Synchronizing keychains

Vlad "SATtva" Miller sattva at pgpru.com
Fri Jan 18 19:47:29 CET 2008


Richard Casella wrote on 18.01.2008 22:21:
> Sorry if this has been posted before, but for some reason I can't
> get to the list archive and I couldn't find anything about it in
> the How-tos.
> 
> I have a need to synchronize gpg keychains on two machines that
> are decrypting messages behind a VIP load-balancer. Anyone have
> any ideas on a good way to do this?

Because key import operations are additive, do like this: Copy both
public keyring files from both machines to one another; don't overwrite
original keyrings, place files in temp locations. Then --import them to
original keyrings. That's all, now both keyrings are identical.

> I have people registering their keys via email and they will get
> to one or the other machine. I can forward the email to the other
> machine, but I'm sure they will still get out of sync for one reason
> or another and would like to maintain two identical keychains on
> both machines.


-- 
SATtva | security & privacy consulting
www.vladmiller.info | www.pgpru.com




More information about the Gnupg-users mailing list