[Enigmail] Help - Best Algorithm and Different Encryptions Available

Alexander Dahl post at lespocky.de
Tue Jul 1 04:31:24 PDT 2008


Hi Barry,

you made a big mistake by putting your secret key into the mail
signature of your last mails. It was pretty easy to import your secret
key here. It's still protected by your passphrase but it's here. This
should not have happened at all. I suggest you revoke your key and
upload the revoked key to the keyservers as fast as possible.

The other point is: it's also not necessary to put the whole public key
into a mail signature and inflate it to 30 lines in your case. (public
keys with many signatures are actually a lot bigger.) The key-ID or
fingerprint is sufficient.

Greets
Alex

-- 
'With the first link, the chain is forged. The first speech censured,
the first thought forbidden, the first freedom denied, chains us all
irrevocably.' (Jean-Luc Picard, quoting Judge Aaron Satie)
*** GnuPG-FP: 02C8 A590 7FE5 CA5F 3601  D1D5 8FBA 7744 CC87 10D0 ***

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 250 bytes
Desc: OpenPGP digital signature
URL: <http://www.mozdev.org/pipermail/enigmail/attachments/20080701/9821d186/attachment.bin>


More information about the Enigmail mailing list