A hacker just can edit a file under ~/.gnupg/private-keys-v1.d, but it is good for gpg-agent to have a new command like SETATTR <ATTRNAME> <VALUE>, so that it offers a function to update a field reliably/programatically/etc.
Description
Description
Revisions and Commits
Revisions and Commits
rG GnuPG | |||
rG26d5a6e862c6 agent: KEYATTR only allows access to attribute. | |||
rG30b54a0ebbaa agent: Add KEYATTR command. |
Status | Assigned | Task | ||
---|---|---|---|---|
Resolved | • gniibe | T5984 gpg-agent interaction improvement (smartcard improvement #3) | ||
Resolved | • gniibe | T5988 agent: Add new command to update private key fields |
Event Timeline
Comment Actions
What about rejected changes to "Key:"? Other this command would make it too easy to mess up the actual private key.