1994-04-25 - taming the wild pgp

Header Data

From: hh@cicada.berkeley.edu (Eric Hollander)
To: cypherpunks@toad.com
Message Hash: 3a8171ff98b744e497a08e5db21cc2a8c6aed376b4180ec037ae857e328b916a
Message ID: <9404250957.AA17651@cicada.berkeley.edu>
Reply To: N/A
UTC Datetime: 1994-04-25 10:02:50 UTC
Raw Date: Mon, 25 Apr 94 03:02:50 PDT

Raw message

From: hh@cicada.berkeley.edu (Eric Hollander)
Date: Mon, 25 Apr 94 03:02:50 PDT
To: cypherpunks@toad.com
Subject: taming the wild pgp
Message-ID: <9404250957.AA17651@cicada.berkeley.edu>
MIME-Version: 1.0
Content-Type: text/plain




i'm having a problem with pgp.  i want to use it in my remailer
to decrypt incoming encrypted remail requests.  the problem is this:
someone could send in a keyfile instead of an encrypted text.
according to the pgp manual,

If you want to specify a particular key ring file name, but want to
see all the keys in it, try this alternative approach:

    pgp keyfile

With no command options specified, PGP lists all the keys in
keyfile.pgp, and also attempts to add them to your key ring if they
are not already on your key ring.

this is bad because that's also the command used to decrypt
a file.  how can i make sure that the only thing pgp will attempt
to do is decrypt a file, and it will never take keys from
the input file and add them to any keyring?

e





Thread