PGP & TAB

Steve Lamb PMMAIL Discussion List <PMMAIL-L@VM.EGE.EDU.TR>
Sun, 25 Apr 1999 06:09:05 -0700


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sun, 25 Apr 1999 15:58:29 +0300, Cristian Secara wrote:

>>>It appears you use today an RSA key.
>>Actually, that is a bug in PMMail98 which has been resolved in PMMail99.

>A bug regarding the signing mechanism (at sending) or the verification >mechanism (at receiving) ? Or what else ?

    A little bit of sending, a little of "else."  When you first sign a
message in PGP and have the option to keep the password in memory, PMMail
stores that by the email.  This is a problem for people who have multiple
keys for the same email and the same password on those keys.  For example,
myself with my DH/DSS key which is prefered and my RSA key, set to expire,
and was meant only for people who (w|c)ould not use DH/DSS to be able to
encrypt to me.

    The problem is that when PMMail calls the PGPSDK it returns the first
matching string.  In this case, my RSA key.  Bob changed it so it requests a
specific key ID, not user ID, on a per acocunt basis.  I would still like to
see the option of picking the key to use at any time, not just the first
password, but at least now my RSA key isn't used by default when I don't
intend it to.

    However, as was noted, I was signing my messages with my RSA key.  This
is because I was reading mail from work where I've not installed the latest
beta version, which is what I use at home.  New company is a bit more
restrictive on the programs one can and cannot run on their machines.  Beta
software is severely frowned upon.

- --
         Steve C. Lamb         | I'm your priest, I'm your shrink, I'm your
         ICQ: 5107343          | main connection to the switchboard of souls.
- -------------------------------+---------------------------------------------

-----BEGIN PGP SIGNATURE-----
Version: PGPsdk version 1.0 (C) 1997 Pretty Good Privacy, Inc

iQA/AwUBNyMT8Hpf7K2LbpnFEQKXBACgvIDNhKxIbJYHWXdud2GWWmopqmoAn1hR
E3wWRMCvRxhrucT62Y5je/8B
=oSKB
-----END PGP SIGNATURE-----