[ale] Uh-oh, gpg keyrings don't match!

Michael H. Warfield mhw at WittsEnd.com
Mon Oct 10 23:00:59 EDT 2011


On Mon, 2011-10-10 at 20:06 -0400, Michael Trausch wrote: 
> Don't know what happened, but I have a bad situation.
> 
> I have gpg keys, like many here. Somehow, though, my main key set
> (thankfully expiring in a few months!) isn't right.  My signing keys all
> appear to match, but my encryption key is different, and I cannot decrypt
> encrypted mail sent to me.

Your encryption key should not match your signing key...

Let's see now...

You send me a message signed by your key 1024D/19C59A30 set to expire on
2012-02-09.  Ok...  Good enough.  Yeah, ditch the DSS/DSA key and go
with RSA keys.  DSS/DSA keys are not worth the effort, they don't really
provide any additional security and gpg has even gone back to 2048R keys
as a default.  Be that as it may...

That's your signing key.  Contained within your PGP/GPG key was two
encryption keys, one of which was expired, the other of which will
expire when the signing key expires...

[mhw at canyon ~]$ gpg -kv mike at trausch.us
pub   1024D/19C59A30 2006-02-15 [expires: 2012-02-09]
uid                  Michael B. Trausch <mike at trausch.us>
uid                  [jpeg image of size 2663]
uid                  Michael B. Trausch <fd0man at gmail.com>
uid                  Michael B. Trausch <mbt at zest.trausch.us>
uid                  Michael B. Trausch (Primary Address) <michael.trausch at gmail.com>
uid                  Michael B. Trausch (Educational Address) <fd0man at email.wintu.edu>
sub   4096g/EE066969 2006-02-15 [expired: 2011-02-14]
sub   4096g/2B4060E1 2011-02-22 [expires: 2012-02-09]

> Can anyone tell me how I might have screwed up so badly?

I'm not sure.  I'm assuming you are referring to the message I sent to
you, which should have been encrypted to 4096g/2B4060E1.  Can you tell
me what errors you were getting?

Regards,
Mike
-- 
Michael H. Warfield (AI4NB) | (770) 985-6132 |  mhw at WittsEnd.com
   /\/\|=mhw=|\/\/          | (678) 463-0932 |  http://www.wittsend.com/mhw/
   NIC whois: MHW9          | An optimist believes we live in the best of all
 PGP Key: 0x674627FF        | possible worlds.  A pessimist is sure of it!
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 482 bytes
Desc: This is a digitally signed message part
Url : http://mail.ale.org/pipermail/ale/attachments/20111010/a2853282/attachment.bin 


More information about the Ale mailing list