X-Git-Url: https://iankelling.org/git/?a=blobdiff_plain;f=subdir_files%2F.gnupg%2Fgpg.conf;h=1f8d6f727cc9e0eceeea3c9dafb4058f90f3d9a6;hb=0da09a2fa9c4ce921d5af5be8494c4a96cce43de;hp=f45b4ee6cea240fcf9d3668578d1bf5db53d9ba7;hpb=a83e91030893a823da5f057d6b848dbac7593f01;p=distro-setup diff --git a/subdir_files/.gnupg/gpg.conf b/subdir_files/.gnupg/gpg.conf index f45b4ee..1f8d6f7 100644 --- a/subdir_files/.gnupg/gpg.conf +++ b/subdir_files/.gnupg/gpg.conf @@ -11,11 +11,13 @@ use-agent # https://security.stackexchange.com/questions/84280/short-openpgp-key-ids-are-insecure-how-to-configure-gnupg-to-use-long-key-ids-i # https://evil32.com/ # another option is 0xshort -keyid-format 0xlong +keyid-format long + default-key B125F60B7B287FF6A2B7DF8F170AF0E2954295DF -default-key 0xFB40960C541A7D1F +# financial key +#default-key 0xFB40960C541A7D1F # note, i did this so that gpg-agent would not hold open the .gnupg dir. # so I could unmount the filesystem which holds the .gnupg dir while @@ -28,3 +30,21 @@ default-key 0xFB40960C541A7D1F # echo -e "%Assuan%\nsocket=${HOME}/gpg-agent-socket/s" > ~/.gnupg/S.gpg-agent # # this is also in my conflink scrpt: # install -d -m700 ~/gpg-agent-socket +# and in /etc/X11/Xsession.d/01iank +# install -o iank -g iank -d -m700 /home/iank/gpg-agent-socket +# because something keeps deleting that directory + +# default keyserver. i switch around randomly to find one that is up. +# +# DO NOT USE THIS ONE. +#keyserver hkp://pool.sks-keyservers.net + +#keyserver hkp://keys.openpgp.org +#keyserver hkp://pgp.mit.edu +#keyserver hkp://keyserver.pgp.com +#keyserver hkp://ipv4.pool.sks-keyservers.net +#keyserver hkp://keys.gnupg.net +keyserver hkp://keyring.debian.org + +# more secure, but had problems with my gpg version +#keyserver hkps://hkps.pool.sks-keyservers.net