Signature listing does not show annotations

Bug #1195917 reported by Phil Pennock
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
hockeypuck
Confirmed
Undecided
Unassigned

Bug Description

RFC 4880 5.2.3.20. Policy URI (subpacket type 26).

That holds a URL which contains a policy statement about how the identity was verified or whatever else the signer deems relevant.

By way of example, my two signatures on this key have a very relevant policy statement which provides relevant information about the security of the key being signed:

  http://keyserver.gazzang.net/pks/lookup?op=vindex&search=0xed914eb03e5983fee6ede8b8c69c3bc010b2b1f3

By contrast, SKS does list them, entitled "Policy URL":

  http://sks.spodhuis.org:11371/pks/lookup?op=vindex&search=0xC69C3BC010B2B1F3

I have other signatures which don't have the .txt extension and no guarantees can be provided, it's just a link to more information.

Minimally, Hockeypuck should do the same as SKS, including linkifying the URL. To be fancy, there could also be a button which uses Javascript to tack a new iframe into the current page, rendering the URL's content in a viewing window, or somesuch, with whatever security constraints are needed to protect against malicious iframe targets.

Casey Marshall (cmars)
Changed in hockeypuck:
milestone: none → backlog
status: New → Confirmed
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.