Re: State-of-the-art way to setup a shared security@ email with hardware-backed keys?

2015-06-16 Thread Simon Josefsson
Daniel Kahn Gillmor writes: > Hi Simon-- > > Thanks for the interesting use case. > > On Tue 2015-06-09 09:21:08 -0400, Simon Josefsson wrote: >> My current idea is to generate a secur...@example.com master PGP key and >> keep that offline, and to generate one decryption sub-key, and load that >>

Re: State-of-the-art way to setup a shared security@ email with hardware-backed keys?

2015-06-10 Thread Daniel Kahn Gillmor
Hi Simon-- Thanks for the interesting use case. On Tue 2015-06-09 09:21:08 -0400, Simon Josefsson wrote: > My current idea is to generate a secur...@example.com master PGP key and > keep that offline, and to generate one decryption sub-key, and load that > onto a couple of OpenPGP Card smartcards

State-of-the-art way to setup a shared security@ email with hardware-backed keys?

2015-06-09 Thread Simon Josefsson
I want to setup a secur...@example.com contact email address that should accept OpenPGP encrypted emails. The purpose is to notify us of security incidents. The decryption key needs to be shared by several people who are authorized to read and reply to such emails. Naturally I don't want soft ke