On 16/01/18 17:19, Leo Gaspard wrote:
> “on 2018-04-01, please expose only the master key and its revocation
> certificate(s) to clients”

IF you wanted to go this route, it would be easier for keyservers to
only serve the master key + revocation cert for *all* cases where a
revocation cert exists. What does it matter who signed a key that has
been revoked, or what IDs it used to be tied to? It's dead, throw it away.

-- 
Andrew Gallagher

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to