On Sun, 2010-08-22 at 07:43 -0700, C.J. Adams-Collier KF7BMP wrote:
> Generating a signed message is as simple as this:
Yes,... but it gives you _no proof at all_ .

Even if _I_ would sign this. Anybody in between us two can simply catch
that message (and yours), take another key, and do the same signing.
You'd never notice that.
Therefore, one needs personal meetings in order to do keysigning.

See wikipedia for man-in-the-middle-attacks.



Cheers,
Chris.


_______________________________________________
Sks-devel mailing list
Sks-devel@nongnu.org
http://lists.nongnu.org/mailman/listinfo/sks-devel

Reply via email to