On Tue, 8 Jan 2019 12:19:53 +0100, Peter Lebbing wrote:
> On 08/01/2019 10:52, Stefan Claas wrote:
> > #define MAX_ATTR_PACKET_LENGTH    ( 16 * 1024*1024)
> > [...]
> > 
> > Was this large image size requested so that people
> > in crypto circles can hide stuff in images etc. and then
> > use key servers as secret distribution medium?  
> 
> Well, changing this number to something smaller would do nothing to
> prevent this. It's probably just a generous upper limit to prevent a DoS
> on GnuPG. What keyservers accept is not influenced by GnuPG.

I must admit i don't understand the DoS aspect in this regard, in case
a key would only be allowed to a have the suggested* max image size.
Larger sizes could be refused by GnuPG, when editing a key.

*240x288 or slightly bigger.

Regards
Stefan

_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to