ietf-openpgp
[Top] [All Lists]

Re: how to specify "trust no signatures over hash X from this key"?

2009-05-05 03:13:17

On 5/5/09 06:05, Daniel Kahn Gillmor wrote:

Is there interest in being able to explicitly state such a policy?


None whatsoever. Simplify, simplify, simplify. One hash is good enough for 99.99% of the users, and the rest should be implementing not eulogising.

Has anyone read the OSS Guide to Sabotage? In there it has a list of things about how to break up a user group. One of them is to insist on following rules because they are important, another advice is to always refer things to a committee.

If it was updated today for IETF, it would say: always insist on the right to variations in protocols, for future-proofing.

iang