[Gpg4win-devel] vs S/MIME (Re: Putty and ECDSA support for gpg-agent in 2.0)

Bernhard Reiter bernhard at intevation.de
Thu Jul 11 09:56:24 CEST 2013


On Wednesday 10 July 2013 at 17:52:48, Werner Koch wrote:
> On Wed, 10 Jul 2013 17:27, bernhard at intevation.de said:
> > How does this question work?
> > Does it trust the root ca in the dirmngr as well?
>
> IIRC, the dirmngr also ask gpgsm whether it shall trust a root.

No, I don't think it does.
(At least it did not for many installations where I've tried.)

> Allow mark trusted is the default for 2 years now:

From my point of view this is not a good path, as it does not work
with a system dirmnr which is best practice. From the usability point of view, 
which is decisive for the security in this case.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 490 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.wald.intevation.org/pipermail/gpg4win-devel/attachments/20130711/22ad2431/attachment.sig>


More information about the Gpg4win-devel mailing list