signalapp / Signal-Android

A private messenger for Android.
https://signal.org
GNU Affero General Public License v3.0
25.72k stars 6.17k forks source link

'old' identity keys should expire once one imports a more recent one #1134

Closed kotowicz closed 6 years ago

kotowicz commented 10 years ago

--> can not read messages anymore ("Bad encrypted message...") --> the wrong identity key got imported and I can not delete it --> the new contact and I can try to do 'end secure session' but a new key is never issued.

this problem could be avoided if only the most recent identity key would show up (and the old ones would have expired).

behrmann commented 10 years ago

I think this is somewhat related to https://github.com/WhisperSystems/TextSecure/issues/1049 It would be nice to have some way of forcing keys to be deleted, too.

automated-signal commented 6 years ago

GitHub Issue Cleanup: See #7598 for more information.