Home GnuPG

Recent Activity

Today

werner changed the status of T8026: Kleopatra: Export of multiple S/MIME certificates only exports one from Open to Testing.
Mon, Jan 12, 4:51 PM · gnupg26, Bug Report, gpd5x
werner committed rGc7770b0a7068: gpgsm: Make multiple search patterns work with keyboxd. (authored by werner).
gpgsm: Make multiple search patterns work with keyboxd.
Mon, Jan 12, 4:38 PM
werner committed rG71570012ed51: gpg: Remove a dead statement. (authored by werner).
gpg: Remove a dead statement.
Mon, Jan 12, 4:38 PM
werner added a comment to T8026: Kleopatra: Export of multiple S/MIME certificates only exports one.

Thanks Ingo. It seems 2.5.17 is not too far away.

Mon, Jan 12, 4:28 PM · gnupg26, Bug Report, gpd5x
ebo added a project to T6930: pinentry-qt window is not parented to Kleopatra on Wayland: Linux.
Mon, Jan 12, 4:01 PM · Linux, gpd5x, kleopatra, Bug Report
ikloecker removed a project from T8026: Kleopatra: Export of multiple S/MIME certificates only exports one: kleopatra.

I can reproduce this on the command line:

C:\Users\g10code>"c:\Program Files\GnuPG\bin\gpgsm.exe" --export --armor 579BAF3DF16AD462457BCC0897ADBC143D76EA7B 5A2B80F98F518D50891B1F0C7C6131AD107F9938 DB625D2BBBB5A3FD985C0233249B03090E85D402
Issuer ...: /CN=CA IVBB Deutsche Telekom AG 20/OU=Bund/O=PKI-1-Verwaltung/C=DE
Serial ...: 02195D190EBE34
Subject ..: /CN=iOS Test-Smartcard iostest01.sc/OU=BSI/O=Bund/C=DE/SerialNumber=2
    aka ..: iostest01.sc@bsi.bund.de
Keygrip ..: 527CE32FD0552D18479442EF90DD5E434C036329
Mon, Jan 12, 3:36 PM · gnupg26, Bug Report, gpd5x
ikloecker added a project to T8026: Kleopatra: Export of multiple S/MIME certificates only exports one: gnupg26.

I can reproduce the issue only (!!!) with keyboxd (on Windows).

Mon, Jan 12, 3:25 PM · gnupg26, Bug Report, gpd5x
ikloecker claimed T8026: Kleopatra: Export of multiple S/MIME certificates only exports one.
Mon, Jan 12, 2:00 PM · gnupg26, Bug Report, gpd5x
ebo added a project to T8027: Kleopatra: a secret team key should always include all public key information: Bug Report.
Mon, Jan 12, 11:49 AM · Bug Report, gpd5x, kleopatra
ebo triaged T8027: Kleopatra: a secret team key should always include all public key information as High priority.
Mon, Jan 12, 11:23 AM · Bug Report, gpd5x, kleopatra
ebo triaged T8026: Kleopatra: Export of multiple S/MIME certificates only exports one as High priority.
Mon, Jan 12, 11:22 AM · gnupg26, Bug Report, gpd5x
tfry updated the summary of D623: Explict pairing.
Mon, Jan 12, 10:46 AM · gpgol2
tfry committed rOJ47eeae82287d: Generate pairing token in proxy rather than native client (authored by tfry).
Generate pairing token in proxy rather than native client
Mon, Jan 12, 10:12 AM
tfry committed rOJb2ae7c20aee0: cleanups (authored by tfry).
cleanups
Mon, Jan 12, 10:12 AM
TobiasFella placed T6544: Kleopatra: Feedback for invalid date input up for grabs.
Mon, Jan 12, 10:05 AM · gpd5x, kleopatra
TobiasFella placed T7006: Problems in ToolBar up for grabs.
Mon, Jan 12, 10:05 AM · kleopatra, Bug Report, gpg4win
TobiasFella placed T7650: Kleopatra: Limit width of KMessageBoxes up for grabs.
Mon, Jan 12, 10:04 AM · gpd5x, gpgpass, kleopatra
tfry requested review of D623: Explict pairing.
Mon, Jan 12, 9:56 AM · gpgol2
TobiasFella placed T6934: Kleopatra: Import of gpgsk files up for grabs.
Mon, Jan 12, 9:39 AM · gpd5x, kleopatra
l10n daemon script <scripty@kde.org> committed rMTPfab906a34dbe: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 4:50 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOaf197de77fd9: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 4:50 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA266a4ecfc3b3: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 4:49 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA69005f74f458: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Mon, Jan 12, 4:02 AM
l10n daemon script <scripty@kde.org> committed rMTPe809ce3ff977: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 3:01 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO4f39d5ead79b: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 3:01 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAe6d4e5388952: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mon, Jan 12, 2:59 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAf123ee8c4e39: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Mon, Jan 12, 1:45 AM

Yesterday

mlaurent committed rMTPf2961e05b4c1: GIT_SILENT: increase minimum require cmake. Make sure that there is not problem (authored by mlaurent).
GIT_SILENT: increase minimum require cmake. Make sure that there is not problem
Sun, Jan 11, 8:02 PM
mlaurent committed rKLEOPATRAbba508e46424: GIT_SILENT: increase minimum require cmake. Make sure that there is not problem (authored by mlaurent).
GIT_SILENT: increase minimum require cmake. Make sure that there is not problem
Sun, Jan 11, 8:00 PM
mlaurent committed rLIBKLEO33b23e5fe661: GIT_SILENT: increase minimum require cmake. Make sure that there is not problem (authored by mlaurent).
GIT_SILENT: increase minimum require cmake. Make sure that there is not problem
Sun, Jan 11, 7:58 PM
l10n daemon script <scripty@kde.org> committed rLIBKLEOd87bd1da5978: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Jan 11, 4:23 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAe4aa2e695e19: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Jan 11, 4:22 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEO2a34da7b84c4: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Jan 11, 2:47 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA74683e2cfbca: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Jan 11, 2:46 AM
anthumchris closed T8005: TypeScript support, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), as Resolved.
Sun, Jan 11, 2:16 AM · gpgme, Feature Request
anthumchris closed T8005: TypeScript support as Resolved.

implemented TypeScript workflows using tsc without vite

Sun, Jan 11, 2:16 AM · gpgme, Feature Request

Sat, Jan 10

mlaurent committed rMTP16062a445217: cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward… (authored by mlaurent).
cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward…
Sat, Jan 10, 8:01 PM
mlaurent committed rKLEOPATRAa82d2b58cd6c: cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward… (authored by mlaurent).
cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward…
Sat, Jan 10, 8:01 PM
mlaurent committed rLIBKLEO356e0180ce2e: cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward… (authored by mlaurent).
cmake_minimum_required: drop outdated FATAL_ERROR. No more need for backward…
Sat, Jan 10, 7:57 PM
l10n daemon script <scripty@kde.org> committed rMTP6134c44cf37c: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Jan 10, 4:45 AM
l10n daemon script <scripty@kde.org> committed rMTP1146b5092d6a: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Jan 10, 2:57 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA37d9a20603c5: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Jan 10, 2:57 AM

Fri, Jan 9

ebo created T8027: Kleopatra: a secret team key should always include all public key information.
Fri, Jan 9, 6:12 PM · Bug Report, gpd5x, kleopatra
ebo added a project to T8026: Kleopatra: Export of multiple S/MIME certificates only exports one: Bug Report.
Fri, Jan 9, 4:05 PM · gnupg26, Bug Report, gpd5x
ebo created T8026: Kleopatra: Export of multiple S/MIME certificates only exports one.
Fri, Jan 9, 4:03 PM · gnupg26, Bug Report, gpd5x
werner moved T7866: Allow separate LDAP keyserver for uploading from QA to WIP on the gnupg26 board.
Fri, Jan 9, 3:50 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner changed the status of T7990: export-minimal unexpectedly omits expired key from Open to Testing.
Fri, Jan 9, 3:43 PM · gnupg26, Feature Request, Gentoo
werner committed rG0bcd9be9a068: gpg: New export-option "keep-expired-subkeys" (authored by werner).
gpg: New export-option "keep-expired-subkeys"
Fri, Jan 9, 3:35 PM
werner added a comment to T7990: export-minimal unexpectedly omits expired key.

So w/o the new option we have:

Fri, Jan 9, 3:11 PM · gnupg26, Feature Request, Gentoo
thesamesam added a comment to T7993: Documentation: make clear that detached signatures are preferred.

Thanks Werner.

Fri, Jan 9, 3:00 PM · Documentation
werner triaged T7990: export-minimal unexpectedly omits expired key as High priority.
Fri, Jan 9, 2:47 PM · gnupg26, Feature Request, Gentoo
werner added a comment to T7993: Documentation: make clear that detached signatures are preferred.

I updated the rendered form of the English GPH with a warning and a link to the blog.

Fri, Jan 9, 2:45 PM · Documentation
werner closed T7993: Documentation: make clear that detached signatures are preferred as Resolved.

Thanks for the hint.

Fri, Jan 9, 2:30 PM · Documentation
werner committed rD124678b1cf19: faq: Mention the cleartext signed blog and fix the keyserver entry (authored by werner).
faq: Mention the cleartext signed blog and fix the keyserver entry
Fri, Jan 9, 2:25 PM
werner committed rG0e37a6779e56: doc: Improve the "Programmatic use of GnuPG" section. (authored by werner).
doc: Improve the "Programmatic use of GnuPG" section.
Fri, Jan 9, 2:17 PM
timegrid added a comment to T7866: Allow separate LDAP keyserver for uploading.

The behaviour might have changed a bit because of the ldap: prefix i use now, or i have missed this case the last time:
Given some cert on the "download" server, I can find it, if dirmngr.conf contains only the "download" server, or if the "download" server is listed first:

Fri, Jan 9, 2:17 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner closed T7994: Documentation: mention `status-fd` in "Programmatic use of GnuPG" as Resolved.

Will be in the next release.

Fri, Jan 9, 2:02 PM · gnupg, Documentation
ebo added a project to T7804: de-vs compliance not shown if also password encrypted: test on hold.

testing will wait for special build

Fri, Jan 9, 1:55 PM · test on hold, gnupg22 (gnupg-2.2.49), vsd33 (vsd-3.3.3), Bug Report, vsd, gnupg26
werner closed T7663: Certificated signed using SHA-1 isn't trusted, but needs --force-sign-key to re-sign. as Resolved.
Fri, Jan 9, 1:42 PM · gnupg26, Feature Request
werner removed a project from T6815: PQC encryption for GnuPG: gnupg26.

it does not make sense to have a workboard item for this parent ticket.

Fri, Jan 9, 1:40 PM · OpenPGP, PQC, gnupg
werner closed T7298: gpg --quick-set-expire fails for V5 subkeys as Resolved.
Fri, Jan 9, 1:39 PM · gnupg24, gnupg26, Bug Report
werner moved T7298: gpg --quick-set-expire fails for V5 subkeys from QA to done on the gnupg24 board.
Fri, Jan 9, 1:38 PM · gnupg24, gnupg26, Bug Report
werner added a comment to T7866: Allow separate LDAP keyserver for uploading.

Independent of keyserver order in dirmngr.conf, --search-keys still offers keys from the upload server, but the download fails:

Fri, Jan 9, 1:35 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner added a comment to T7866: Allow separate LDAP keyserver for uploading.

For "Although the upload server is used for upload, the gpg message still displays the first keyserver" see T8025

Fri, Jan 9, 1:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner triaged T8025: Display the correct LDAP server in gpg if the upload flag is in use. as Normal priority.
Fri, Jan 9, 1:28 PM · Bug Report, LDAP, gnupg26
werner closed T7676: Cannot decrypt a message encrypted to a Cv25519 key on a token as Resolved.

I am using that version and key daily. No problems seen.

Fri, Jan 9, 1:25 PM · gnupg26, Bug Report
werner closed T7649: gnupg: Use KEM interface for encryption/decryption as Resolved.
Fri, Jan 9, 1:24 PM · gnupg26
timegrid closed T7893: GnuPG: Decryption fails if the pinentry dialog for the first tried recipient is canceled as Resolved.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

Fri, Jan 9, 1:18 PM · gnupg26, gnupg
ebo closed T7757: Kleopatra: Error "no data" on decryption of tar.gpg archive as Resolved.

was tested already by timegrid

Fri, Jan 9, 1:11 PM · gnupg26, gpd5x, kleopatra
ebo closed T7491: Confusing additional pinentry on creation of new keypair with ADSK configured as Resolved.

This does not happen any more, tested with Gpg4win-5.0.0-beta479

Fri, Jan 9, 1:09 PM · gpgagent, gnupg26, gnupg
ebo closed T7315: Allow export and import of PQC secret keys., a subtask of T6815: PQC encryption for GnuPG, as Resolved.
Fri, Jan 9, 12:29 PM · OpenPGP, PQC, gnupg
ebo closed T7315: Allow export and import of PQC secret keys. as Resolved.

Tested with Gpg4win-5.0.0-beta479

Fri, Jan 9, 12:29 PM · gnupg26, OpenPGP, PQC, gnupg
TobiasFella committed rKLEOPATRAbb0d3e95a35c: Add option for remembering sign/encrypt configuration (authored by TobiasFella).
Add option for remembering sign/encrypt configuration
Fri, Jan 9, 12:24 PM
TobiasFella committed rKLEOPATRA9b1e90c496c1: Add option for remembering sign/encrypt configuration (authored by TobiasFella).
Add option for remembering sign/encrypt configuration
Fri, Jan 9, 12:22 PM
ebo closed T7914: Card s/n number missing in gpgsm as Resolved.

in Gpg4win-5.0.0-beta479

Fri, Jan 9, 12:08 PM · gnupg22 (gnupg-2.2.52), scd, S/MIME, Feature Request, gnupg26
timegrid closed T7874: Kleopatra: GnuPG System configuration not translated as Resolved.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

Fri, Jan 9, 12:05 PM · i18n, gpd5x, kleopatra
ebo edited Description on Bug Report.
Fri, Jan 9, 11:55 AM
ebo closed T7892: keyboxd: subkey listing issue with ADSKs as Resolved.

with Gpg4win-5.0.0-beta479 the listing after creating the new key with ADSK looks ok now:

Fri, Jan 9, 11:44 AM · gnupg26, Bug Report, keyboxd, gnupg
werner edited projects for T6421: Improve error message if no reset code (PUK) is set, added: gnupg26; removed gnupg22, gnupg24.

I think we won't fix that for 2.2

Fri, Jan 9, 11:32 AM · gnupg26, Feature Request, gpgrt
timegrid moved T7971: Kleopatra: Always use gpgme to find the GnuPG binaries from WIP to Done on the gpd5x board.

I assume, that testing the functionality is the only thing I can do here.

Fri, Jan 9, 11:30 AM · vsd34, gpd5x, kleopatra
werner edited projects for T6436: Double pinentry on change password, added: gnupg26; removed gnupg24.
Fri, Jan 9, 11:28 AM · gnupg26, Feature Request, gnupg22, Restricted Project
werner changed the status of T7840: Oddity with 7816 change_reference_data from Testing to Open.
Fri, Jan 9, 11:27 AM · Bug Report, gnupg22, gnupg26, scd
werner moved T7840: Oddity with 7816 change_reference_data from QA to Done on the gnupg26 board.
Fri, Jan 9, 11:27 AM · Bug Report, gnupg22, gnupg26, scd
werner moved T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds from Backlog to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:25 AM · gnupg22 (gnupg-2.2.52), gnupg24, gpd5x, kleopatra, Bug Report
werner closed T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server as Resolved.
Fri, Jan 9, 11:22 AM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WiP to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:22 AM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner closed T7829: w32: daemon (gpg-agent/keyboxd/dirmngr) startup and connection race when there is a socket file already, a subtask of T7658: Okular: Dirmngr startup timeout on signature validation, as Resolved.
Fri, Jan 9, 11:21 AM · Bug Report, gpd5x, okular
werner closed T7829: w32: daemon (gpg-agent/keyboxd/dirmngr) startup and connection race when there is a socket file already as Resolved.

That was also fixed in gnupg 2.2.50 and thus vsd 3.3.3

Fri, Jan 9, 11:21 AM · gnupg22 (gnupg-2.2.52), Bug Report, gpd5x, okular
werner moved T7829: w32: daemon (gpg-agent/keyboxd/dirmngr) startup and connection race when there is a socket file already from QA to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:19 AM · gnupg22 (gnupg-2.2.52), Bug Report, gpd5x, okular
werner moved T7914: Card s/n number missing in gpgsm from WiP to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:17 AM · gnupg22 (gnupg-2.2.52), scd, S/MIME, Feature Request, gnupg26
werner moved T2196: keydb locking can result in deadlock in 2.2 from Backlog to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:15 AM · gnupg22 (gnupg-2.2.52), Bug Report
werner closed T2196: keydb locking can result in deadlock in 2.2 as Resolved.

That was fixed with 2.2.52 which fixed a bug in the fix done in 2.2.50 (see rG31fef13df1). Note that 2.2.48 to 2.2.50 had only internal releases.

Fri, Jan 9, 11:15 AM · gnupg22 (gnupg-2.2.52), Bug Report
werner created gnupg22 (gnupg-2.2.52).
Fri, Jan 9, 11:11 AM
werner closed T7805: Permission denied on batch deletion of mixed (openpgp+smime) certs as Resolved.

Given that the 2.2 fix has been tested and resolved and we don't have another ticket for 2.6, we can close this one.

Fri, Jan 9, 11:07 AM · gnupg, vsd, kleopatra
werner closed T7805: Permission denied on batch deletion of mixed (openpgp+smime) certs, a subtask of T7855: keybox/keydb locking issue in 2.6 , as Resolved.
Fri, Jan 9, 11:07 AM · gnupg26, gpd5x
timegrid moved T7567: Kleopatra: warning regarding attribute "_X_" from WIP to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11

Fri, Jan 9, 11:06 AM · gpd5x, kleopatra
werner lowered the priority of T7889: libgcrypt: HAVE_BROKEN_MLOCK from High to Normal.

Okay, let's backport this.

Fri, Jan 9, 11:04 AM · backport, libgcrypt, Bug Report
werner lowered the priority of T7895: Kleopatra: Handbook outdated from High to Normal.
Fri, Jan 9, 11:01 AM · Documentation, gpd5x, kleopatra
werner closed T7904: GnuPG may downgrade digest algorithm to SHA1, a subtask of T7900: Cleartext Signature Forgery in GnuPG, as Resolved.
Fri, Jan 9, 11:01 AM · Not A Bug, OpenBSD, gnupg
werner closed T7904: GnuPG may downgrade digest algorithm to SHA1 as Resolved.

Note that for exploiting this bug a second preimage attack for SHA-1 is required. This kind of attack on SHA1 is not yet possible.

Fri, Jan 9, 11:01 AM · gnupg, Bug Report