1.1 --- a/README.txt Sun Mar 30 23:58:12 2014 +0200
1.2 +++ b/README.txt Wed Sep 03 13:30:07 2014 +0200
1.3 @@ -511,6 +511,24 @@
1.4 of the exported key other than the originator was able to sign it with the
1.5 same keypair information.
1.6
1.7 +An alternative can involve bundling a secret with an exported key:
1.8 +
1.9 +To export a public key, the following command can be used:
1.10 +
1.11 +python tests/text_export.py 1C1AAF83 --secret
1.12 +
1.13 +This does nothing more than put a key in one message part and a secret entered
1.14 +on standard input in another part. However, the combination can then be
1.15 +encrypted and sent in a form where the secret is clearly associated with the
1.16 +key and can thus vouch for its authenticity:
1.17 +
1.18 + python tests/text_export.py 1C1AAF83 --secret \
1.19 +| python tests/test_encrypt.py 0891463A
1.20 +
1.21 +Here, only the recipient with key 0891463A can read the specified secret,
1.22 +check it with their copy of the secret, and thus come to a conclusion about
1.23 +the validity of the key provided.
1.24 +
1.25 The Message Format
1.26 ------------------
1.27