Home GnuPG

Recent Activity
ActivePublic

Recent Activity

Yesterday

jpalus added a comment to T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x.

Note that exactly same data and length computed by ssh_signature_encoder_rsa, including additional 0, reach:
https://github.com/openssh/openssh-portable/blob/V_10_2_P1/sshkey.c#L517-L537

Tue, Mar 31, 6:38 PM · gpgagent, ssh, Bug Report
ebo added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

2.2.53 was released wit VSD 3.3.6

Tue, Mar 31, 4:56 PM · vsd33, gnupg26, gnupg22
ebo moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from WiP to QA on the gnupg22 board.
Tue, Mar 31, 4:54 PM · vsd33, gnupg26, gnupg22
ebo moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from Backlog to QA on the vsd33 board.
Tue, Mar 31, 4:54 PM · vsd33, gnupg26, gnupg22
ebo edited projects for T7333: Allow gpg to auto-upload a new own key to LDAP servers, added: vsd33; removed vsd34.
Tue, Mar 31, 4:53 PM · vsd33, gnupg26, gnupg22
werner assigned T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x to gniibe.

Let's see whether Niibe-san still remembers the T7882 case.

Tue, Mar 31, 3:23 PM · gpgagent, ssh, Bug Report
werner added a comment to T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver.

Can you please test the patch below in your environment. That would be helpful.

Tue, Mar 31, 3:18 PM · Keyserver, gnupg26, Bug Report
werner committed rG66fdafab3c6d: gpgsm: Fix bug so that a cert can be signed by a different algo. (authored by werner).
gpgsm: Fix bug so that a cert can be signed by a different algo.
Tue, Mar 31, 2:52 PM
jpalus added a comment to T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x.

Added to some debug logging and whenever login issue occurs new logic is applied:
https://github.com/gpg/gnupg/blob/bc7c91bee521e4adf3506ca32bf34177b84ce1c5/agent/command-ssh.c#L1482

Tue, Mar 31, 1:50 PM · gpgagent, ssh, Bug Report
jpalus added a comment to T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x.

Looks like indeed related to T7882. After reverting c7e0ec12609b401ea81c4851522d86eb5ec27170 I was able to make 2000 connections without any issue. Bringing the change back and retrying issue appeared within first 300.

Tue, Mar 31, 1:21 PM · gpgagent, ssh, Bug Report
jpalus added a comment to T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x.

I've already tried with verbose which gave no errors. That's why I moved to debug logging. With double verbose I don't see anything wrong either. Excerpt from log for relevant 100 connections among which 1 failed:

$ cat gpg.log | 
    sed 's/.*gpg-agent\[[0-9]*\] //'  | # remove date, time and process id                            
    grep -v 'ssh handler .* \(started\|terminated\)' | # appears to be mostly noise wit hex address
    sort|uniq -c
     80 new connection to /usr/libexec/gnupg2/scdaemon daemon established
     20 new connection to /usr/libexec/gnupg2/scdaemon daemon established (reusing)
    100 received ssh request of length 1
    100 received ssh request of length 208
    100 received ssh request of length 748
    100 sending ssh response of length 1
    100 sending ssh response of length 281
    100 sending ssh response of length 626
    100 ssh request handler for extension (27) ready
    100 ssh request handler for extension (27) started
    100 ssh request handler for request_identities (11) ready
    100 ssh request handler for request_identities (11) started
    100 ssh request handler for sign_request (13) ready
    100 ssh request handler for sign_request (13) started
    100 ssh-agent extension 'session-bind@openssh.com' not supported
    100 ssh-agent extension 'session-bind@openssh.com' received
Tue, Mar 31, 12:55 PM · gpgagent, ssh, Bug Report
werner added projects to T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x: ssh, gpgagent.

You need to get a log form gpg-agent. Put this into ~/.gnupg/gpg-agent/conf

Tue, Mar 31, 12:06 PM · gpgagent, ssh, Bug Report
l10n daemon script <scripty@kde.org> committed rMTP4d9fc4fcd13d: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Tue, Mar 31, 5:25 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAe185b2634606: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Tue, Mar 31, 5:24 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAad79b8369044: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Tue, Mar 31, 3:50 AM
l10n daemon script <scripty@kde.org> committed rMTPd3be336551c9: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Tue, Mar 31, 3:49 AM

Mon, Mar 30

jpalus created T8202: Intermittent ssh publickey login failure after upgrade to gnupg 2.5.x.
Mon, Mar 30, 6:56 PM · gpgagent, ssh, Bug Report
tfry committed rOJ98812ecf3493: Security level info (authored by tfry).
Security level info
Mon, Mar 30, 3:10 PM
tfry committed rOJ61b5ef7127b7: WIP (authored by tfry).
WIP
Mon, Mar 30, 3:10 PM
timegrid moved T8161: Invalid MimeType Related instead of Mixed from Backlog to WIP on the vsd34 board.
Mon, Mar 30, 2:31 PM · vsd34, gpd5x, gpgol
timegrid renamed T8193: Add a workflow to force encryption/signature with invalid or expired certificates from Draft: Add a workflow to force encryption/signature with invalid or expired certificates to Add a workflow to force encryption/signature with invalid or expired certificates.
Mon, Mar 30, 1:16 PM · gnupg, Feature Request, gpgol, kleopatra
tfry committed rOJ718b7ef3bf1a: Explicitly share certain paths between client and server (authored by tfry).
Explicitly share certain paths between client and server
Mon, Mar 30, 12:07 PM
ikloecker claimed T6702: Kleopatra: Offer retry of S/MIME encryption if encryption failed with "not trusted".
Mon, Mar 30, 11:57 AM · needs discussion, gpd5x, vsd34, Feature Request, kleopatra
ikloecker triaged T8201: Kleopatra: Optionally, allow encryption with invalid or expired certificates as Normal priority.
Mon, Mar 30, 11:54 AM · gpd5x, Feature Request, kleopatra
tfry committed rOJ4d9770451d1a: Look up keys in cache, instead (authored by tfry).
Look up keys in cache, instead
Mon, Mar 30, 11:47 AM
tfry committed rOJb2de026d6756: Make sure kleopatra windows open in foreground on Windows (authored by tfry).
Make sure kleopatra windows open in foreground on Windows
Mon, Mar 30, 11:47 AM
tfry committed rOJaacd549c702f: Bring dialogs to front on Windows (authored by tfry).
Bring dialogs to front on Windows
Mon, Mar 30, 11:46 AM
tfry committed rOJ334d25dc8f90: Show distinct messages if secret keys were found, but are not usable (authored by tfry).
Show distinct messages if secret keys were found, but are not usable
Mon, Mar 30, 11:46 AM
tfry committed rOJce8a3988c8bc: Inform in native client, if no secret key is available for connected account (authored by tfry).
Inform in native client, if no secret key is available for connected account
Mon, Mar 30, 11:46 AM
ikloecker added a subtask for T8193: Add a workflow to force encryption/signature with invalid or expired certificates: T6702: Kleopatra: Offer retry of S/MIME encryption if encryption failed with "not trusted".
Mon, Mar 30, 11:39 AM · gnupg, Feature Request, gpgol, kleopatra

Panel Used By

DashboardHome
DashboardRestricted Dashboard

Event Timeline

werner renamed this panel from to Recent Activity.Nov 27 2017, 10:50 AM
werner edited a custom field.
werner edited a custom field.
werner edited a custom field.
werner edited an edge.
werner renamed this panel from Recent Activity to Recent Activity X.Dec 18 2020, 1:20 PM
werner edited an edge.
werner renamed this panel from Recent Activity X to Recent Activity.Dec 18 2020, 1:22 PM