ietf-openpgp
[Top] [All Lists]

Re: [openpgp] Fingerprint schemes versus what to fingerprint

2016-04-11 10:41:14
Derek Atkins <derek(_at_)ihtfp(_dot_)com> writes:

3) You have a smart card with raw key material and want to see which
  OpenPGP keys are there. 

That's PKCS #11, which means pretty much all crypto hardware that uses a
standardised interface.

*) Other use cases???

You have keys stored in a non-PGP format.  It makes keys from anywhere else
pretty much unusable for PGP because you can't look them up.

It means that if someone reuses the key material then you cannot
differentiate the original from the subsequent certificate.

That assumes you re-use the same key over and over, rather than just
generating a fresh key when you need one.  That's X.509 practice, not PGP.

Peter.
_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp

<Prev in Thread] Current Thread [Next in Thread>