Wednesday, June 25, 2008

My public keys

It's a bit silly with all the FRA-debate, but I figured I should anyway publish my public keys / certificate properly. Do note that the corresponding private keys are just kept encrypted with passphrases on my disks, thus not as reliable as if kept in some security tokens (I will however get some soon).

My X.509 / S/MIME certificate:

$ openssl x509 -in mail.der -fingerprint
SHA1 Fingerprint=D1:50:3A:C3:76:FD:37:95:58:4D:A4:F1:A9:1E:D4:F9:49:0C:8C:95
-----BEGIN CERTIFICATE-----
MIIC6jCCAlOgAwIBAgIQfieZBy5u6tREnLuiykK/mDANBgkqhkiG9w0BAQUFADBi
MQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkg
THRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWlsIElzc3Vpbmcg
Q0EwHhcNMDgwNzMxMTMzNDU3WhcNMDkwNzMxMTMzNDU3WjBKMR8wHQYDVQQDExZU
aGF3dGUgRnJlZW1haWwgTWVtYmVyMScwJQYJKoZIhvcNAQkBFhhjai5zdmVuaW5n
c3NvbkBnbWFpbC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDx
VgamRU9zL7ugY+2u/LHg4JyjLJhqUqvQmpwp4zHDSW4tjAOBmn2wRmF/53/LKqWu
w2nfvHig888V+uIa8+xVFgS1AyJ6xX3jqWQ0OD7GzjCAglV2auZ7cYNd3uMO9/yg
AdyxwwKHZnTSYhlBdL85En2RKbjGHimVlZag569pkxeA3dY6Tea7n79bmRuGzlSQ
C6CdZOcbbr7SWih6a35tfxxvDBQDjPQKZs1o6ois8AhdwwwepmiTT6Fsn9S8fje9
0UuFol7nEIswbK7lE+44W375iuxk1bXJep6VzWhB8kLWPB9DRMfjFcNuzABziRkH
Ei5GeKDfRc+IAEHbfmMZAgMBAAGjNTAzMCMGA1UdEQQcMBqBGGNqLnN2ZW5pbmdz
c29uQGdtYWlsLmNvbTAMBgNVHRMBAf8EAjAAMA0GCSqGSIb3DQEBBQUAA4GBAAiG
70aW9v7pZEpYnUCABuodVaxJO29L2SLb0EFe+jhVaOJ/09i0d/hYRk+4AFDrLEXZ
a63RHDZ/quOYSHaDSsidpX35yRNtT4FSxhm4SsbZiUZfjZAMNxpnsqkooWiz+goU
ABIWtzdtjilKbVrc9WfAQsYJElTN3Qvo7T3h17IO
-----END CERTIFICATE-----

My PGP / GnuPG public key:
Key fingerprint = 0349 0021 407D 9955 A3B5 FC18 1294 5939 1766 8EFA
-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: GnuPG v1.4.8 (Darwin)
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=uo2X
-----END PGP PUBLIC KEY BLOCK-----

Since I got OneSwarm, my friends may go ahead and add me:
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCFhFi8f
wtqFA1mf3LbIrVvhj2Z15hzVM0R5BWZtUhO852salZc0g
xI9vHIvD+2AInT01HcIvDTkJlQ2vebomJOhO69NqkJhHG
rVfpWYZAQLYCrM19lmu4cFAM4+uakI0sSeNh0iuzISQBS
VL2e5Al8vNTIoTfAXEnD4q+VJX/7uQIDAQAB
(Update: I had some issues with that the GnuPG key was expired, so I had to update that and get it onto a keyserver. The fingerprint is unchanged, and I will probably get myself Aladdin eToken PRO or an AET CrypToken any day now)

(Update 2: Now I have managed to securely generate and store on an Aladdin eToken PRO my X.509 / S/MIME certificate, so that's a new one now)

(Update 3: I got OneSwarm, so I added my public keys here as well)

(Update 4: I changed laptop and the server is offline currently, so changed one OneSwarm keys)

No comments: