ietf-openpgp
[Top] [All Lists]

Re: [openpgp] Revoking Keys: Adding a superceded-by parameter

2015-07-25 10:45:11
Hi,

At Wed, 22 Jul 2015 01:13:16 +0200,
Daniel Kahn Gillmor wrote:

On Mon 2015-07-20 22:03:04 +0200, Neal H. Walfield wrote:
At Mon, 20 Jul 2015 17:14:18 +0200, Werner Koch wrote:
On Mon, 20 Jul 2015 12:27, neal(_at_)walfield(_dot_)org said:

I propose that the description field be augmented to include optional
email style headers.  Further, we specify the following header to
specify the new key:

  Superceded-by: fingerprint

I think it is better to have a signature subpacket or notation data to
the same effect.  This has the advantage that it can also be used with a
non-revoked key or data signature to declare a plan to supercede a key
in the near future.

This is a good point.  Either approach that you propose seems
reasonable to me.

This is a great idea.  Can you suggest a patch to the 4880bis draft that
Werner started?

I decided to use a notation rather than a new signature subpacket.
This is because the signature subpacket namespace is tiny compared to
the notation data's namespace.

Please let me know how I can improve this.

Thanks!

:) Neal