[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: q re binding user id's and subkeys



Erron writes:
> Regarding 5.5.1.1 and 5.5.1.2; I am having a problem trying to understand 
> how one binds an encryption sub key to a particular user id and the top 
> level signing key?

You can't.

> There seems to be no information contained in a sub-key packet that can 
> link it to a user id. Also, the binding signature does not contain info 
> regarding a user id (nor the binding signatures subpackets).

That's right.

> By binding an encryption sub key to a primary signing key, you are binding 
> it to multiple user id's (if multiple user id's exist), however if user id 
> (a) wants to encrypt data using sub-key (b) and user id (b) wants to 
> encrypt data using sub-key (a), where do you actually make the bind?

There is no way to express this in OpenPGP.

Hal