Home GnuPG

Recent Activity
ActivePublic

Recent Activity

Today

werner triaged T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver as High priority.
Sat, Mar 28, 6:12 PM · Keyserver, gnupg26, Bug Report
mlaurent committed rMTP5ecf445ca777: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sat, Mar 28, 1:15 PM
mlaurent committed rLIBKLEO55a1c92b2cdc: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sat, Mar 28, 1:11 PM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA662435a47660: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 4:20 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAeb062346c24e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 2:48 AM
l10n daemon script <scripty@kde.org> committed rMTP3bba878dd869: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 2:48 AM

Yesterday

Karl created T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver.
Fri, Mar 27, 4:28 PM · Keyserver, gnupg26, Bug Report
ebo closed T7838: GpgOL: resolver chooses wrong certificate to decide if autosecure should happen as Invalid.

I tried but couldn't reproduce it any more. Therefore setting it to invalid.

Fri, Mar 27, 4:23 PM · gpgol
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Before making subtickets for each application: I wonder if it is not all Kleopatra anyway? Isn't the security approval dialog basically Kleopatra?

Fri, Mar 27, 3:23 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

The equivalent for invalid S/MIME certificates are not-certified *PGP certificates.
(Valid/invalid are not ideal as technical terms as they have a broad general meaning, too. I hope my usage here is correct ;-) It is what I gathered from an explanation given by Werner.)

Fri, Mar 27, 3:07 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
timegrid added a comment to T8189: GnuPG: Bad signature on import of designated revokation certificate.

Note: The invalid revocation certificate: Bad signature - rejected line is also shown on vsd 3.3.4, gpg 2.2.53 @ win10 (but revocation works).

Fri, Mar 27, 1:30 PM · Bug Report, gnupg26
timegrid updated the task description for T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP.
Fri, Mar 27, 1:16 PM · needs discussion, Bug Report, gpd5x, gpgol
timegrid updated the task description for T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP.
Fri, Mar 27, 1:14 PM · needs discussion, Bug Report, gpd5x, gpgol
ebo added a project to T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP: needs discussion.

feedback of @mmontkowski needed

Fri, Mar 27, 1:01 PM · needs discussion, Bug Report, gpd5x, gpgol
timegrid added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Invalid certs (as stated in the status column in Kleopatra) are mainly S/MIME certs (e.g. with missing root cert, CRL check failed, etc). I haven't seen invalid pgp certs yet (might be e.g. very old ones with missing self signature).

Fri, Mar 27, 12:38 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
timegrid updated the task description for T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 12:11 PM · Bug Report, gnupg26
timegrid created T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 11:55 AM · Bug Report, gnupg26
ebo renamed T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates from Draft: Add a workflow to force encryption/signature with invalid/expired/disabled certificates to Draft: Add a workflow to force encryption/signature with invalid or expired certificates.
Fri, Mar 27, 11:49 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Invalid and expired are different cases.

Fri, Mar 27, 11:37 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
werner triaged T8195: Add option --ignore-expiration to gpg and gpgsm as Normal priority.
Fri, Mar 27, 11:17 AM · gnupg26, Feature Request
werner added a parent task for T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates: T6702: Kleopatra: Use GPGME_ENCRYPT_ALWAYS_TRUST.
Fri, Mar 27, 11:14 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
werner added a subtask for T6702: Kleopatra: Use GPGME_ENCRYPT_ALWAYS_TRUST: T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.
Fri, Mar 27, 11:14 AM · needs discussion, gpd5x, vsd34, Feature Request, kleopatra
werner claimed T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.
Fri, Mar 27, 11:07 AM · gnupg26, gpd5x, kleopatra, Bug Report
werner added a comment to T7843: GpgOL: Empty OpenPGP mails with "Read as plain" activated.

Not a good idea. Because then the user will open it with the browser and the browser loads all kind of additional data including drive-by malware. If HTML *mail* is shown by a MUA no links should be followed to keep information and the fact that it was read confidential.

Fri, Mar 27, 11:05 AM · vsd34, vsd, gpgol
werner triaged T8048: Keyboxd: S/MIME certificate is imported on ldap search as Normal priority.
Fri, Mar 27, 10:33 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
werner triaged T8093: GPGME: inconsistent behavior on GPGME_KEYLIST_MODE_LOCATE from hkp server as Normal priority.

I think locate mode is mostly meant to be used to retrieve a single key

Fri, Mar 27, 10:33 AM · to-be-discussed, Bug Report
werner triaged T8156: pinentry qt and fltk - fallback to tty on invalid DISPLAY as Normal priority.
Fri, Mar 27, 10:29 AM · pinentry, Bug Report
werner added a comment to T8156: pinentry qt and fltk - fallback to tty on invalid DISPLAY.

We talked about this in our developer meeting on Monday. I have never experienced the problem because I use the Qt version only on Windows and for my own use I use the Gtk version. In any case I think that Qt and fltk should fallback to curses to cover the case of using the Pinentry for a system startup on the console (e.g. the g13 case) with later switching to a GUI. And of course for those users who switch between GUI and console.

Fri, Mar 27, 10:28 AM · pinentry, Bug Report
ebo added a project to T8116: Draft: Kleopatra: For S/MIME verification do not use "fingerprint" in messages: needs discussion.
Fri, Mar 27, 10:01 AM · needs discussion, gpd5x, kleopatra
m.eik added a comment to T8192: Review "version mismatch message".

yes, we should only ask for an update of the manifest if its content was changed. the message should indicate that.

Fri, Mar 27, 8:46 AM · gpgol2

Panel Used By

DashboardHome
DashboardRestricted Dashboard

Event Timeline

werner renamed this panel from to Recent Activity.Nov 27 2017, 10:50 AM
werner edited a custom field.
werner edited a custom field.
werner edited a custom field.
werner edited an edge.
werner renamed this panel from Recent Activity to Recent Activity X.Dec 18 2020, 1:20 PM
werner edited an edge.
werner renamed this panel from Recent Activity X to Recent Activity.Dec 18 2020, 1:22 PM