Beefing up my OpenPGP configuration

| 0 Comments | 0 TrackBacks

After reading this interesting article, I decided to figure out If I needed a new key and if it was worth the trouble to start a new stronger key.
My needs are much simpler than the debian project's. I don't sign software and I don't encrypt email much. Over the last 5 years I might have sent and received maybe 4 encrypted emails. I'm not a big fan of encryption per se. I am however convinced that signing emails is a good way to fight impersonation. Something that spammer tend to over use these days. So my primary need is to sign emails. For that I don't really need a stronger key - I just need to make GnuPG's default a bit stronger.

I've edited my my gpg.conf file and added the following to it :

enable-dsa2
personal-digest-preferences SHA256 RIPEMD160 SHA1


This ensure that the signing algorithm is stronger - without going through the hassle of creating a new key.

No TrackBacks

TrackBack URL: http://perso.hirlimann.net/cgi-bin/mt/mt-tb.cgi/2275

Leave a comment

Recent Entries

Housse de camouflage pour objectifs
Lorsque j'ai écrit mon billet sur l'objectif Canon EF 400mm F/2.8, je pensais ajouter quelques accessoires à ma panoplie de…
Testers for Thunderbird 3.1b1 wanted
We are going to release Lanikai 3.1b1. I'm looking for volunteers to work on a complete test using litmus. These…
Fosdem 2010
Like every year since 2004, this year I attended Fosdem. Like last year Fosdem was half work half fun -…