Page MenuHome GnuPG
Feed Advanced Search

Dec 16 2013

werner added projects to T1531: Progress handler callback isn't called often enough during /dev/random reading: Restricted Project, backport.
Dec 16 2013, 9:48 AM · backport, Feature Request, libgcrypt
werner added a comment to T1531: Progress handler callback isn't called often enough during /dev/random reading.

Done something similar for master; needs to be backported to 1.5.

Dec 16 2013, 9:48 AM · backport, Feature Request, libgcrypt

Dec 12 2013

agl added a comment to T1579: --recv-key with full fingerprint does not actually check that the received key matches the fingerprint.

Also related (includes patch): http://bugs.debian.org/cgi-bin/bugreport.cgi?
bug=725411

Dec 12 2013, 9:22 PM · gnupg, Feature Request
agl added projects to T1579: --recv-key with full fingerprint does not actually check that the received key matches the fingerprint: Feature Request, gnupg.
Dec 12 2013, 4:11 PM · gnupg, Feature Request

Dec 11 2013

werner added a project to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file: Restricted Project.
Dec 11 2013, 10:37 AM · Feature Request, gnupg
werner added a comment to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file.

I have pushed a similar change to 2.0 and master. Will also be done for 1.4.

Dec 11 2013, 10:37 AM · Feature Request, gnupg

Dec 10 2013

toralf added a comment to T1577: gnupg chooses an outdated key.

Werner - taht is the problem - I already tried that (and other hints too) - it
is IMO a lack of a good feature in gpg.

Dec 10 2013, 5:34 PM · Feature Request, gnupg
werner added a comment to T1469: Support for ed25519.

Support is already in master and in the soon to be released 1.6.0

Dec 10 2013, 3:09 PM · libgcrypt, Feature Request
werner closed T1469: Support for ed25519 as Resolved.
Dec 10 2013, 3:09 PM · libgcrypt, Feature Request
werner renamed T1303: Please support GCRYSEXP_FMT_BASE64 from libgcrypt - base64 output format doesn't work to Please support GCRYSEXP_FMT_BASE64.
Dec 10 2013, 3:08 PM · Feature Request, libgcrypt
werner closed T1197: Cannot be made thread-safe when used by a library as Resolved.
Dec 10 2013, 3:07 PM · Too Old, Won't Fix, npth, libgcrypt, Feature Request
werner added a comment to T1197: Cannot be made thread-safe when used by a library.

Libgcrypt 1.6 will be released this year.

Dec 10 2013, 3:07 PM · Too Old, Won't Fix, npth, libgcrypt, Feature Request
werner added projects to T1197: Cannot be made thread-safe when used by a library: Won't Fix, Too Old.
Dec 10 2013, 3:07 PM · Too Old, Won't Fix, npth, libgcrypt, Feature Request
werner removed a project from T1197: Cannot be made thread-safe when used by a library: Stalled.
Dec 10 2013, 3:07 PM · Too Old, Won't Fix, npth, libgcrypt, Feature Request
werner removed a project from T1531: Progress handler callback isn't called often enough during /dev/random reading: Bug Report.
Dec 10 2013, 3:06 PM · backport, Feature Request, libgcrypt
werner lowered the priority of T1531: Progress handler callback isn't called often enough during /dev/random reading from Normal to Wishlist.
Dec 10 2013, 3:06 PM · backport, Feature Request, libgcrypt
werner added a project to T1531: Progress handler callback isn't called often enough during /dev/random reading: Feature Request.
Dec 10 2013, 3:06 PM · backport, Feature Request, libgcrypt
werner added a comment to T1577: gnupg chooses an outdated key.

Retire you old key. There is a "disable" command in "gpg --edit-key".

Dec 10 2013, 3:04 PM · Feature Request, gnupg

Dec 9 2013

toralf added a comment to T1577: gnupg chooses an outdated key.

yep - rather an enhancement request then a bug.

OTOH even before the Snowden-era it would be always better to implemented a
strategy to choose the "best" key (in my case the older has 1024 bit - the newer
has 4096).

Dec 9 2013, 8:01 PM · Feature Request, gnupg
werner lowered the priority of T1577: gnupg chooses an outdated key from Normal to Wishlist.
Dec 9 2013, 7:45 PM · Feature Request, gnupg
werner added a project to T1577: gnupg chooses an outdated key: Feature Request.
Dec 9 2013, 7:45 PM · Feature Request, gnupg
werner added a project to T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file: Feature Request.
Dec 9 2013, 7:40 PM · Feature Request, gnupg
werner lowered the priority of T1389: [PATCH] Feature request: enable --show-session-key on a truncated encrypted file from Normal to Wishlist.
Dec 9 2013, 7:40 PM · Feature Request, gnupg

Dec 6 2013

HansChristophSteiner added a project to T1576: pthread_atfork() does not work in Android: Bug Report.
Dec 6 2013, 2:21 AM · Bug Report, npth
HansChristophSteiner added a comment to T1576: pthread_atfork() does not work in Android.

Bad news, though that .c/.cpp file exists, it does not seem to get built into
Android. I have tried building against android-14, which is after that file was
introduces, and no luck. I also tried looking for it in the libs, and its not
in the .so or .a libs. Running this gives me nothing:

$ strings /opt/android-ndk/platforms/android-*/arch-arm/usr/lib/* | grep atfork

Dec 6 2013, 2:21 AM · Bug Report, npth

Dec 5 2013

HansChristophSteiner removed a project from T1576: pthread_atfork() does not work in Android: Bug Report.
Dec 5 2013, 6:03 PM · Bug Report, npth
HansChristophSteiner added projects to T1576: pthread_atfork() does not work in Android: Feature Request, Stalled.
Dec 5 2013, 6:03 PM · Bug Report, npth

Nov 29 2013

werner closed T1573: Optional support for larger RSA key sizes as Resolved.
Nov 29 2013, 6:47 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
werner added a project to T1573: Optional support for larger RSA key sizes: Won't Fix.
Nov 29 2013, 6:47 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
werner added a comment to T1573: Optional support for larger RSA key sizes.

This has been discussed ad nauseam. Thus this will not be included.

Nov 29 2013, 6:47 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added a comment to T1573: Optional support for larger RSA key sizes.

Nov 29 2013, 4:37 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added a comment to T1573: Optional support for larger RSA key sizes.

D182: 410_0001-gpg-Compile-time-flag-for-RSA-key-sizes-4096.patch

Nov 29 2013, 4:37 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added a comment to T1573: Optional support for larger RSA key sizes.

Uploaded a new patch file - I missed a semicolon.

Nov 29 2013, 4:37 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix

Nov 28 2013

ido added a project to T1573: Optional support for larger RSA key sizes: gnupg (gpg21).
Nov 28 2013, 11:42 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added a comment to T1573: Optional support for larger RSA key sizes.

Nov 28 2013, 11:42 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added projects to T1573: Optional support for larger RSA key sizes: Feature Request, gnupg.
Nov 28 2013, 11:41 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix
ido added a comment to T1573: Optional support for larger RSA key sizes.

D183: 407_0001-gpg-Compile-time-flag-for-RSA-key-sizes-4096.patch

Nov 28 2013, 11:41 PM · gnupg, gnupg (gpg21), Feature Request, Won't Fix

Oct 26 2013

werner added a project to T1562: libassuan-config unsuitable for multilib support: Feature Request.
Oct 26 2013, 11:17 AM · Feature Request, libassuan

Oct 23 2013

werner closed T1554: Should not need to use regedit to activate logging as Resolved.
Oct 23 2013, 1:13 PM · Won't Fix, gpgol, Feature Request
werner added a project to T1554: Should not need to use regedit to activate logging: Won't Fix.
Oct 23 2013, 1:13 PM · Won't Fix, gpgol, Feature Request
werner added a comment to T1554: Should not need to use regedit to activate logging.

Nope; won't be done. We had this in the past and people enabled it and later
complained about disk full stati. And yes, it exposes confidential info.

Oct 23 2013, 1:13 PM · Won't Fix, gpgol, Feature Request

Oct 15 2013

werner added a project to T1548: [PATCH] Allow cert-only keys on smartcards: Feature Request.
Oct 15 2013, 4:14 PM · Feature Request, gnupg
werner removed a project from T1548: [PATCH] Allow cert-only keys on smartcards: Bug Report.
Oct 15 2013, 4:14 PM · Feature Request, gnupg

Oct 11 2013

asdil12 assigned T1548: [PATCH] Allow cert-only keys on smartcards to werner.
Oct 11 2013, 9:22 PM · Feature Request, gnupg
asdil12 updated subscribers of T1548: [PATCH] Allow cert-only keys on smartcards.
Oct 11 2013, 9:22 PM · Feature Request, gnupg
asdil12 added a comment to T1548: [PATCH] Allow cert-only keys on smartcards.

Tested and works fine with current gnupg and gpgcard.

Oct 11 2013, 9:22 PM · Feature Request, gnupg
asdil12 added a comment to T1548: [PATCH] Allow cert-only keys on smartcards.

D180: 398_0001-enable-key-to-card-upload-for-cert-only-keys.patch

Oct 11 2013, 9:18 PM · Feature Request, gnupg
asdil12 added a project to T1548: [PATCH] Allow cert-only keys on smartcards: patch.
Oct 11 2013, 9:18 PM · Feature Request, gnupg
jon added projects to T1554: Should not need to use regedit to activate logging: Feature Request, gpgol.
Oct 11 2013, 5:50 PM · Won't Fix, gpgol, Feature Request
jon set Version to 1.2.0 on T1554: Should not need to use regedit to activate logging.
Oct 11 2013, 5:50 PM · Won't Fix, gpgol, Feature Request

Oct 5 2013

asdil12 added a comment to T1548: [PATCH] Allow cert-only keys on smartcards.

D181: 389_cert_card.patch

Oct 5 2013, 9:44 PM · Feature Request, gnupg
asdil12 added projects to T1548: [PATCH] Allow cert-only keys on smartcards: Feature Request, gnupg.
Oct 5 2013, 9:44 PM · Feature Request, gnupg

Sep 18 2013

werner closed T1522: Broken links to HOWTOs as Resolved.
Sep 18 2013, 1:19 PM · gpgweb, Feature Request
werner reopened T1522: Broken links to HOWTOs as "Open".
Sep 18 2013, 1:19 PM · gpgweb, Feature Request
werner added a comment to T1522: Broken links to HOWTOs.

Ah well, the Spansih versions have been dropped. The Howtos are anyway somewhat
outdated.

Sep 18 2013, 1:19 PM · gpgweb, Feature Request
werner added a comment to T1522: Broken links to HOWTOs.

I took copies of the MiniHowto from archive.org and put them direct under GnuPG.org.

Sep 18 2013, 1:18 PM · gpgweb, Feature Request
werner closed T1522: Broken links to HOWTOs as Resolved.
Sep 18 2013, 1:18 PM · gpgweb, Feature Request

Sep 6 2013

werner added a comment to T1532: Don't send key ids in plaintext.

This is not a worth a bug report. If you want to discuss this topic, please use
the gnupg-users mailing list. We can't answer indivdual questions by means of a
bug tracker.

Sep 6 2013, 11:09 AM · Feature Request, Not A Bug
werner removed a project from T1532: Don't send key ids in plaintext: Bug Report.
Sep 6 2013, 11:09 AM · Feature Request, Not A Bug
werner lowered the priority of T1532: Don't send key ids in plaintext from High to Wishlist.
Sep 6 2013, 11:09 AM · Feature Request, Not A Bug
werner added projects to T1532: Don't send key ids in plaintext: Not A Bug, Feature Request.
Sep 6 2013, 11:09 AM · Feature Request, Not A Bug

Aug 2 2013

scolphoy added projects to T1522: Broken links to HOWTOs: Feature Request, gpgweb.
Aug 2 2013, 2:03 PM · gpgweb, Feature Request

Jul 19 2013

xprt64 added projects to T1518: New website mirror: Feature Request, gnupg.
Jul 19 2013, 8:46 PM · Too Old, gpgweb, Feature Request

Jul 16 2013

werner added a comment to T1509: gnupg2 (gpg-agent): Disable producing of core dumps for gpg-agent via prctl(PR_SET_DUMPABLE, 0) as ssh-agent does.

What is the threat model for this? If you are able to ptrace a process you can
do all other kind of stuff, like replacing gpg with your own code. If the box
has been taken over, we are in game-over state.

Disabling core dumps is a different issue because a core dump leaves traces of
the process on the disk.

Jul 16 2013, 1:17 PM · gnupg, Debian, gnupg (gpg20), Feature Request, gpgagent
gniibe added a project to T1337: No mention of --default-cert-check-level in man: gpgweb.
Jul 16 2013, 9:34 AM · gpgweb, Feature Request, Documentation
gniibe removed a project from T1337: No mention of --default-cert-check-level in man: gnupg.
Jul 16 2013, 9:34 AM · gpgweb, Feature Request, Documentation
gniibe added a comment to T1337: No mention of --default-cert-check-level in man.

The option --default-cert-level is described in the manual.
Thus, this bug report is about web.
Changing "category" from gnupg to gpgweb.

Jul 16 2013, 9:34 AM · gpgweb, Feature Request, Documentation

Jul 12 2013

gniibe added a comment to T1509: gnupg2 (gpg-agent): Disable producing of core dumps for gpg-agent via prctl(PR_SET_DUMPABLE, 0) as ssh-agent does.

I think that original reporter's intention is to prevent attaching by ptrace.
By PR_SET_DUMPABLE disabled, ptrace PTRACE_ATTACH won't work any more.
This would be better if we care about kernel compatibility.
In http://bugs.debian.org/714107, I found that setrlimit64 doesn't work reliably
for 2.6.34 or older. PR_SET_DUMPABLE seems to work for even 2.4.x.

Jul 12 2013, 2:15 PM · gnupg, Debian, gnupg (gpg20), Feature Request, gpgagent

Jul 10 2013

werner added a project to T1102: Sending enc/signed mails does not work with Exchange: Info Needed.
Jul 10 2013, 3:16 PM · Info Needed, Feature Request, gpg4win, gpgol
werner closed T1102: Sending enc/signed mails does not work with Exchange as Resolved.
Jul 10 2013, 3:16 PM · Info Needed, Feature Request, gpg4win, gpgol

Jul 1 2013

werner closed T1401: ecdsa ssh keys and gpg-agent's ssh-agent emulation as Resolved.
Jul 1 2013, 9:03 PM · ssh, gpgagent, Feature Request, gnupg, gnupg (gpg20)
werner added a comment to T1401: ecdsa ssh keys and gpg-agent's ssh-agent emulation.

I just backported the new ssh-agent code from master to the 2.0 branch. Thus
2.0.21 will have this support.

Jul 1 2013, 9:03 PM · ssh, gpgagent, Feature Request, gnupg, gnupg (gpg20)

Jun 20 2013

iankko added a comment to T1509: gnupg2 (gpg-agent): Disable producing of core dumps for gpg-agent via prctl(PR_SET_DUMPABLE, 0) as ssh-agent does.

Hello Werner,

Jun 20 2013, 1:03 PM · gnupg, Debian, gnupg (gpg20), Feature Request, gpgagent

Jun 19 2013

werner added a comment to T1509: gnupg2 (gpg-agent): Disable producing of core dumps for gpg-agent via prctl(PR_SET_DUMPABLE, 0) as ssh-agent does.

GnuPG uses setrlimit do disable core dumps. It has always done so. See
common/sysutils.c:disable_core_dumps. Do you have a test case which shows that
it does not work?

Jun 19 2013, 11:11 PM · gnupg, Debian, gnupg (gpg20), Feature Request, gpgagent
iankko added projects to T1509: gnupg2 (gpg-agent): Disable producing of core dumps for gpg-agent via prctl(PR_SET_DUMPABLE, 0) as ssh-agent does: gpgagent, Feature Request, gnupg (gpg20), Debian, gnupg.
Jun 19 2013, 3:00 PM · gnupg, Debian, gnupg (gpg20), Feature Request, gpgagent

Jun 18 2013

werner added a comment to T1506: New key generation usability enhancements.

Please recall that gpg is a Unix command line tool and as such it need to stcik
to common conventions. Only messages which are deemed to be necessary are
printed. Chnages to the key generation dialog would be veryhard because gpg is
used by several other programs as a backend and they assume a certain order of
prompts.

I suggest that you use one of the graphical frontends for key generation.

Jun 18 2013, 10:46 AM · In Progress, gnupg, Feature Request

Jun 12 2013

micah added projects to T1506: New key generation usability enhancements: Feature Request, gnupg.
Jun 12 2013, 6:49 PM · In Progress, gnupg, Feature Request

May 22 2013

werner closed T1499: Provide a strict verify option for a signature as Resolved.
May 22 2013, 1:34 PM · Won't Fix, gnupg, Feature Request

May 21 2013

Kyoshiro added a comment to T1499: Provide a strict verify option for a signature.

Thanks for your answer, I'll do that then.

Best regards

Loïc Gomez

May 21 2013, 3:18 PM · Won't Fix, gnupg, Feature Request

May 17 2013

werner added a project to T1499: Provide a strict verify option for a signature: Won't Fix.
May 17 2013, 10:20 AM · Won't Fix, gnupg, Feature Request
werner added a comment to T1499: Provide a strict verify option for a signature.

If you want to rely on the exit coide, you can't use gpg. There are simply too
many things to consider and everyone has a different policy. I commonly use AWK
scripts to implement such policies by parsing the --status-fd output.

The tool you might want to use is gpgv which has been designed for these
purposes. In fact, it is used by all Linux distros to verify the integrity of
the downloaded packages against a specific keyring. Please check out the gpgv
man page.

May 17 2013, 10:20 AM · Won't Fix, gnupg, Feature Request

May 15 2013

Kyoshiro added projects to T1499: Provide a strict verify option for a signature: Feature Request, gnupg.
May 15 2013, 3:05 PM · Won't Fix, gnupg, Feature Request

May 2 2013

werner added projects to T1492: 2.1.0-beta does not yet support --delete-secret-keys: Feature Request, gnupg (gpg21), gnupg.
May 2 2013, 8:52 PM · gnupg, gnupg (gpg21), Feature Request

May 1 2013

werner added a comment to T1464: key signing in GPGME.

We need to see whether we can re-use the code from GPA for this purpose.

May 1 2013, 2:01 PM · gpgme, Feature Request
werner closed T1489: GPA "Verify documents" window doesn't scroll as Resolved.
May 1 2013, 11:25 AM · Feature Request, gpa
werner added a comment to T1489: GPA "Verify documents" window doesn't scroll.

Fixed in 0.9.4, coming soon.

May 1 2013, 11:25 AM · Feature Request, gpa

Apr 22 2013

werner added a project to T1060: extract signature from encrypted and signed file/message: gnupg (gpg21).
Apr 22 2013, 10:00 AM · gnupg (gpg21), gnupg, Debian, Feature Request
werner added a comment to T1060: extract signature from encrypted and signed file/message.

Pending for a long time; should be considered for 2.1

Apr 22 2013, 10:00 AM · gnupg (gpg21), gnupg, Debian, Feature Request
werner changed Due Date from Feb 1 2010, 1:00 AM to Oct 31 2013, 1:00 AM on T1060: extract signature from encrypted and signed file/message.
Apr 22 2013, 10:00 AM · gnupg (gpg21), gnupg, Debian, Feature Request
werner closed T1062: Please add --disable-digest-algo option as Resolved.
Apr 22 2013, 9:58 AM · Won't Fix, gnupg, Feature Request
werner removed a project from T1062: Please add --disable-digest-algo option: Stalled.
Apr 22 2013, 9:58 AM · Won't Fix, gnupg, Feature Request
werner added a project to T1062: Please add --disable-digest-algo option: Won't Fix.
Apr 22 2013, 9:58 AM · Won't Fix, gnupg, Feature Request
werner removed Due Date on T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface).
Apr 22 2013, 9:56 AM · gnupg (gpg23), gnupg, Debian, Feature Request
werner added a project to T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface): gnupg (gpg21).
Apr 22 2013, 9:56 AM · gnupg (gpg23), gnupg, Debian, Feature Request
werner changed Due Date from Jan 30 2009, 1:00 AM to Sep 30 2013, 2:00 AM on T806: default-key could take a list of keys to try.
Apr 22 2013, 9:55 AM · gnupg, Feature Request
werner added a project to T1038: Specify and use multiple keyservers: gnupg (gpg21).
Apr 22 2013, 9:54 AM · gnupg (gpg21), gnupg, Debian, Feature Request
werner added projects to T1055: Special characters encoding issue with LDAP keyserver.: Feature Request, gnupg (gpg21).
Apr 22 2013, 9:43 AM · gnupg (gpg22), Feature Request
werner removed a project from T1400: Improve "make check" messages: In Progress.
Apr 22 2013, 9:35 AM · gnupg, backport, Feature Request
werner closed T1400: Improve "make check" messages as Resolved.
Apr 22 2013, 9:35 AM · gnupg, backport, Feature Request
werner added a comment to T1400: Improve "make check" messages.

Done for 2.0

Apr 22 2013, 9:35 AM · gnupg, backport, Feature Request