Received: by 2002:a05:6a10:af89:0:0:0:0 with SMTP id iu9csp3368458pxb; Mon, 17 Jan 2022 18:48:10 -0800 (PST) X-Google-Smtp-Source: ABdhPJyhDHCFgRLveGwKQnU5PBJUCo1+1WHkIHcyHZL+fabudqq9Jr5MR7L0rSfCVKF9Kw3BXNZP X-Received: by 2002:a17:902:a404:b0:148:bdd6:d752 with SMTP id p4-20020a170902a40400b00148bdd6d752mr25367113plq.20.1642474090550; Mon, 17 Jan 2022 18:48:10 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1642474090; cv=none; d=google.com; s=arc-20160816; b=fm+6UMDjBcJTfe+eVgEbwHbRbBk+vjSakgsRYzaBUgTyksIxWfEFMcCy0G0L9ottIZ cJEepnyRCNfroT/nYjSRPWChYa9FgC9mYOerskIQMcFCa/TANt6Oq9gCEbe7+R1MtqUs xsYhHzcbJyFwoKvfoSYGw+x914uM1c76OCoDzhFsCScbNDiepzo6mGUKks3QrHi/s3cB C7AuMUyqbw2JNOsmGeIXlecCpXAUVl4GPbIpR9mZIWk0GZrFqx9I1gTz+OXeu3p9fJnh xTAat8DKo3/YbzToIbr3Q3gappwEYHsUsdt7H1EWA7yDEd+NYl23HK6SwAqNQlTj2GwF kMHw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=0hNWdm5n9u5qVC3fRUHZ7VK1Pllh2iO5xA98hrEfK2U=; b=Q4ekFiYMVrdgZhfOHZF38uqG8RNvrX0RdgHcQhPgmZpa7OJt2CnDHiYxIi3mWdW+Hq FiKaGEa0xyN6nDuEUARXKCIHXv28O4wBseYpeDOFNLgBjpLTzdqd9+pgmGSpx65bIRVx Mw0DMRv1Ac0JdgRd7hSk1HEUlho8R/QD+wC8DBWjtTZpwEDB3mI3RmZYm1eu1+aSSW1U m6JF9PdJSd5xys+nsL0UJMuTpTbNlvmqOpRSy47pq6XeKfuqTXJt+uQuoeR2910mztpv NX1G+PLy0deSQCmzRHbxlowoYBpB9+KF8pfMMBsSrjcppcLczMO3j8yOiBfLS5KZoY8F bT5Q== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=google header.b=aJKzCXeh; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id f15si18447759pfc.104.2022.01.17.18.47.57; Mon, 17 Jan 2022 18:48:10 -0800 (PST) Received-SPF: pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@linuxfoundation.org header.s=google header.b=aJKzCXeh; spf=pass (google.com: domain of linux-crypto-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=linuxfoundation.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S243195AbiAQRIs (ORCPT + 99 others); Mon, 17 Jan 2022 12:08:48 -0500 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:46488 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S241962AbiAQRGq (ORCPT ); Mon, 17 Jan 2022 12:06:46 -0500 Received: from mail-qv1-xf2d.google.com (mail-qv1-xf2d.google.com [IPv6:2607:f8b0:4864:20::f2d]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id D3288C06124C for ; Mon, 17 Jan 2022 09:04:17 -0800 (PST) Received: by mail-qv1-xf2d.google.com with SMTP id ee17so7780224qvb.6 for ; Mon, 17 Jan 2022 09:04:17 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=linuxfoundation.org; s=google; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to; bh=0hNWdm5n9u5qVC3fRUHZ7VK1Pllh2iO5xA98hrEfK2U=; b=aJKzCXehSh69U3RCXCcLUhLPpMbpEfuimfkbEzb64vl/w1F4Xv+rtrMmPMNLj6S7Fc P/HAGYoGIXtQarO8AB5hoYnxeNGQsPg7lRCBGn9+gKDkaINIkfagzfWYLeqc9bFkfSNZ oXuoZT0lN+g6LPPqL8iXwNFSJx67yLdwW+r+E= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to; bh=0hNWdm5n9u5qVC3fRUHZ7VK1Pllh2iO5xA98hrEfK2U=; b=PN6hFPNYrkYPQDgQBmLOIrlxPpb/qaBKgDXE0DWCoFCRYRBwyKr+4YztXdxuj3bFID K3R2wyG/Aj1Z4c/2G8HucPbGPgPsyUQj8aXDn7zo5+SUKNOnTABFmSXI7wYZ5Kp2E/D5 msNDltKq1WKGX4WhrDItHxK9GP1hmQJjtY/+evOrrk3btvPBnTmpuHIrnRXC5biEnIn4 h33soRuo2tZl8ythoctIpnDjxe4ptLFhsxzRxEOc4bpFA3N+IGQbFe21L0ywhRSwPwU5 2rOFVxYi3egVcL7ruMGaxSz8I0OY9oT4SDSL9dQUZO/OUhY8AZNZFPjSvGyIfeDmNxVu ckJA== X-Gm-Message-State: AOAM530oaNi0YeO04GDnW5Lvs9mKPkvVyHL4Kt/U/9LiZvKky4RlnCIi r/bIje9vhMnFiQ8N/QwinDGlkA== X-Received: by 2002:ad4:5ca5:: with SMTP id q5mr19346839qvh.128.1642439057064; Mon, 17 Jan 2022 09:04:17 -0800 (PST) Received: from meerkat.local (bras-base-mtrlpq5031w-grc-32-216-209-220-181.dsl.bell.ca. [216.209.220.181]) by smtp.gmail.com with ESMTPSA id j2sm1637993qko.117.2022.01.17.09.04.16 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 17 Jan 2022 09:04:16 -0800 (PST) Date: Mon, 17 Jan 2022 12:04:15 -0500 From: Konstantin Ryabitsev To: "Jason A. Donenfeld" Cc: Roberto Sassu , dhowells@redhat.com, dwmw2@infradead.org, herbert@gondor.apana.org.au, davem@davemloft.net, keyrings@vger.kernel.org, linux-crypto@vger.kernel.org, linux-integrity@vger.kernel.org, linux-fscrypt@vger.kernel.org, linux-kernel@vger.kernel.org, zohar@linux.ibm.com, ebiggers@kernel.org Subject: Re: [PATCH 00/14] KEYS: Add support for PGP keys and signatures Message-ID: <20220117170415.7j342okd67xl6rix@meerkat.local> References: <20220111180318.591029-1-roberto.sassu@huawei.com> <20220117165933.l3762ppcbj5jxicc@meerkat.local> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline In-Reply-To: <20220117165933.l3762ppcbj5jxicc@meerkat.local> Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org On Mon, Jan 17, 2022 at 11:59:33AM -0500, Konstantin Ryabitsev wrote: > The most promising non-PGP development of PKI signatures that I've seen lately > is the openssh FIDO2 integration (the -sk keys) and support for > signing/verifying arbitrary external content using `ssh-keygen -n`. It even Typo fix: that should be `ssh-keygen -Y` -K