[Enigmail] Enigmail, PGP, Gmail and decryption

Giano alex89.ficus at gmail.com
Thu Aug 21 09:30:52 PDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ok. Tell me if I'm right.

I'm X and I want to send an encrypted message to Y, so:
1) I pick up Y's public key.
2) I make this one-time-key, with which I encrypt the message (symmetric
encryption).
3) I encrypt the one-time-key with Y's public key and append it to the
message to be sent (asymmetric).
4) I encrypt the one-time-key with my public key and append it to the
message to be sent (asymmetric).

Because I found that:
- - sent mail and saved mail are exactly the same, so they can't be
encrypted one with my key and another with girlfriend's key;
- - gpg debug console says that there are two encryptions, so it is
impossible that the message is encrypted with only one key (result of
combination of mine public and girlfriend's private);
- - I'm still able to decrypt the sent message without girlfriend's private.

Is it OK ??!?!

- --
~~~~~ GIANO ~~~~~

E-mail:  alex89.ficus at gmail.com
Website: http://gianopage.altervista.org/
Skype:   alex89.ficus
Twitter: http://twitter.com/giano89

"Per una persona ottimista, il bicchiere e' pieno a meta'. Per una
persona pessimista, e' vuoto a meta'. Per l'ingegnere, e' due volte piu'
grande del necessario."

- -----PGP KEY FINGERPRINT-----
7B19 3021 2218 5AE5 F90D  895F 64E3 5598 5920 9728

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFIrZg7ZONVmFkglygRAiveAKDflTh9b4ZrPcFJ/n/UrJENlY/onQCbBX47
TND1oGxfPKpB/ue2JcVDnPU=
=9QpK
-----END PGP SIGNATURE-----


More information about the Enigmail mailing list