[prev in list] [next in list] [prev in thread] [next in thread] 

List:       gnupg-devel
Subject:    Re: Large keys and the keybox
From:       Werner Koch <wk () gnupg ! org>
Date:       2014-10-10 9:35:28
Message-ID: 87lhoo2rof.fsf () vigenere ! g10code ! de
[Download RAW message or body]

On Thu,  9 Oct 2014 21:47, dkg@fifthhorseman.net said:

> Does this limit size of an entire OpenPGP certificate, or just the key
> itself?

The certificate (aka keyblock) plus some keybox created meta
information.

I'd really like to have a limit here although all gpg versions don't
have a real memory limit at all (the keyblock is parsed into a linked
list and thus a large keyblock (i.e. with images) may eat up lots of
memory.  Which is the reason why it might be useful to add an API to
gpgme to set an rlimit for GnuPG processes.

Having a limit on import, as we have now with the keybox, would sort out
possible made up large keys (modulo schmorpness).


Shalom-Salam,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.


_______________________________________________
Gnupg-devel mailing list
Gnupg-devel@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-devel
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic