signing keys

Ingo Klöcker ingo.kloecker@epost.de
Tue Jan 29 00:12:01 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Monday 28 January 2002 19:08, Davide Cavallari wrote:
> You know, I'm just new to openPGP. If  I want a friend of mine to
> securely sign my  public key I  think she should  call me over  the
> phone as  it is explained in the original Zimmermann's manual. She
> cannot completely trust the information gained  from my 'X-PGP'
> headers, since in  this case there is no 'history' at all.

Even better would be if you personally gave her a printout of your key's 
fingerprint. Only if she knows your voice very well and if a personal 
exchange of fingerprints is not possible you should use the 
phone-call-method.

Regards,
Ingo
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE8VcuQGnR+RTDgudgRAl21AKDCl2lccl7tNYMWfJFwGEEUpieAsQCggE8E
SEdXC/lfsUZSkvycZLO8mCI=
=QS17
-----END PGP SIGNATURE-----