1 Return-Path: <dkg@fifthhorseman.net>
\r
2 X-Original-To: notmuch@notmuchmail.org
\r
3 Delivered-To: notmuch@notmuchmail.org
\r
4 Received: from localhost (localhost [127.0.0.1])
\r
5 by olra.theworths.org (Postfix) with ESMTP id BAE8540DBDA
\r
6 for <notmuch@notmuchmail.org>; Mon, 15 Nov 2010 08:41:00 -0800 (PST)
\r
7 X-Virus-Scanned: Debian amavisd-new at olra.theworths.org
\r
11 X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5
\r
12 tests=[BAYES_00=-1.9, UNPARSEABLE_RELAY=0.001] autolearn=ham
\r
13 Received: from olra.theworths.org ([127.0.0.1])
\r
14 by localhost (olra.theworths.org [127.0.0.1]) (amavisd-new, port 10024)
\r
15 with ESMTP id gN4IJKcA-9+o for <notmuch@notmuchmail.org>;
\r
16 Mon, 15 Nov 2010 08:40:50 -0800 (PST)
\r
17 Received: from rodolpho.mayfirst.org (rodolpho.mayfirst.org [209.234.253.107])
\r
18 (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits))
\r
19 (No client certificate requested)
\r
20 by olra.theworths.org (Postfix) with ESMTPS id ABDE840DBDE
\r
21 for <notmuch@notmuchmail.org>; Mon, 15 Nov 2010 08:40:50 -0800 (PST)
\r
22 Received: from localhost (localhost [127.0.0.1])
\r
23 by rodolpho.mayfirst.org (Postfix) with ESMTP id E4FD93CD51;
\r
24 Mon, 15 Nov 2010 11:40:47 -0500 (EST)
\r
25 X-Virus-Scanned: Debian amavisd-new at rodolpho.mayfirst.org
\r
26 Received: from rodolpho.mayfirst.org ([127.0.0.1])
\r
27 by localhost (rodolpho.mayfirst.org [127.0.0.1]) (amavisd-new,
\r
29 with ESMTP id B1owRp0cxH0W; Mon, 15 Nov 2010 11:40:47 -0500 (EST)
\r
30 Received: from [127.0.0.1] (localhost [127.0.0.1]) (Authenticated sender:
\r
31 smtpauth@rodolpho.mayfirst.org) with ESMTPSA id 922553CD45
\r
32 Message-ID: <4CE1628B.90206@fifthhorseman.net>
\r
33 Date: Mon, 15 Nov 2010 11:40:43 -0500
\r
34 From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
\r
35 User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US;
\r
36 rv:1.9.2.9) Gecko/20100918 Icedove/3.1.4
\r
38 To: David Edmondson <dme@dme.org>
\r
39 Subject: Re: a proposed change to JSON output to report verification of
\r
40 PGP/MIME signatures.
\r
41 References: <4CDE4486.2050101@fifthhorseman.net>
\r
42 <871v6mzxza.fsf@ut.hh.sledj.net>
\r
43 In-Reply-To: <871v6mzxza.fsf@ut.hh.sledj.net>
\r
44 X-Enigmail-Version: 1.1.2
\r
45 OpenPGP: id=D21739E9
\r
46 Content-Type: multipart/signed; micalg=pgp-sha512;
\r
47 protocol="application/pgp-signature";
\r
48 boundary="------------enig89FA32B51862D827BEFA79D6"
\r
49 Cc: notmuch <notmuch@notmuchmail.org>
\r
50 X-BeenThere: notmuch@notmuchmail.org
\r
51 X-Mailman-Version: 2.1.13
\r
53 List-Id: "Use and development of the notmuch mail system."
\r
54 <notmuch.notmuchmail.org>
\r
55 List-Unsubscribe: <http://notmuchmail.org/mailman/options/notmuch>,
\r
56 <mailto:notmuch-request@notmuchmail.org?subject=unsubscribe>
\r
57 List-Archive: <http://notmuchmail.org/pipermail/notmuch>
\r
58 List-Post: <mailto:notmuch@notmuchmail.org>
\r
59 List-Help: <mailto:notmuch-request@notmuchmail.org?subject=help>
\r
60 List-Subscribe: <http://notmuchmail.org/mailman/listinfo/notmuch>,
\r
61 <mailto:notmuch-request@notmuchmail.org?subject=subscribe>
\r
62 X-List-Received-Date: Mon, 15 Nov 2010 16:41:00 -0000
\r
64 This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
\r
65 --------------enig89FA32B51862D827BEFA79D6
\r
66 Content-Type: text/plain; charset=UTF-8
\r
67 Content-Transfer-Encoding: quoted-printable
\r
69 On 11/15/2010 05:23 AM, David Edmondson wrote:
\r
70 > i.e. the existence of the multipart/signed wrapper should be
\r
71 > explicit. In general, all MIME parts should be visible.=20
\r
73 thanks, this makes sense to me.
\r
75 > Changing the JSON output in this way would not materially affect your
\r
76 > proposal, I believe. There'd be some implicit changes in the output (fo=
\r
78 > example, if a signature signs a multipart/mixed part your proposal woul=
\r
80 > list it as signing the sub-parts of the multipart/mixed, but with my
\r
81 > additional changes it should be listed as signing the multipart/mixed
\r
84 this is interesting: under your proposed changes, the "signs" element
\r
85 would not need to be a list any more. it could just be a single part ID.
\r
86 I think i like that.
\r
88 "sigstatus" would still need to be a list, though, since you can have a
\r
89 signature part that contains multiple signature packets.
\r
91 Thanks for helping think this through, David.
\r
96 --------------enig89FA32B51862D827BEFA79D6
\r
97 Content-Type: application/pgp-signature; name="signature.asc"
\r
98 Content-Description: OpenPGP digital signature
\r
99 Content-Disposition: attachment; filename="signature.asc"
\r
101 -----BEGIN PGP SIGNATURE-----
\r
102 Version: GnuPG v1.4.10 (GNU/Linux)
\r
103 Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
\r
105 iQIcBAEBCgAGBQJM4WKLAAoJEMzS7ZTSFznpfJoP/25jaTDnLLqRx44tuJZw4AN4
\r
106 pr0SnThsW+yD+Fu5V8mpeKhnN+95c8zWzpfnw+BLP5z3z/3VkG/S7+V3K3ymveVc
\r
107 GyOWgXs6hZSnhL6LvWWKhL26o62CIRY+XwClUEwFzr4R7A60mfFt+kbzFFPvR1rZ
\r
108 me27DlfIQZ1YALA4HZKAJvGNXAv2pfkatqyLfLQUIIuIZz8frHniT1FYEypvx89B
\r
109 id0DvaLrf9bpcj1xzA/UCMRFJeB2wGFjn3tfaTNevUEqR+BFRtnzMYO1K/wUaOXE
\r
110 titCSw4Z9xpddha6lHelAHbuKTq3YA3C6RwsZUbrgiZXU2mBgtUFdOH7bxexWJZK
\r
111 O2+UoinRQt0fnPNihvVwinyWf9WyV6L6ySJcN1hgKuWFvFIoCnTHrJyuLmA8U7ke
\r
112 rmVEAfsPQMqirAwpUFTH97+jGP0OIChPbEM4pJil3X/2aLx3ynQLszC0RsE+IM1I
\r
113 aX4uVORMDuy0WwwD5d8e+u8YZ9WUS3oASp3cCnoUMfUjKgGoS45Uq0MF5KuXRCs0
\r
114 MiwaFF71WpuIJFqyKgAtJ1oIkR3PjX1X94WUC1bvLcnuB+ib2DTn9cmsDTBokHjR
\r
115 pmpX139heo0fX44RPsk7f9UW1frLCccUQH2H/isFyzy9iAtsrTFBcsIKbVN0jc+s
\r
116 dkzPg4jPkrvE30OaPMGA
\r
118 -----END PGP SIGNATURE-----
\r
120 --------------enig89FA32B51862D827BEFA79D6--
\r