NetBSD肴PGP窮∞ゃ
ゃ荅演PGP泣膊∞с 絲丞О(腱絲泣泣篏帥)茹c PGP泣篏号篏帥号ャc 羂ャ糸<若ゃ潟PGP泣若腟粋昭号ャc 障 吾帥<祉若吾臀峨垸网綽泣茹c障
PGP泣篏帥宴篁ヤус障
The NetBSD Project筝筝吾с<潟若 荀羆篁潟ャ宴若激с潟肴с綽荀障 絎茵膣号<潟守PGP篆♂若莠罕膀с
篆♂若莠綽荀後羇糸箴腓冴障
-
箴違≪潟荅括完紊眼∫c膊∞絎糸<若臀峨с
-
(吾с篏篆♂若莠罕膀)篁茯違泣臀峨с 綽泣臀峨с
-
紊祉ャc若馹ゃ潟ャ宴若激с潟箴 垸糸<若篆<с
PGP泣篏膊∞篏帥筝違
gpg (GNU Privacy Guard)с
pkgsrcsecurity/gnupg
с障
娯賢箴(pgpс)gnupg篏帥障
茯違с篁紙違泣篏с 泣篁紙≪ゃ潟cc若с障 >源≪ゃ潟cc若綵с障 >源泣篁紙泣泣若若≪若с障 篋榊篋冴с(若吟ID筝)泣 泣с潟障
劫PGP泣劫篋榊с腆肴┝ゃ网綽泣 篋ゃ号違障
-
筝水膊∞筝茯荐弱(CA) 劫篋榊≪ゃ潟cc若腆肴 劫泣劫篋榊(腟膵)с荐惹号障 泣若鴻筝障
-
篆♂若莠: 篋篋冴PGP泣篌c綵若≪ゃ潟cc若 腆肴篋泣臀峨号(緇т茯違泣臀峨紊с 茯障) 水c膊∞障ャc紊篋冴臀峨違 篆♂惹с腆肴┝ゃс障 篆♂若莠≪若ч荀紊泣с
篆♂若莠≪若сAB泣臀峨BC泣臀峨違 AC篆♂惹сゃ腆肴┝ゃс障 腴ゃAB∴岡篁祉臀峨篆♂若障 AC吾腟莊篆♂若若違障
違遺札筝菴違鴻障 Foo茵羂蕋綵若泣臀峨 Foo綣決辱<若腱臀峨泣х讐羈莢篁祉 篌若罩c障
茯違泣泣х讐 PGPx篋榊yс腆肴с 篁ヤс篁ヤс障
羈闋宴≪ゃ潟cc若茯炊祉篋冴絲障篋冴泣臀峨 宴障
激羝<c蕭祉ャc若篆ゃ 激級激吾吟с 憜DSA罔羣с紊1024級激狗DSA祉ャc若 狗障 紊с祉ャc若腆坂2048RSA泣垸臀峨 篏帥莖∽с 罧綽泣gnupg帥ゃ泣篏膂≦с障 (gnupg1024DSA/ElGamal泣с) (荐恰絵: 菴GnuPGсRSA臀峨RSA垸 泣c障)
膂≦荐臀峨帥RSA泣--gen-key<ャ若ч御 --edit-key泣篏帥caddkey潟潟RSA垸泣菴遵障 (gnupg茵腓冴膂≦腓冴障)
% gpg --gen-key Please select what kind of key you want: (1) DSA and ElGamal (default) (2) DSA (sign only) (4) ElGamal (sign and encrypt) (5) RSA (sign only) Your selection? 5 What keysize do you want? (1024) 2048 Requested keysize is 2048 bits Please specify how long the key should be valid. 0 = key does not expire <n> = key expires in n days <n>w = key expires in n weeks <n>m = key expires in n months <n>y = key expires in n years Key is valid for? (0) 0 Key does not expire at all Is this correct (y/n)? y You need a User-ID to identify your key; the software constructs the user id from Real Name, Comment and Email Address in this form: "Heinrich Heine (Der Dichter) <heinrichh@duesseldorf.de>" Real name: Joe Doe Email address: joe@doe.org Comment: (NetBSD) You selected this USER-ID: "Joe Doe (NetBSD) joe@doe.org" Enter passphrase: Repeat passphrase: public and secret key created and signed. key marked as ultimately trusted. pub 2048R/8385E7E3 2004-02-09 Joe Doe (NetBSD) <joe@doe.org> Key fingerprint = 9DDA CB87 9FF2 9950 1F5A 7F79 F38C E6DE 8385 E7E3 泣垸篏帥障--edit-key潟潟篏帥c膃2泣 垸障 % gpg --edit-key 8385E7E3 Secret key is available. gpg: checking the trustdb gpg: checking at depth 0 signed=0 ot(-/q/n/m/f/u)=0/0/0/0/0/1 pub 2048R/8385E7E3 created: 2004-02-09 expires: never trust: u/u (1). Joe Doe (NetBSD) <joe@doe.org> Command> addkey Key is protected. You need a passphrase to unlock the secret key for user: "Joe Doe (NetBSD) joe@doe.org" 2048-bit RSA key, ID 8385E7E3, created 2004-02-09 Enter passphrase: Please select what kind of key you want: (2) DSA (sign only) (3) ElGamal (encrypt only) (4) ElGamal (sign and encrypt) (5) RSA (sign only) (6) RSA (encrypt only) Your selection? 6 What keysize do you want? (1024) 2048 Requested keysize is 2048 bits Please specify how long the key should be valid. 0 = key does not expire <n> = key expires in n days <n>w = key expires in n weeks <n>m = key expires in n months <n>y = key expires in n years Key is valid for? (0) 0 Key does not expire at all Is this correct (y/n)? y Really create? y pub 2048R/8385E7E3 created: 2004-02-09 expires: never trust: u/u sub 2048R/7BD27991 created: 2004-02-09 expires: never (1). "Joe Doe (NetBSD) joe@doe.org" Command> save %
篁ヤу篋с
祉莖羣篋ャ荐絎鴻с 羣篋ャ(PGP 2.x泣c)緇у眼с障 莖篋冴御障馹с 泣羣篋ャ荐絎宴篋冴鴻若冴綽 腱絲泣膣紊宴障 羣篋ャ荐絎泣ャ篏帥ャ絖障
泣篏c緇篏帥c糸<若≪鴻UID泣 菴遵鴻с @NetBSD.org UID膃筝UID罎荐
PGP泣≪篏c潟≦拷泣篏cс с祉ャc寂演冴c翫腱絲泣紊宴c翫 (c鴻激ャ)鴻若冴綽翫泣 ≦劫с障 ≦拷泣絎贋篆膊< 腱絲泣ャ篆膊<障с 医激絎篆膊<с
絽吾PGP腱絲泣膊∞罔ゃ激潟篆膊< 腱絲泣紊純USB鴻c (絽莢ф<c純ц) 篆膊< 泣篏帥USB鴻c紊
PGP腱絲泣綣激鴻若冴у
絎泣≪
窮絲泣≪с腱絲泣絎絎綽荀障 泣с綺絽с 垸<祉若吾茯違臀峨腆肴茯違 泣綽荀障
c篁ヤ鴻с
-
泣泣泣若若脂蚊
-
泣localsrc/security/publickeys/developers潟
罔羣泣泣若若www.pgp.netpgp.mit.eduwww.keyserver.netс 泣泣若若~/.gnupg/gpg.conf篁ヤ絎с障
localsrc/security/publickeys/developers/READMEPGP泣NetBSD若純若鴻吾若潟茯障 肴PGP泣c若с (臀峨篁)筝ゃ潟潟сゃ潟若с障
荀: 泣罕荀膣腆肴篆♂惹с腆肴 泣臀峨с 泣с筝糸宍篋榊泣с腆肴 с鋌篋冴臀峨篆♂若綽с!
筝篁ヤс
-
PGP泣≪篁ヤ宴荐冴吾
級
泣帥ゃ
泣ID
篏
羣篋(荐絎)
UID
泣膣
泣gpg --fingerprint阪綽荀с (gpg --fingerprint阪<ゃゃ茲医 茲茖純a2ps -2 --borders no -B ...у医激吟c鴻 с)
-
PGP冴篆♂若с篁荳荐惹(鴻若) 祉肴(PGP究)篌c茵
-
祉肴絎篌c篋冴PGP冴羝< 鴻若茯帥鴻羝< 篋冴PGP冴篋冴鴻若茯帥鴻 篋冴≪ゃ潟cc若鴻若腆肴鴻若荐莠 PGP冴罸莠
≪ゃ潟cc若腆肴罐窮荅宴 腆肴罩cPGP泣泣ゃ潟с
篋冴PGPUID罩g∈鴻若筝眼翫 障 箴<若鴻若William篁cBill篏帥 Richard篁cDick篏帥c桁с 泣с篋冴≪ゃ潟cc若罩c菴処鴻 菴激c翫臀峨障 臀峨с違篁荳荐惹吾UID菴遵 荀羆UID臀峨
筝眼違PGP冴≪ゃ潟cc主∈茯絎篋 (ヤ筝膩)荐ャ 筝篋冴肴篌c絅絋障 号 窮讐若c若т篆♂惹сc菴処掘с筝号с 膺cс障
-
潟潟ャ若帥若祉c篁篋冴<泣ゃ潟若 (泣泣若若сlocalsrcс) gnupgс篁ヤ膂≦с障
% gpg --import moe_pgp_key.asc
泣茲医ゃ潟若馹障
泣泣若若ゃ潟若篁ヤ
% gpg --recv-key <keyid>
-
絨篁ヤ違ゃ潟若泣罕荀膣cPGP冴 宴у
泣帥ゃ
級
泣ID
泣膣
篁紙泣IDら泣篏純с (荐荐筝)膣cPGP泣篏純с 泣絅絋級激ゃ障
憜篁紙級激泣ID泣膣腟水ら泣篏 筝純障
PGP泣罕荀膣PGP冴筝眼違 泣綵PGP冴篋榊с腆坂拭с
-
臀峨罧篁篋御腓冴UID膊∞筝臀 腆肴с 腆肴箙掩違榊 御泣ф垸域с 御鴻篋箙掩違垸菴с 泣ф垸障 (垸菴篆<埈В茯紙我≪с) 御菴<祉若吾臀峨紊ус 違7鴻 御≪ゃ潟cc若腆肴с障
茲違UIDPGP泣腆肴違箙掩違糸<若≪鴻 c<≪
gnupg篏帥c鴻箴腓冴障
% cat >> moe@doe.org Hi Moe, please return this message to me. Please sign and encrypt it. Thanks, Joe ^D % dd if=/dev/urandom count=1 | md5 >> moe@doe.org % gpg --armor --encrypt moe@doe.org > moe@doe.org.asc
-
御菴篆<c緇垩臀峨腆肴障 綽荀荅薑腟篋с 御泣臀峨с障
GPG篏帥c泣臀峨篁ヤс
% gpg --edit-key <Key ID> sign
-
緇鴻臀峨違PGP泣鴻若 с
羈: PGP泣泣泣若若ユс 篁篋冴PGP泣贋・泣泣若若鴻с障 臀峨泣若違障 荳泣絽羆冴泣綵劫蚊с 泣泣若若с臀峨泣泣 泣絽障
% gpg --armor --export <Key ID>
mutt篏帥cс違muttmail-key罘純篏帥 с障
% mutt <ESC>k To: moe@NetBSD.org Subject: Your signed PGP key Please enter the key ID: 4461CF46 <Select key> ...
緇究泣違臀峨≪若 障篁ヤ潟潟у茵с障
% gpg --refresh-keys [--keyserver ...]
c泣c泣泣若寂у菴遵臀峨 緇若吾с障