mirror of
git://git.gnupg.org/gnupg.git
synced 2025-07-03 22:56:33 +02:00
* misc.c (openpgp_pk_algo_usage): Default to allowing CERT for signing
algorithms. * keyedit.c (sign_uids): Don't request a signing key to make a certification. * keygen.c (do_add_key_flags): Force the certify flag on for all primary keys, as the spec requires primary keys must be able to certify (if nothing else, which key is going to issue the user ID signature?) (print_key_flags): Show certify flag. (ask_key_flags, ask_algo): Don't allow setting the C flag for subkeys. * keyid.c (usagestr_from_pk), getkey.c (parse_key_usage): Distinguish between a sign/certify key and a certify-only key.
This commit is contained in:
parent
752d64bffc
commit
f74282bee0
7 changed files with 59 additions and 18 deletions
|
@ -547,10 +547,13 @@ usagestr_from_pk( PKT_public_key *pk )
|
|||
if ( use & PUBKEY_USAGE_SIG )
|
||||
{
|
||||
if (pk->is_primary)
|
||||
buffer[i++] = 'C';
|
||||
use|=PUBKEY_USAGE_CERT;
|
||||
buffer[i++] = 'S';
|
||||
}
|
||||
|
||||
if ( use & PUBKEY_USAGE_CERT )
|
||||
buffer[i++] = 'C';
|
||||
|
||||
if ( use & PUBKEY_USAGE_ENC )
|
||||
buffer[i++] = 'E';
|
||||
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue