity or trust calculations? - -- Best regards MFPAmailto:expires2...@ymail.com Life is far too important a thing ever

Re: gpgsm and expired certificates

2013-11-04 Thread MFPA
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi On Monday 4 November 2013 at 2:02:30 PM, in mid:563460450.20131104140230@my_localhost, MFPA wrote: Where actual identity is not required, just continuity of communication, I see no value in obtaining any certification at all. Or, indeed

Re: trust your corporation for keyowner identification?

2013-11-04 Thread MFPA
for U, the meaning of the certification changes radically (and the cryptographic certification breaks). This is an intended feature. Thanks for the explanation. - -- Best regards MFPAmailto:expires2...@ymail.com Two rights do not make a wrong. They make an airplane

Re: UK Guardian newspaper publishes USA NSA papers

2013-11-04 Thread MFPA
from its targets. That's phenomenal: isn't everybody in the world separated by an average of just six hops? - -- Best regards MFPAmailto:expires2...@ymail.com Why is the universe here? Well, where else would it be? -BEGIN PGP SIGNATURE

Re: gpgsm and expired certificates

2013-11-05 Thread MFPA
postings that I was using hyperbole to make my point. I'm not quite _that_ paranoid, but I believe in exercising a healthy skepticism. -- Best regards MFPAmailto:expires2...@ymail.com Experience is the name everyone gives to their mistakes smime.p7s Description: S/MIME

Re: trust your corporation for keyowner identification?

2013-11-05 Thread MFPA
keysigning policy, isn't that an assumption? Collusion is the only way that I know of, I guess coercion would fit, as well. - -- Best regards MFPAmailto:expires2...@ymail.com The greatest of faults is to be conscious of none. -BEGIN PGP SIGNATURE

Re: gpgsm and expired certificates

2013-11-06 Thread MFPA
, getting other people to persuade their MUA to accept it. [1] http://kb.mozillazine.org/Installing_an_SMIME_certificate. - -- Best regards MFPAmailto:expires2...@ymail.com Courage is not the absence of fear, but the mastery of it. -BEGIN PGP SIGNATURE

Re: gpgsm and expired certificates

2013-11-07 Thread MFPA
the pgp signature in the message body instead of hidden away. - -- Best regards MFPAmailto:expires2...@ymail.com Those who do not read are no better off than those who cannot. -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJ8BO5XFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: gpgsm and expired certificates

2013-11-07 Thread MFPA
there, but it's not clear what to do. For something that is supposed to be easier than OpenPGP, s/mime doesn't seem easy to me. - -- Best regards MFPAmailto:expires2...@ymail.com My mind works like lightning... one brilliant flash and it's gone -BEGIN PGP SIGNATURE

Re: trust your corporation for keyowner identification?

2013-11-07 Thread MFPA
of communication. Or one for their phone and another for their computer. - -- Best regards MFPAmailto:expires2...@ymail.com Volvo, Video, Velcro. (I came, I saw, I stuck around.) -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJ8KGhXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: unsubscribe

2013-11-07 Thread MFPA
...@gnupg.org - -- Best regards MFPAmailto:expires2...@ymail.com If you are afraid to speak against tyranny, then you are already a slave. -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlJ8KVVXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: gpgsm and expired certificates

2013-11-09 Thread MFPA
are only included in relatively recent windows versions, and Microsoft tags root certificate updates as non-critical. - -- Best regards MFPAmailto:expires2...@ymail.com If you are afraid to speak against tyranny, then you are already a slave. -BEGIN PGP SIGNATURE

Re: article about Air Gapped OpenPGP Key

2013-11-21 Thread MFPA
Logically, wouldn't you have to destroy it after being ordered to hand it over to be in contempt of court? - -- Best regards MFPAmailto:expires2...@ymail.com A nod is as good as a wink to a blind bat! -BEGIN PGP SIGNATURE

Re: Setting encryption algorithm for specific key

2013-11-25 Thread MFPA
to an esoteric mail reader. And whilst an individual's choice of software for reading the list is irrelevant to everybody else, abruptly changing subject matter part way through a thread is relevant to everybody who was trying to follow that thread. - -- Best regards MFPA

Re: [Announce] GnuPG launches crowdfunding campaign

2013-12-20 Thread MFPA
contradict this assumption. I shouldn't have thought that would be a problem, provided the translated version carries a disclaimer that it is only a translation for user convenience and that the original Spanish is the authoritative version. - -- Best regards MFPAmailto:expires2

Re: [Announce] GnuPG launches crowdfunding campaign

2013-12-21 Thread MFPA
of Service is still part-English but mainly Spanish. - -- Best regards MFPAmailto:expires2...@ymail.com No matter what a man's past may have been, his future is spotless. -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlK1y2dXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: Possible to combine smartcard PIN with key password?

2013-12-26 Thread MFPA
projection virtual keyboard units are a cube of just a couple of inches and weigh less than the average smartphone. You just type on an image of a keyboard projected onto an opaque flat surface, and it senses which keys you hit. - -- Best regards MFPAmailto:expires2...@ymail.com

Re: New GUI frontend for windows

2013-12-26 Thread MFPA
no difference whether somebody goes by the name their government recognises, or by a pseudonym chosen by themself (or their friend/colleague/enemy). Unless I am entering into a contract and may be unable to hold them to account without using (or at least knowing) their legal name. - -- Best regards MFPA

Re: New GUI frontend for windows

2013-12-26 Thread MFPA
with an empty passphrase. But the key has the unexpected UID of Alice Bob 4234 m...@example.com. - -- Best regards MFPAmailto:expires2...@ymail.com A closed mouth gathers no foot -BEGIN PGP SIGNATURE- iPQEAQEKAF4FAlK82sRXFIAALgAgaXNzdWVyLWZwckBub3RhdGlvbnMub3Bl

Re: New GUI frontend for windows

2013-12-27 Thread MFPA
+certify for the master. Those are the defaults for unattended key generation. Interesting. Are you specifying the key algo as Default or as RSA? If the latter, you can define the usage flags list yourself (but certify is mandatory for the master key). - -- Best regards MFPA

<    1   2   3   4   5   6   7   8   9   >