List Info

Thread: lost key




lost key
user name
2006-08-14 02:30:32

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello Pgp-Basics,

I lost the privat key of a key that is listed in the keyservers.

As I can not delete the key from keyservers, and without the privat key
I can not revoke the key. I don't have a revocation cert either.

How do we usually behave in such a situation in order people don't used
'that' key?

TIA.

- --
PGPKey:http://www.freewebs.com/tknpss/pgp/nsv20x3F0640AC.htm
Fingerprint:26D2 4DD5 8B40 2B99 437D 1D55 54C6 9004 3F06 40AC

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
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=dpAu
-----END PGP SIGNATURE-----

__._,_.___
.

__,_._,___
lost key
user name
2006-08-14 02:39:35

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

NSV wrote:
> How do we usually behave in such a situation in order people don't used
> 'that' key?

Make a new key and upload it to the keyservers. When people send you
emails encrypted to the old key, ask them to re-send it encrypted for
the new key. Rebuild your entire web of trust.

Yes, this solution kind of sucks. Sorry. :(

Let it be a lesson for the future: always keep a revocation key, and/or
a designated revoker.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iQEcBAEBCgAGBQJE3+JnAAoJELcA9IL+r4EJz38H/ArQWdyueClawqC5WKd97u9z
MOlUxmf2E9xXUA63WIU29FTpVIxEOL1Mf4zXwI6Yy1JWmd1TLrjuRtsNcX0mT0Xh
Tp013;ybyt8PuOpPG0Z1XwfZr7dNvXMPEddvRJMqSkRzkgAm4dC4DroWsNQSQUfGU
roYgPFBZStL9omYPlD/otoPrMeesWfQ7euiNmaajKmNQnVvaBy3bJDklxf12vNWa
moUA0aKHEGJ2I/lb2mE8VFD9VyVezMYkix5xjTQa5HBhX5ALc4bsjfvAqXqaMzua
wGzkbuwMw9ALZITgXZbr5i1cyOKwwO15ck8d9M05OTNadIrBjlowVyEgdi8xgbQ=
=5Mjf
-----END PGP SIGNATURE-----

__._,_.___
.

__,_._,___
lost key
user name
2006-08-14 06:38:55

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Robert J. Hansen wrote:
> Let it be a lesson for the future: always keep a revocation key, and/or
> a designated revoker.
>
Yes, always keep a copy of the original private key and a revocation
key on a floppy or cd. If on a floppy, use the write protector so it
doesn't get overwritten.
- --
Zach Himsel <z.himsel[at]gmail.com>
=================================
OpenPGP Public Key ID: 0xD1093592
http://zach-himsel.is.dreaming.org
=================================
() ASCII Ribbon - Against HTML mail
/\ Campaign - & vCard Signatures

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (MingW32)
Comment: Key ID: 0xD1093592
Comment: http://zach-himsel.is.dreaming.org

iQEVAwUBROAaf5HoJdzRCTWSAQrtlQf/SwEKpg5GfTtdeHQVGstY&#43;+jhYvijE8RI
QBZmWwbjtRkO5BoQ/Vw+YmtREc7khZF9Efkc8bz/OU1XPw74jhD2WsPYUAc4tuix
uGRIJIz/d4CEt7FgrSfbdQWxZ0J0IwcuohxAF7mYZQw7GfuKFmP2ULloczy50A7x
zmo2//VnIioieZqYgAWsRkOeSsK8wGTykSlDS7l5Rw1huQI6USS5avi4DS+Ia0pQ
9cYeAvYX2PCNIwVPFhfLBUkr7W3XXUyHLY76oaX/vs+FB16pYds/dmO3lW1WVtx1
MyAXVWIp9HlGSqYutnq/uy4hIkKJXZV7a6XT0A+vgVXWqBHa0PB5iQ==
=fmDi
-----END PGP SIGNATURE-----

__._,_.___
.

__,_._,___
lost key
user name
2006-08-14 19:58:33

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hi,
> Zach Himsel wrote:
&gt;> Robert J. Hansen wrote:
&gt;> Let it be a lesson for the future: always keep a revocation key, and/or
&gt;> a designated revoker.
>> When people send you
>&gt; emails encrypted to the old key, ask them to re-send it encrypted for
>&gt; the new key. Rebuild your entire web of trust.
&gt;>
>> Yes, this solution kind of sucks.
Indeed.
>
> Yes, always keep a copy of the original private key and a revocation
> key on a floppy or cd. If on a floppy, use the write protector so it
> doesn't get overwritten.
- --------

> There is no way to prevent others from using the key since without one
> of the two items above you can't show the key as revoked and thus that
> it shouldn't be used.
- -----

Thank you all for advises.

NSV

- --
PGPKey:http://www.freewebs.com/tknpss/pgp/nsv20x3F0640AC.htm
Fingerprint:26D2 4DD5 8B40 2B99 437D 1D55 54C6 9004 3F06 40AC

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iQIVAwUBRODV41uRFusoUYuSAQioCg//ZqFCVcLmxm0w9YZyDhblXpNTIFXy4o1h
A4lnNw8M3ab46tLyJvTNwVTrvygGiAYaS2qCiyaWq6eV0A62BE0mZpN+;ouc+M2+d
gF1yAzh+3BOW3qRUp9CdbOVpdxuL5xXuBbLfBDHwBDvJu1K7ZKTt5BtSroz3JDj3
rg+;mgpiTWI/YhBktkSGPfBbDSAIZXBvD7C2m+op8HW+qqAaC8HuyCO4NX5AFoitl
UIY/l2F+SoI0KhNjG3sT5z7fSb9smCLSiNYr2lXSQRDxETxtp6u14tdhbbSmZ+Gl
xqQU+N&#43;6D2l0rYNF0MxBqjH5RViq3iJsEbOF4WGHRTU/WOhUXsU8uV0rEc/lA5T2
BqVBSgAFiDBJJnyFe1nel0SdILid3KGS9qJy+T05wgQiD9DoPuocZKQiTvlxQkMd
1hOvtWogTD5RjDviK11QYdeWHI8wj8TKE3HqiGTVx838FFOe1T46TYArhQB03+fS
hAatIgVdbebBetY8tXZgjWj01I3gXpl1iWj1VHCD5UP+YuZW14xqAzQKKzXbgqdf
wQtkQEvCVvsKc9+eYHlrSUo0gdb2m56Yjho&#43;sWnAVbJyG9wRG1jkpvmIH05/KIPd
mfPzc7pQXGYUf3yFnR4PRyRBK0kAH87ERkVTIbVIT2yCj6T5zdsA5YptcjRdeMYD
j7hB00HdPjg=
=MaCO
-----END PGP SIGNATURE-----

__._,_.___
.

__,_._,___
[1-4]

about | contact  Other archives ( Real Estate discussion Medical topics )