1 msgDocumentation for GnuPG
1 msggpg card reading problem
4 msgErroneous char at the end of a file...
3 msgSaving a gpg signed message as plain text from ...
1 msgnew (2007-03-18) keyanalyze results (+sigcheck)
4 msgHowTo make a donation to gpg...
1 msgstrip-revokers script
4 msgDeleting a designated revoker
2 msgCardreader Pinpad only on linux ?
3 msgPGP Desktop & GnuPG
6 msgPGP Desktop and GPG
3 msgEnabling GPGRelay passphrase prompt on e-mail s...
3 msgGNUPG, how to set the passphrase as parameter i...

signing source code with gpg
\ Nathan Smith (14 Mar 2007)
. \ Peter S. May (14 Mar 2007)
. . \ Werner Koch (14 Mar 2007)
. \ Joseph Oreste Bruni (14 Mar 2007)
. . \ Werner Koch (14 Mar 2007)
. . . \ Jason Harris (14 Mar 2007)
. . . . \ Werner Koch (15 Mar 2007)

3 msggpg-agent: Different TTLs for different keys
3 msgPinpad problem with SCM SPR532
7 msggpgsm doesn't recognize certs are related to se...
30 msgGnuPG incompatible with windows-vista ?
3 msgdisplay bug
1 msggpgsm and multiple messages
Subject:Re: signing source code with gpg
Group:Gnupg-users
From:Werner Koch
Date:15 Mar 2007


 
On Wed, 14 Mar 2007 22:32, jharris said:

> Now seems like a good time to ask for an option like:
>
> --require-sig-from <fingerprint> [<fingerprint> ...]
>
> to make sure sigs are only from particular signers.

You can do the same by using gpgv it verifies only if the key is in a
special keyring. I am not sure whether adding the suggested option is
really a good idea. Other folks will come and demand further
customization.

> As an add-on to the FreeBSD ports system, I've already had to employ
> --status-fd to make sure I get a signature from an expected signer:

Scripts are the way we do it in Unix ;-)


Shalom-Salam,

Werner


_______________________________________________
Gnupg-users mailing list
Gnupg-users
http://lists.gnupg.org/mailman/listinfo/gnupg-users


© 2004-2008 readlist.com