[ale] Uh-oh, gpg keyrings don't match!
Michael H. Warfield
mhw at WittsEnd.com
Mon Oct 10 23:00:59 EDT 2011
On Mon, 2011-10-10 at 20:06 -0400, Michael Trausch wrote:
> Don't know what happened, but I have a bad situation.
>
> I have gpg keys, like many here. Somehow, though, my main key set
> (thankfully expiring in a few months!) isn't right. My signing keys all
> appear to match, but my encryption key is different, and I cannot decrypt
> encrypted mail sent to me.
Your encryption key should not match your signing key...
Let's see now...
You send me a message signed by your key 1024D/19C59A30 set to expire on
2012-02-09. Ok... Good enough. Yeah, ditch the DSS/DSA key and go
with RSA keys. DSS/DSA keys are not worth the effort, they don't really
provide any additional security and gpg has even gone back to 2048R keys
as a default. Be that as it may...
That's your signing key. Contained within your PGP/GPG key was two
encryption keys, one of which was expired, the other of which will
expire when the signing key expires...
[mhw at canyon ~]$ gpg -kv mike at trausch.us
pub 1024D/19C59A30 2006-02-15 [expires: 2012-02-09]
uid Michael B. Trausch <mike at trausch.us>
uid [jpeg image of size 2663]
uid Michael B. Trausch <fd0man at gmail.com>
uid Michael B. Trausch <mbt at zest.trausch.us>
uid Michael B. Trausch (Primary Address) <michael.trausch at gmail.com>
uid Michael B. Trausch (Educational Address) <fd0man at email.wintu.edu>
sub 4096g/EE066969 2006-02-15 [expired: 2011-02-14]
sub 4096g/2B4060E1 2011-02-22 [expires: 2012-02-09]
> Can anyone tell me how I might have screwed up so badly?
I'm not sure. I'm assuming you are referring to the message I sent to
you, which should have been encrypted to 4096g/2B4060E1. Can you tell
me what errors you were getting?
Regards,
Mike
--
Michael H. Warfield (AI4NB) | (770) 985-6132 | mhw at WittsEnd.com
/\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/
NIC whois: MHW9 | An optimist believes we live in the best of all
PGP Key: 0x674627FF | possible worlds. A pessimist is sure of it!
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 482 bytes
Desc: This is a digitally signed message part
Url : http://mail.ale.org/pipermail/ale/attachments/20111010/a2853282/attachment.bin
More information about the Ale
mailing list