Doesn't it make sense to use the newest one if multiple root certs are found? I'm not sure if/how this problem can occur, but wouldn't this make GpgOL Web unusable until the surplus root certs are removed?
Doesn't it make sense to use the newest one if multiple root certs are found? I'm not sure if/how this problem can occur, but wouldn't this make GpgOL Web unusable until the surplus root certs are removed?
We create a temporary gnupghome, create a certificate, then look for it, copy out data and destroy that gnupghome.
I'm not sure we can actually go enough back/forward to actually end up with multiple, but that's at least so much a user error that we should be preventing that instead.