OpenPGP Keys Usage and Signing Policy
Purpose
On this page, I’ll try to formalise my handling of OpenPGP keys.
I’m a frequent user of OpenPGP and in the process of switching my keys from former standard strength variants to stronger variants, to cope with the progress in cryptography and computing power.
Key Inventory
My old keys are:
sec 1024D/8419E0DB68BDA342 2000-10-26 uid Toni Muelleruid Oeko.neT Vertrieb (Vertriebs-Verteiler) uid Antonius Mueller (mostly unused) uid Toni Mueller (satisfy NSI) ssb 1024g/E03888410B1E8B40 2000-10-26
and
sec 1024D/7E8114A075CB1AD2 2000-11-02 uid Toni Muelleruid Toni Mueller uid Toni Mueller ssb 1024g/5D462C25696AD87C 2000-11-02
I intend to replace this key
sec 1024D/75CB1AD2 2000-11-02
Key fingerprint = 58A3 0376 55F2 7B94 7763 BD2D 7E81 14A0 75CB 1AD2
uid Toni Mueller
uid Toni Mueller
uid Toni Mueller
ssb 1024g/696AD87C 2000-11-02
with this key instead:
sec 4096R/4687AF4F 2011-11-24
Key fingerprint = 1DF6 A19F CA53 F973 53F3 F35D 8A0A 4887 4687 AF4F
uid Toni Mueller
uid Toni Mueller
uid Toni Mueller
ssb 4096R/2DE1AA9A 2011-11-24
The old key, 0x7E8114A075CB1AD2, will be phased out during 2012, and an update with an expiry date will be posted. I’ll start to use the new key, 0x8A0A48874687AF4F, immediately. The key is already downloadable from the keyservers.
If you signed any of my old keys, please consider signing my new key, too.
I’ll generate another key to replace the key 0x8419E0DB68BDA342 in the course of 2012, too.
Key Usage Policy
I use my keys to encrypt email, chats, and sign software packages.
Key Signing Policy
I sign keys of people whom I deem reasonable, and who can prove their identity to me in a plausible way. To prove your identity, I need an official document, like your ID card, that must bear reasonable semblance with your key. Like, if your name is “Tim”, but your ID card says “Timotheus”, I might sign an ID with only “Tim”, too.
This is work in progress, please be patient, and stay tuned.
Leave a comment