David Shaw on 29 Jan 2004 18:50:03 -0000


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] [SECURITY] New gnupg packages fix cryptographic weakness in ElGamal signing keys


On Thu, Jan 29, 2004 at 01:44:42PM -0500, gabriel rosenkoetter wrote:
> On Thu, Jan 29, 2004 at 12:30:03PM -0500, David Shaw wrote:
> > Which is a bit of a problem, since it doesn't disable ALL signing with
> > an Elgamal key.  If you think about it, there is still one way to make
> > an Elgamal signature...
> 
> Lessee.
> 
> Can you tell GnuPG to use an signature key as an encryption key with
> --expert?

Nope.  It's a perfectly normal piece of the protocol - no --expert or
other magic involved.

David
___________________________________________________________________________
Philadelphia Linux Users Group         --        http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion  --   http://lists.phillylinux.org/mailman/listinfo/plug