Page MenuHome GnuPG

defer use of new signing subkeys
Open, NormalPublic

Description

when i add a new subkey to my OpenPGP certificate, it isn't immediately accepted in every validating service (that is, everywhere that my key is known and authorized to do stuff e.g. mailing lists that require signed mails to post, upload queues that require signed files).

however, when gpg makes signatures, it chooses the most recent signing-capable key.

This leaves me in a situation where i have to go and manually fiddle with which subkey to sign with, based on whether or not the validating service has updated my certificate yet.

It'd be nice to be able to mark a signing-capable secret subkey as "deferred" so that it doesn't get used by default. then, when the validating services have accepted the new subkey, i can removed the "deferred" marking and carry on.

Details

Version
2.2.1