Error with encrypting: unusable public key

2007-03-02 Thread Olaf Gellert
of algorithms? The key is available on the keyservers. Thanks for help, Olaf -- Dipl.Inform. Olaf Gellert INTRUSION-LAB.NET Senior Researcher, www.intrusion-lab.net PKI - and IDS - Services[EMAIL PROTECTED

Re: Error with encrypting: unusable public key

2007-03-02 Thread Olaf Gellert
and to enable encryption, one would add an encryption only subkey? Olaf -- Dipl.Inform. Olaf Gellert INTRUSION-LAB.NET Senior Researcher, www.intrusion-lab.net PKI - and IDS - Services[EMAIL PROTECTED

Re: Still Bad Signatures - KGPG seems broken

2007-01-01 Thread Olaf Gellert
? Or does it also occur when you send signed emails to normal recipients? That would give a strong indication on where the error actually happens... Cheers, Olaf -- Dipl.Inform. Olaf Gellert INTRUSION-LAB.NET Senior Researcher, www.intrusion-lab.net PKI - and IDS

Re: keyserver

2006-11-07 Thread Olaf Gellert
server that supports cryptography would need a team of both. Any takers? ;-) Cheers, Olaf -- Dipl.Inform. Olaf Gellert INTRUSION-LAB.NET Senior Researcher, www.intrusion-lab.net PKI - and IDS - Services[EMAIL PROTECTED

Re: Driving licence as identification and accepting signed keys without exchanging encrypted data

2006-07-25 Thread Olaf Gellert
identification policy depends on the key that's used. Schizophrenia! Regards, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL PROTECTED] A daily view

Re: valid from date?

2006-06-29 Thread Olaf Gellert
trade off between convenience and security... Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL PROTECTED] A daily view on Internet Attacks

How to tell the gpg agent to forget a passphrase

2006-03-16 Thread Olaf Gellert
as a replacement for the ssh-agent? Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL PROTECTED] A daily view on Internet Attacks

Re: Which Digest Algorithm to use?

2006-03-06 Thread Olaf Gellert
will probably not be able to validate signatures based on other algorithms). When I sign a PGP2 key with a newer key (DSA), it would be SHA1 (even though the recipient will probably not be able to validate this with his PGP2 program). Correct? Olaf -- Dipl.Inform. Olaf Gellert PRESECURE

Re: gpg on cron task

2006-02-10 Thread Olaf Gellert
on the commandline, GPG may ask questions, if I remember correctly. For encrpytion it should work anyway, without questions. Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL

Re: Key Capabilities

2005-11-18 Thread Olaf Gellert
and David for enlighting me... Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL PROTECTED] A daily view on Internet Attacks

Key Capabilities

2005-11-17 Thread Olaf Gellert
or planned for the near future? What usage is expected to depend on this capability? Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH Phone: (+49) 0700 / PRESECURE [EMAIL PROTECTED] A daily

Re: Any way to get smaller key sizes?

2005-09-28 Thread Olaf Gellert
), you have to establish your own CA (and end up with your certificates being untrusted by default), so you have different troubles in the X.509 world. As always: The world is not black and white. :-) Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher

Re: PKCS#11 support for gpg-agent

2005-09-02 Thread Olaf Gellert
be fair: Both S/MIME and PGP have their advantages and disadvantages. And GPG seems to be on the way to be able to handle both. This sounds like a good idea to me. Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher, Consulting GmbH

Signature verification fails with GPG 1.4.0

2005-08-17 Thread Olaf Gellert
and they were transferred correctly (otherwise gpg 1.4.2 should fail to validate the signature, too). Could this be related to the signature being a textmode signature (on a binary file)? Cheers, Olaf -- Dipl.Inform. Olaf Gellert PRESECURE (R) Senior Researcher

USB-Token Report published

2005-07-13 Thread Olaf Gellert
of SURFnet and DFN-CERT. Another report about cross certificates and other methods of linking PKIs was published a few weeks ago: http://www.dfn-pca.de/bibliothek/reports/pki-linking/ Cheers, Olaf -- Dipl. Inform. Olaf Gellert (PKI Team), DFN-CERT Services GmbH https://www.dfn-cert.de, +49 40