Robot CA at toehold.com

Michael Nahrath gnupg-users@nahrath.de
Thu Dec 5 20:03:02 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Kyle Hasselbacher <kyle-list-gpguser@toehold.com> schrieb am 2002-12-05
18:43 Uhr:

>> Does anyone else want to see the signatures from this CA be 0x11/persona
>> signatures (besides me)?
>=20
> Yes.  I didn't do it because I was put off by GnuPG's "I have done no
> verification" description.  It does SOME verification, just not a lot.

It does no verification at all abeout the relationship
    {Real Life Person} <=3D=3D> {Key Owner}
But this is what signatures usually express.

The robot only may say:
"I don't know anything about the person, I have only checked a small piece
of its digital reresentation in the Net"

IMHO knowing nothing about the a key owner but the validity of his mail
address is a typical case of dealing with a "pseudonymous user".

> Since I'm seeing multiple people suggest this, I'll probably do it this w=
ay
> in the near future.

Rather hurry to set up your policy!

Signings your bot gives today can't easyly be redone tomorrow.

Greeting, Michi


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.3.1 (Darwin)

iD8DBQE976Mn19dRf5pMcEwRAvI2AKDxv0XGIhhqvwxyWoCGEUIeOri9+wCgsbbM
dPpDgKGWffp6MQwq3BSNkhc=3D
=3DnCdp
-----END PGP SIGNATURE-----D PGP SIGNATURE-----kstystyl=16=01=10=0E=03=0Cqdsl=C0=03=04<eth>=A4=20