Page MenuHome GnuPG

Add a re-encrypt to additional key
Open, HighPublic

Description

It is sometimes useful to have a long-term storage key and a feature in the MUA
to add an additional public key encrypted packet to a message which was
encrypted to a temporary key.

Event Timeline

Does encrypt-to/hidden-encrypt-to in gpg.conf do this?

I now see I misunderstood the problem description.

The point is that a user has a message that is encrypted to key X. After
receiving the message, he wants to allow another key (say Y) to decrypt the
message by adding a symmetrically encrypted data packet to the message for Y,
i.e., without reencrypting the whole thing.

Right, or for example to re-encrypt a message to a workmate.

Another important use-case is to provide a way to migrate to a newer smartcard.

werner raised the priority of this task from Normal to High.Jun 6 2024, 11:23 AM

This has now been implemented for gnupg26 for public key encryption. However, symmetric key encryption, a man page, and the gpgme support are missing right now.