Skip to content

Conversation

@lubux
Copy link
Member

@lubux lubux commented Nov 20, 2024

This (PR) introduces a new flag, InsecureAllowVerificationWithReformattedKey. When enabled, this flag allows signature verification to succeed even if the associated key contains binding signatures that are newer than the signature being verified.

This situation can occur if a key was reformatted, resulting in its self-signatures
having timestamps in the future relative to the message signature, which would
typically render the key invalid at the time of signing.

@lubux lubux marked this pull request as draft November 25, 2024 09:32
Base automatically changed from feat/v2-flag-signing-key-decryption to main November 25, 2024 09:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants