Page MenuHome GnuPG
Feed Advanced Search

Apr 19 2013

werner removed a project from T1489: GPA "Verify documents" window doesn't scroll: Bug Report.
Apr 19 2013, 9:17 PM · Feature Request, gpa
werner added a project to T1489: GPA "Verify documents" window doesn't scroll: Feature Request.
Apr 19 2013, 9:17 PM · Feature Request, gpa
werner added a comment to T1489: GPA "Verify documents" window doesn't scroll.

Tested patches are welcome (against git master of course).

Apr 19 2013, 9:17 PM · Feature Request, gpa
werner changed Due Date from May 15 2009, 2:00 AM to Aug 31 2013, 2:00 AM on T807: encrypt-to-self option.
Apr 19 2013, 6:02 PM · gnupg, Feature Request
werner added a comment to T1064: gpgsm: manual page misses to document options.

Fixed in master

Apr 19 2013, 6:01 PM · backport, gnupg, Debian, Feature Request
werner added a project to T1064: gpgsm: manual page misses to document options: backport.
Apr 19 2013, 6:01 PM · backport, gnupg, Debian, Feature Request
werner added a comment to T928: Add runtime check for SE-linux.

Is that still something we should go for?

Apr 19 2013, 5:48 PM · Info Needed, gnupg, Feature Request
werner added a project to T928: Add runtime check for SE-linux: Info Needed.
Apr 19 2013, 5:48 PM · Info Needed, gnupg, Feature Request
werner removed Due Date on T928: Add runtime check for SE-linux.
Apr 19 2013, 5:48 PM · Info Needed, gnupg, Feature Request
werner changed Due Date from Mar 31 2008, 2:00 AM to Aug 31 2013, 2:00 AM on T618: use the attachment hooks to decrypt and verify attachmantes.
Apr 19 2013, 5:45 PM · Won't Fix, Feature Request, gpgol
werner added a comment to T618: use the attachment hooks to decrypt and verify attachmantes.

We plan to do something similar for the Informsec grant.

Apr 19 2013, 5:45 PM · Won't Fix, Feature Request, gpgol

Apr 5 2013

step closed T1471: hash functions for proof-of-work calculations (bcrypt/scrypt) as Resolved.
Apr 5 2013, 1:40 PM · libgcrypt, Feature Request
step added a comment to T1471: hash functions for proof-of-work calculations (bcrypt/scrypt).

Marking as resolved, as this seems to work fine now as far as I can tell (I'm
certainly happy).

Apr 5 2013, 1:40 PM · libgcrypt, Feature Request
step removed a project from T1471: hash functions for proof-of-work calculations (bcrypt/scrypt): In Progress.
Apr 5 2013, 1:40 PM · libgcrypt, Feature Request
werner added a project to T1471: hash functions for proof-of-work calculations (bcrypt/scrypt): In Progress.
Apr 5 2013, 12:30 PM · libgcrypt, Feature Request
werner added a comment to T1471: hash functions for proof-of-work calculations (bcrypt/scrypt).

scrypt has now been implemented.

Apr 5 2013, 12:30 PM · libgcrypt, Feature Request

Mar 22 2013

step added a comment to T1471: hash functions for proof-of-work calculations (bcrypt/scrypt).

D167: 370_scrypt.diff

Mar 22 2013, 12:59 PM · libgcrypt, Feature Request

Mar 20 2013

werner added a comment to T1470: ECC multiplication API for ECDH(E).

Done in master.

Mar 20 2013, 4:08 PM · libgcrypt, Feature Request
werner closed T1470: ECC multiplication API for ECDH(E) as Resolved.
Mar 20 2013, 4:08 PM · libgcrypt, Feature Request
werner added a comment to T1481: Output format option for Textmode conversion.

If you use --textmode during encryption the native line endings on the
decryption system are used. Adding an extra option to for arbitrary conversions
is IMHO not a good idea beause it violates the Unix principle of having
dedicated tools which work together. tr(1) does what you want.

Mar 20 2013, 11:33 AM · gnupg

Mar 19 2013

werner closed T1414: Please add pkg-config support as Resolved.
Mar 19 2013, 12:44 PM · Won't Fix, gpgme, Debian, Feature Request

Mar 18 2013

scarpe01 added projects to T1481: Output format option for Textmode conversion: Feature Request, gnupg.
Mar 18 2013, 7:52 PM · gnupg
werner closed T1217: VERY_STRONG RNG seed initialization is problematic if only few bytes needed as Resolved.
Mar 18 2013, 9:02 AM · Won't Fix, libgcrypt, Feature Request
werner added a comment to T1217: VERY_STRONG RNG seed initialization is problematic if only few bytes needed.

1.6 (current master) now has a feature to switch to a pure /dev/random based RNG.

Mar 18 2013, 9:02 AM · Won't Fix, libgcrypt, Feature Request

Mar 6 2013

lmamane added a comment to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file.

Still have this issue. Here is an updated patch against 2.0.19. Please
consider including it, or provide some feedback if this is a bad idea / should
be done a different way.

Marking this as a bug since it restores useful functionality that was lost.

Mar 6 2013, 2:34 AM · Feature Request, gnupg
lmamane changed Version from 2.0.18 to 2.0.19 on T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file.
Mar 6 2013, 2:34 AM · Feature Request, gnupg
lmamane added a comment to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file.

D151: 369_gnupg-2.0.19-showsession-trunc.patch

Mar 6 2013, 2:34 AM · Feature Request, gnupg
lmamane added a project to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file: Bug Report.
Mar 6 2013, 2:34 AM · Feature Request, gnupg

Feb 7 2013

step added projects to T1471: hash functions for proof-of-work calculations (bcrypt/scrypt): Feature Request, libgcrypt.
Feb 7 2013, 4:01 PM · libgcrypt, Feature Request
step added projects to T1470: ECC multiplication API for ECDH(E): Feature Request, libgcrypt.
Feb 7 2013, 3:56 PM · libgcrypt, Feature Request
step added projects to T1469: Support for ed25519: Feature Request, libgcrypt.
Feb 7 2013, 3:53 PM · libgcrypt, Feature Request

Jan 14 2013

flok added projects to T1464: key signing in GPGME: Feature Request, gpgme.
Jan 14 2013, 2:52 PM · gpgme, Feature Request

Jan 8 2013

werner added a project to T1460: allow larger key creation (8192 bits): Won't Fix.
Jan 8 2013, 3:31 PM · Won't Fix, Feature Request
werner added a comment to T1460: allow larger key creation (8192 bits).

No. See the discussion on the maling lists for the reason why we limit the RSA
key size to 4k.

Again a warning: Do not propose the use of such large keys. The end effect is
that people don't use encryption because it is too slow on non-big machines.

Jan 8 2013, 3:31 PM · Won't Fix, Feature Request

Jan 3 2013

bigkey added a project to T1460: allow larger key creation (8192 bits): Feature Request.
Jan 3 2013, 9:35 PM · Won't Fix, Feature Request

Dec 20 2012

werner added a comment to T1456: Support XDG basedir specification.

See the Topics field above: wontfix.
The feature request has been rejected. If you still want to pursuit it, please
start a discussion at gnupg-devel and don't contine here at the BTS.

Dec 20 2012, 6:08 PM · Feature Request, Won't Fix
werner closed T1456: Support XDG basedir specification as Resolved.
Dec 20 2012, 6:08 PM · Feature Request, Won't Fix
eheintzmann reopened T1456: Support XDG basedir specification as "Open".
Dec 20 2012, 5:37 PM · Feature Request, Won't Fix
eheintzmann added a comment to T1456: Support XDG basedir specification.

Not ure to understand you comment...
Have you added support for XDG basedir spec?

Dec 20 2012, 5:37 PM · Feature Request, Won't Fix
werner closed T1456: Support XDG basedir specification as Resolved.
Dec 20 2012, 2:57 PM · Feature Request, Won't Fix
werner added a comment to T1456: Support XDG basedir specification.

Add more complexity to the already complex configuration.

Dec 20 2012, 2:57 PM · Feature Request, Won't Fix

Dec 15 2012

eheintzmann added a comment to T1456: Support XDG basedir specification.

Please notice that backward compatibility can be preserved by continue to use
$HOME/.gnupg if it exits but using/creating XDG dirs when it is not exit.

Dec 15 2012, 1:16 PM · Feature Request, Won't Fix
werner added a project to T1456: Support XDG basedir specification: Won't Fix.
Dec 15 2012, 10:06 AM · Feature Request, Won't Fix
werner added a comment to T1456: Support XDG basedir specification.

That would be incompatible to previous versions and is thus not an option. If a
user wants this GNUPGHOME provides an easy way to do so. Keys should be
considered part of the configuration.

Dec 15 2012, 10:06 AM · Feature Request, Won't Fix

Dec 8 2012

eheintzmann added a project to T1456: Support XDG basedir specification: Feature Request.
Dec 8 2012, 4:36 PM · Feature Request, Won't Fix

Nov 8 2012

werner changed Version from 1.4.10 to all on T1347: More informative error message for unusable keys.
Nov 8 2012, 2:46 PM · gnupg, Feature Request
werner added a comment to T1347: More informative error message for unusable keys.

We won't do this for 1.4.

Nov 8 2012, 2:46 PM · gnupg, Feature Request
werner removed a project from T1347: More informative error message for unusable keys: gnupg (gpg14).
Nov 8 2012, 2:46 PM · gnupg, Feature Request
werner added a comment to T1173: gpg has no easy way to view the reason and description of revocation sigs.

I would say this should go into 2.1.

Nov 8 2012, 2:44 PM · gnupg, Debian, Feature Request

Oct 21 2012

tim added projects to T1449: dirmngr should be able to use LDAPv3: dirmngr, Feature Request.
Oct 21 2012, 8:15 PM · gnupg, Feature Request, dirmngr

Sep 26 2012

werner added a comment to T1444: Check keyid after downloading key from keyserver and before importing it.

What is your threat model?

Sep 26 2012, 3:22 PM · gnupg, Feature Request
werner closed T1441: Increase Key Size as Resolved.
Sep 26 2012, 3:21 PM · Won't Fix, Feature Request
werner added a comment to T1441: Increase Key Size.

It is already available in the latest 2.1-beta.

Sep 26 2012, 3:21 PM · Won't Fix, Feature Request
werner added a project to T1445: keyid-format fingerprint: Won't Fix.
Sep 26 2012, 3:20 PM · Duplicate, gnupg, Feature Request
werner added a comment to T1445: keyid-format fingerprint.

That is not possible for two reasons:

  1. For v3 keys the fingerprint is different from the keyID.
  2. We often have only the keyID but not the fingerprint available.
Sep 26 2012, 3:20 PM · Duplicate, gnupg, Feature Request

Sep 22 2012

ilf added a project to T1445: keyid-format fingerprint: Feature Request.
Sep 22 2012, 11:25 PM · Duplicate, gnupg, Feature Request

Sep 20 2012

mvo added a project to T1444: Check keyid after downloading key from keyserver and before importing it: Feature Request.
Sep 20 2012, 11:20 AM · gnupg, Feature Request

Sep 17 2012

Securityx added a comment to T1441: Increase Key Size.

Ok I did some more research on this topic and it appears ECC is the fix for RSA
additional key sizes. Do you have any idea when ECC will be implemented into
this gem? This draft appears to be expired though so its unknown to me if there
are plans to get this implemented into the default software without requiring a
patch.

Draft: https://tools.ietf.org/html/draft-jivsov-openpgp-ecc-11

Once again thanks for the feedback. I tried to search but I kept getting errors
so I apologize if this was previously addressed.

Sep 17 2012, 10:12 PM · Won't Fix, Feature Request
Securityx reopened T1441: Increase Key Size as "Open".
Sep 17 2012, 10:12 PM · Won't Fix, Feature Request
werner added a project to T1441: Increase Key Size: Won't Fix.
Sep 17 2012, 2:46 PM · Won't Fix, Feature Request
werner closed T1441: Increase Key Size as Resolved.
Sep 17 2012, 2:46 PM · Won't Fix, Feature Request
werner added a comment to T1441: Increase Key Size.

No.

Please read all the long threads on gnupg-users to learn why this is not a good
idea. You may also want to read Ross Anderson's "Security Engineering".

Sep 17 2012, 2:46 PM · Won't Fix, Feature Request

Sep 13 2012

Securityx added a project to T1441: Increase Key Size: Feature Request.
Sep 13 2012, 4:56 AM · Won't Fix, Feature Request

Aug 17 2012

gatuno added a comment to T1241: gnupg: need an option to automatically refuse signing photo-ids.

May I ask for the status of this bug?

Aug 17 2012, 9:10 PM · gnupg, Debian, Feature Request
gatuno added a comment to T807: encrypt-to-self option.

Is this going to be implemented in the gnupg 2.x series?

Aug 17 2012, 9:08 PM · gnupg, Feature Request
gatuno added a comment to T1098: Better ordering of "help" output in --edit-key mode.

May I ask what happen with this bug?

Just trying to keep track of these bugs in Debian Bug Tracking System.

Aug 17 2012, 9:06 PM · Documentation, gnupg, Debian, Feature Request

Aug 14 2012

werner removed a project from T1323: Poldi should allow password entry when a card is not inserted: Bug Report.
Aug 14 2012, 8:45 PM · Feature Request, poldi
werner added a project to T1323: Poldi should allow password entry when a card is not inserted: Feature Request.
Aug 14 2012, 8:45 PM · Feature Request, poldi
werner added a comment to T1077: GPA does not support symmetric en-/decryption.

Makese sense.

Aug 14 2012, 8:43 PM · gpa, Feature Request
werner added a comment to T1305: assuan-uds.c:211:3: warning: dereferencing type-punned pointer will break strict-aliasing rules.

Marked as resolved in Gentoo.

Aug 14 2012, 8:41 PM · Gentoo, Feature Request
werner closed T1305: assuan-uds.c:211:3: warning: dereferencing type-punned pointer will break strict-aliasing rules as Resolved.
Aug 14 2012, 8:41 PM · Gentoo, Feature Request
werner added projects to T1388: SSL Certificate for bugs.g10code.com has expired: Feature Request, Too Old.
Aug 14 2012, 8:40 PM · Too Old, Feature Request

Aug 8 2012

werner added projects to T759: GPA should register itself with gnome-vfs: Won't Fix, Too Old.
Aug 8 2012, 6:20 AM · Too Old, Won't Fix, gpa, Feature Request
werner added a comment to T759: GPA should register itself with gnome-vfs.

Is there still a gnome VFS? This wish is a bit too old. Re-open it if you like.

Aug 8 2012, 6:20 AM · Too Old, Won't Fix, gpa, Feature Request
werner closed T759: GPA should register itself with gnome-vfs as Resolved.
Aug 8 2012, 6:20 AM · Too Old, Won't Fix, gpa, Feature Request

Aug 1 2012

werner added a comment to T1426: the way gpg updates the pubring files makes it impossible to symlink it.

So now, what shall we do proper file locking and make sure that the user has
permissions to both files? It will be quite some code to get this all done right.

Aug 1 2012, 7:25 AM · Won't Fix, gnupg, Feature Request

Jul 20 2012

gatuno added a comment to T1173: gpg has no easy way to view the reason and description of revocation sigs.

Sorry for reviving this bug, but, What is this implemented in gpg 1.4.x series?

Or this is going to be in the gpg 2.x series?

Jul 20 2012, 11:51 PM · gnupg, Debian, Feature Request
attila.lendvai added a comment to T1426: the way gpg updates the pubring files makes it impossible to symlink it.

well, i'm not a posix security expert, so take it with a piece of salt... but if
gpg followed symlinks on the pubring files, then it would be possible to symlink
the same public key db into two gnupg home directories.

Jul 20 2012, 12:05 PM · Won't Fix, gnupg, Feature Request
gatuno added a comment to T1394: man page documents some unsupported parameters.

Hi!

These options are going to be removed from the manpage?

Jul 20 2012, 12:54 AM · gnupg, Debian, Feature Request

Jul 19 2012

nagydani added a comment to T1417: Unhashed signature subpacket "preferred keyserver" ignored for document signatures.

Revocations are only an issue with key updates, which must be (and, in fact,
are) made on the basis of preferred keyserver URL's in self-signatures on keys.

With document signatures, the only important issue is to have the key retrieved
from somewhere, if it is not known to the verifier. I cannot see any way in
which an attacker can make things worse for anyone, if retrieval is attempted
from URL's in unhashed subpackets if the key is not available.

The application that I am working on is a pontentially very large archive of
signed documents (financial transaction authorizations) that also contains the
corresponding keys. The archive is supposed to be distributed/redundant, with
both the documents and the keys available from multiple servers and it can also
be migrated from one server to another. Servers can go online and offline all
the time, no address is permanent. It is trivially easy for a server to include
its own address into an unhashed subpacket and very useful, too. The server does
not have access to private keys.

Nothing needs to be explained to users if they can simply
gpg --verify document.asc
after retrieving it from the server. Much more needs to be explained if
instructions are necessary where to retrieve the corresponding public key.
Polluting the HKP/SKS infrastructure with all the keys (most of which are
disposable) that we use would impose an unfair burden on the infrastructure and
as such would be a very irresponsible thing to do.

Jul 19 2012, 2:59 PM · Feature Request, gnupg
werner added a comment to T1426: the way gpg updates the pubring files makes it impossible to symlink it.

So you suggest to follow the symlink before editing the file?

Jul 19 2012, 1:30 PM · Won't Fix, gnupg, Feature Request
werner lowered the priority of T1417: Unhashed signature subpacket "preferred keyserver" ignored for document signatures from Normal to Wishlist.
Jul 19 2012, 1:28 PM · Feature Request, gnupg
werner added a project to T1417: Unhashed signature subpacket "preferred keyserver" ignored for document signatures: Feature Request.
Jul 19 2012, 1:28 PM · Feature Request, gnupg

Jul 18 2012

attila.lendvai added projects to T1426: the way gpg updates the pubring files makes it impossible to symlink it: Feature Request, gnupg.
Jul 18 2012, 5:25 PM · Won't Fix, gnupg, Feature Request
werner added a project to T1414: Please add pkg-config support: Won't Fix.
Jul 18 2012, 2:37 PM · Won't Fix, gpgme, Debian, Feature Request
werner added a comment to T1414: Please add pkg-config support.

The gpgme-config scripts goes along with the gpgme.m4 code. A .pc file won't be
able to do what we can do with this combination.

Please disregard my stupid comments about GPA. I was on the wrong track.

Jul 18 2012, 2:37 PM · Won't Fix, gpgme, Debian, Feature Request
werner raised the priority of T1422: Improve misleading message when trying to decrypt a file without the public key available from Wishlist to Normal.
Jul 18 2012, 2:33 PM · Bug Report, gnupg, Debian
werner added a comment to T1423: Description of 'key' command could be improved.

I will consider that for 2.1. Doing it for 1.4 will break all translations and
thus I don't belive it will be an improvement in the end.

Jul 18 2012, 2:31 PM · gnupg, Debian, Feature Request
werner closed T1425: Please default to 4096 bit keys for RSA as Resolved.
Jul 18 2012, 2:29 PM · gnupg, Debian, Won't Fix, Feature Request
werner added a project to T1425: Please default to 4096 bit keys for RSA: Won't Fix.
Jul 18 2012, 2:29 PM · gnupg, Debian, Won't Fix, Feature Request
werner added a comment to T1425: Please default to 4096 bit keys for RSA.

We don't see a reason for this. 2k is the current best practise. See the long
discussions on gnupg-users which pop up every few months.

Jul 18 2012, 2:29 PM · gnupg, Debian, Won't Fix, Feature Request
werner added a comment to T1424: gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT.

I need to verify this. It is possible that we do a keylisting while importing
keys and the keylisting prints to stdout. If that is the case, we can't change
it because gpgme and scripts may reply on it.

Using --quiet for --refresh-keys makse sens, though.

Jul 18 2012, 2:28 PM · gnupg, Debian, Feature Request

Jul 17 2012

dleidert renamed T1424: gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT from gpg --quiet doesn't suppress messages "requesting key XXX ..." to gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT.
Jul 17 2012, 8:26 PM · gnupg, Debian, Feature Request
dleidert added a comment to T1424: gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT.

Another user reported in this (I can verify it):

During a full refresh of the keyring, gpg seems to output all information
to STDERR and STDOUT. This makes it inconvenient to have a cron job to refresh
keys, because it can result in a very large and fairly useless mail.

Please ensure that normal output goes to STDOUT and errors and warnings to
STDERR so that problems aren't lost in the noise from this command.

Indeed some "normal" messages go to stderr and some warnings go to stdout.

Jul 17 2012, 8:25 PM · gnupg, Debian, Feature Request
dleidert added projects to T1425: Please default to 4096 bit keys for RSA: Feature Request, Debian, gnupg.
Jul 17 2012, 8:02 PM · gnupg, Debian, Won't Fix, Feature Request
dleidert set External Link to http://bugs.debian.org/611802 on T1424: gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT.
Jul 17 2012, 7:56 PM · gnupg, Debian, Feature Request
dleidert added projects to T1424: gpg --quiet doesn't suppress messages "requesting key XXX ..." / noise on STDERR/STDOUT: Feature Request, Debian, gnupg.
Jul 17 2012, 7:56 PM · gnupg, Debian, Feature Request
dleidert added projects to T1423: Description of 'key' command could be improved: Feature Request, Debian, gnupg.
Jul 17 2012, 12:02 AM · gnupg, Debian, Feature Request

Jul 16 2012

dleidert added projects to T1422: Improve misleading message when trying to decrypt a file without the public key available: Feature Request, Debian, gnupg.
Jul 16 2012, 11:51 PM · Bug Report, gnupg, Debian

Jul 13 2012

dleidert added a comment to T1414: Please add pkg-config support.

This won't add a dependency on pkg-config. The reporter requests, that you
ship a .pc file, so packages dependening on gpgme can use pkg-config to
determine compiler and linker flags when building against gpgme. There is no
request to make gpa use pkg-config.

Jul 13 2012, 2:39 PM · Won't Fix, gpgme, Debian, Feature Request