KMail & Kleopatra & S/MIME

Kai Bojens kb at kbojens.de
Sat Mar 25 22:15:41 GMT 2023


Am 25.03.2023 um 21:39 schrieb Ingo Klöcker <kloecker at kde.org>:

> The GnuPG backend will trust the CA stores curated by the distributions over 
> Werner Koch's dead body. Peoples' lifes depend on GnuPG not blindly trusting 
> anybody and their certificates by default.

I get that. On the other hand there are for example mails from DHL which are S/MIME signed and which are shown with an unknown trust status. Do we really expect people to call DHL‘s customer support to verify certificate fingerprints and then maybe audit the CA by themself?

Wouldn’t it be possible to add a simple option in Kleopatra so that I can choose to trust my distribution‘s CA store? 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2833 bytes
Desc: not available
URL: <http://mail.kde.org/pipermail/kde-pim/attachments/20230325/ab51a2e6/attachment.bin>


More information about the kde-pim mailing list