On Mon, 16 Jun 2003 09:18:09 +0100, Ian Brown said:
This would stop people keeping their master signing key on a more secure
offline machine, and using it to sign shorter-lifetime signing subkeys
which can be used on a day-to-day basis to sign messages :(
That is exactly what I would like to do. Today I still use a separate
certification key but it is a problem WoT wise and annoying to tell
people how to send me encrypted mail, because they usually have
problems with the sign-only certification key.
--
Werner Koch <wk(_at_)gnupg(_dot_)org>
The GnuPG Experts http://g10code.com
Free Software Foundation Europe http://fsfeurope.org