Hello there! I have quite a problem with properly bisecting a UID from my key. Maybe someone can help me?
Here's the situation: This is currently my GnuPG-Key, and will remain my primar key: https://pgp.mit.edu/pks/lookup?op=get&search=0x2D40BDB44401A8AA https://pogner.at/gnupg/0x2D40BDB44401A8AA.gpg However, my contract with OpenResearch changes from freelancer to hired-employee. As a consequence, i will stop using my own Infrastructure but using their pc. Therefore, i will also read and write emails from the new work-pc. But i do not want to copy my secret key 0x2D40BDB44401A8AA to the new work-pc (which is very much their property and not under my full administrative control but under their company-it administrative control). Therefore, my current plan is to simply generate a completely new secret key with UID max-julian.pog...@openresearch.com. This also will not be a problem with the customers where gnupg is actually in use (less than 5 persons to be honest). Now there is a problem: Then there will be two keys published for max-julian.pog...@openresearch.com! This surely will cause confusion. *) should i revoke the uid on the old key? => However, as far as i know, the secret key is not / was never compromised. *) the UIDs were certified by me and by other persons without expiration dates. => I can change the expiration date of the primary key and subkeys using "gpg2 --edit-key" and "expire", but the UID remains valid forever. *) Also, other persons have signed the UID max-julian.pog...@openresearch.com at key 0x2D40BDB44401A8AA without expiration date. What should they do? Thanks for any hints! Max
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users