Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

gpg.conf - require-cross-certification #69

Open
rugk opened this issue Aug 25, 2016 · 0 comments
Open

gpg.conf - require-cross-certification #69

rugk opened this issue Aug 25, 2016 · 0 comments

Comments

@rugk
Copy link

rugk commented Aug 25, 2016

Maybe add require-cross-certification to the gpg.conf?

It is the default in Debian AFAIK with this reason given:

# When verifying a signature made from a subkey, ensure that the cross
# certification "back signature" on the subkey is present and valid.
# This protects against a subtle attack against subkeys that can sign.
# Defaults to --no-require-cross-certification.  However for new
# installations it should be enabled.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant