Page MenuHome GnuPG
Feed Advanced Search

Jan 20 2016

aheinecke added a comment to T2212: Wish for a gpgkey2ssh replacement.

Thanks, now this works as expected for me :-)

Jan 20 2016, 4:10 PM · ssh, gnupg, gnupg (gpg21), Feature Request
gduzan added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

Please see T1778 (gduzan on Jan 20 2016, 03:41 PM / Roundup) on T1778 for a workaround.

Jan 20 2016, 3:45 PM · Restricted Project, gnupg, Bug Report
gduzan reopened T1778: t-exechelp-posix get_max_fds returns MAX_INT32 rather than something sensible as "Open".
Jan 20 2016, 3:41 PM · gnupg, Bug Report
gduzan added a comment to T1778: t-exechelp-posix get_max_fds returns MAX_INT32 rather than something sensible.

AIX defaults to "unlimited" descriptors. However, the value may be overridden by
setting the hard limit. In tcsh, for example, one can work around the issue with:
limit descriptors 4096
limit -h descriptors 4096

Jan 20 2016, 3:41 PM · gnupg, Bug Report
werner closed T2222: no possibility to configure gpg-agent to set a pinentry timeout as Resolved.
Jan 20 2016, 11:29 AM · gnupg, Feature Request
werner added a comment to T2222: no possibility to configure gpg-agent to set a pinentry timeout.

[11:26:04] <gitbot> [git] GnuPG - branch master updated by Werner Koch:
4997433 agent: New option --pinentry-timeout

Jan 20 2016, 11:29 AM · gnupg, Feature Request
werner added a comment to T2222: no possibility to configure gpg-agent to set a pinentry timeout.

Good idea.

Jan 20 2016, 11:00 AM · gnupg, Feature Request
werner added a comment to T2220: gpg2 man pages for s2k-* options are invalid.

Fixed. Thanks.

The --s2k- options are expert options and should in general not be chnaged at
all. We can't make a list of all such minor chnages related to moving secret
keys to gpg-agent. People who care about this will know anyway.

Jan 20 2016, 10:56 AM · Bug Report, gnupg
werner closed T2220: gpg2 man pages for s2k-* options are invalid as Resolved.
Jan 20 2016, 10:56 AM · Bug Report, gnupg
tim added projects to T2222: no possibility to configure gpg-agent to set a pinentry timeout: Feature Request, gnupg.
Jan 20 2016, 10:45 AM · gnupg, Feature Request

Jan 18 2016

grempe added a comment to T2220: gpg2 man pages for s2k-* options are invalid.

Werner, there is a typo in your new commit 56275e4392a7b38abe5fdd84fe9d67599cf5e6d1

'defaulte' should be 'default'

+Use @code{name} as the digest algorithm used to mangle the passphrases
+for symmetric encryption. The defaulte is SHA-1.

Also, might it be beneficial to add this change of behavior to either the man page or
to the 'What's changed in 2.1' docs?

Thanks

Jan 18 2016, 8:04 PM · Bug Report, gnupg
dexolabs added a comment to T1848: gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys.

I have tested 2.1.10, same behaviour asking for a password for the subkey.
------Original Message------
From: Werner Koch via BTS
To: Mr Pratish Surendra Neerputh
To: wk@gnupg.org
ReplyTo: GnuPG's BTS
ReplyTo: GnuPG's BTS
Subject: [issue1848] gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys
Sent: Jan 18, 2016 09:46

Jan 18 2016, 9:24 AM · Bug Report, gnupg
dexolabs added a comment to T1848: gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys.

I have tried version 2.1.9 as I couldn't get the latest version. It still prompts for a password when adding a subkey, I have also seen this behaviour with a windows binary. It does not seem to affect signing or encryption as signing still just requires the passphrase for the master key.
------Original Message------
From: Werner Koch via BTS
To: Mr Pratish Surendra Neerputh
To: wk@gnupg.org
ReplyTo: GnuPG's BTS
ReplyTo: GnuPG's BTS
Subject: [issue1848] gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys
Sent: Jan 18, 2016 09:46

Jan 18 2016, 9:15 AM · Bug Report, gnupg
werner added a comment to T1848: gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys.

It is a bug and not a feature.

Jan 18 2016, 8:46 AM · Bug Report, gnupg
werner added a comment to T2220: gpg2 man pages for s2k-* options are invalid.

Thanks for reporting. I'll change this for 2.1.11.

Jan 18 2016, 8:36 AM · Bug Report, gnupg
grempe set Version to 2.1.10 on T2220: gpg2 man pages for s2k-* options are invalid.
Jan 18 2016, 2:18 AM · Bug Report, gnupg
grempe added projects to T2220: gpg2 man pages for s2k-* options are invalid: gnupg, Bug Report.
Jan 18 2016, 2:18 AM · Bug Report, gnupg

Jan 17 2016

andrey.utkin set Version to 2.1.10 on T2219: Key creation locks the keyring.
Jan 17 2016, 9:17 PM · Bug Report, gnupg
andrey.utkin added projects to T2219: Key creation locks the keyring: gnupg, Bug Report.
Jan 17 2016, 9:17 PM · Bug Report, gnupg

Jan 15 2016

dexolabs added a comment to T1848: gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys.

My original problem was that when generating one signing key with gnupg stable aka 2.0.29 and adding a seperate encryption subkey it only asked for my passphase to unlock the master secret key.

Jan 15 2016, 6:25 PM · Bug Report, gnupg
werner added a comment to T1382: Cannot build gnupg-2.0.18 on AIX 6.1.

Feel free to -re-opne if you experience the same problem with a current gnupg
version.

Jan 15 2016, 4:52 PM · Too Old, Bug Report, gnupg
werner closed T1382: Cannot build gnupg-2.0.18 on AIX 6.1 as Resolved.
Jan 15 2016, 4:52 PM · Too Old, Bug Report, gnupg
werner added a project to T1382: Cannot build gnupg-2.0.18 on AIX 6.1: Too Old.
Jan 15 2016, 4:52 PM · Too Old, Bug Report, gnupg
werner added a comment to T1799: GnuPG does not provide Host: header for proxy requests.

Ping.
Please tell us the OS version and the GnuPG version.

Jan 15 2016, 4:50 PM · Bug Report, gnupg
werner closed T1847: Cannot read old keyring (issue 1793 related) as Resolved.
Jan 15 2016, 4:48 PM · Bug Report, gnupg
werner removed a project from T1847: Cannot read old keyring (issue 1793 related): In Progress.
Jan 15 2016, 4:48 PM · Bug Report, gnupg
werner added a comment to T1847: Cannot read old keyring (issue 1793 related).

Several such bugs have been fixed since 2.1.2. Thus I assume this has been
resolved.

Jan 15 2016, 4:48 PM · Bug Report, gnupg
werner added a comment to T1848: gpg 2.1.2 with pinentry-curses prompts for passphrase when adding subkeys.

Some time passed. Did you tried with a newer version (2.1.10 is current)?

Jan 15 2016, 4:47 PM · Bug Report, gnupg
werner closed T1954: Password too long as Resolved.
Jan 15 2016, 4:46 PM · Info Needed, gnupg (gpg20), Bug Report, gnupg
werner lowered the priority of T1998: Can't use extended characters in passphrase from Normal to Low.
Jan 15 2016, 4:44 PM · pinentry, Not A Bug, Bug Report, gnupg
werner lowered the priority of T2014: pinentry offers to save symmetric passwords in libsecret from Normal to Wishlist.
Jan 15 2016, 4:41 PM · Feature Request, gnupg
werner added a project to T2014: pinentry offers to save symmetric passwords in libsecret: Feature Request.
Jan 15 2016, 4:41 PM · Feature Request, gnupg
werner removed a project from T2014: pinentry offers to save symmetric passwords in libsecret: Bug Report.
Jan 15 2016, 4:41 PM · Feature Request, gnupg
werner added a comment to T2014: pinentry offers to save symmetric passwords in libsecret.

I changed this to a wish because it it questionable whether this is a bug or a
feature of libsecret.

Jan 15 2016, 4:41 PM · Feature Request, gnupg
werner added a project to T2015: GET_PASSPHRASE with --no-ask always return error in gnupg 2.1.5: gpgagent.
Jan 15 2016, 4:40 PM · gpgagent, Bug Report, gnupg
werner closed T2029: gpgsm --gen-key prompts for usage flags, then discards them when generating a CSR as Resolved.
Jan 15 2016, 4:38 PM · Bug Report, gnupg
werner removed a project from T2029: gpgsm --gen-key prompts for usage flags, then discards them when generating a CSR: Restricted Project.
Jan 15 2016, 4:38 PM · Bug Report, gnupg
werner added a project to T2033: gpgsm can't decrypt smime encrypted mails from 1 contact: Info Needed.
Jan 15 2016, 4:32 PM · Info Needed, Bug Report, gnupg
werner added a comment to T2033: gpgsm can't decrypt smime encrypted mails from 1 contact.

To replicate this bug we need more information: What is yopur OS, which version
of libgcrypt and libksba are you using? "gpgsm --version" tells you these
version numbers.

If you send us the smime.p7m we might be able to find the problem without the
need for the key. Sending that file encrypted to wk@gnupg.org, keyid 1442b367
would be okay.

Jan 15 2016, 4:32 PM · Info Needed, Bug Report, gnupg
werner closed T2055: AIX 7.1 Key Generation Failed with Segmentaiton fault signal 11 as Resolved.
Jan 15 2016, 4:26 PM · Bug Report, Duplicate, gnupg
werner added a comment to T2055: AIX 7.1 Key Generation Failed with Segmentaiton fault signal 11.

Let's assume this is the case and the bug has been resolved.

Jan 15 2016, 4:26 PM · Bug Report, Duplicate, gnupg
werner added a project to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent: Restricted Project.
Jan 15 2016, 4:24 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

D321: 754_0001-Fix-possible-_SC_OPEN_MAX-max-problem-on-AIX.patch

Jan 15 2016, 4:23 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

Given that you are using gpgme, the problem might already be there. if my
assumption is right the "...SC_OPEN_MAX-max-prob..." patch should fix this for
gpgme.

Jan 15 2016, 4:23 PM · Restricted Project, gnupg, Bug Report
werner removed a project from T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent: In Progress.
Jan 15 2016, 4:23 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

D322: 753_0001-Fix-possible-AIX-problem-with-sysconf-in-rndunix.patch

Jan 15 2016, 4:11 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

Just in case you are not using /dev/random, the "Fix-posssible..." patch may
help for 1.4.

Jan 15 2016, 4:11 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

D323: 752_0001-common-Cope-with-AIX-problem-on-number-of-open-files.patch

Jan 15 2016, 3:41 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

Indeed the sysconf patch had not been backported to gnupg 2.0. Please
try the attached patch for 2.0.x (sorry for the trailing white space changes).

Jan 15 2016, 3:41 PM · Restricted Project, gnupg, Bug Report
werner removed a project from T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent: Info Needed.
Jan 15 2016, 3:29 PM · Restricted Project, gnupg, Bug Report
werner added a project to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent: In Progress.
Jan 15 2016, 3:29 PM · Restricted Project, gnupg, Bug Report
werner added a comment to T2071: Processes invoking gpgme_op_decrypt() should not incur a delay due to the invocation of gpg-agent.

(newer?) AIX versions have the bug that sysconf returns INT_MAX32 for the number
of max. open file descriptors. That leads to a long delay due to closing all
possible open file descriptors. See T1778.

That bug has been fixed in GnuPG 2.1 but not in libassuan. I have fixed it with
commit 7101fcb for libassuan which wilk go into libassaun 2.4.3. This might
also help with GnuPG 2.0.26 but I need to check that.

Jan 15 2016, 3:29 PM · Restricted Project, gnupg, Bug Report
werner closed T2097: gpg doesn't output anything to Mintty when using Cygwin as Resolved.
Jan 15 2016, 2:53 PM · Not A Bug, Bug Report, gnupg
werner added a project to T2097: gpg doesn't output anything to Mintty when using Cygwin: Not A Bug.
Jan 15 2016, 2:52 PM · Not A Bug, Bug Report, gnupg
werner added a comment to T2097: gpg doesn't output anything to Mintty when using Cygwin.

I suggest to report this to the mintty developers.

Jan 15 2016, 2:52 PM · Not A Bug, Bug Report, gnupg
werner closed T2079: gpg2 --card-status won't create proper stubs for (sub)keys which are known but non-usable as Resolved.
Jan 15 2016, 1:29 PM · Bug Report, gnupg, scd
werner removed a project from T2079: gpg2 --card-status won't create proper stubs for (sub)keys which are known but non-usable: Restricted Project.
Jan 15 2016, 1:29 PM · Bug Report, gnupg, scd
werner closed T2109: Gpg2.1 http-proxy configuration from 2.0 leads to configuration error as Resolved.
Jan 15 2016, 1:28 PM · Keyserver, Bug Report, gnupg, gnupg (gpg21), gpg4win
werner removed a project from T2109: Gpg2.1 http-proxy configuration from 2.0 leads to configuration error: Restricted Project.
Jan 15 2016, 1:28 PM · Keyserver, Bug Report, gnupg, gnupg (gpg21), gpg4win
werner closed T2112: Crash on ssh-add as Resolved.
Jan 15 2016, 1:27 PM · Bug Report, gnupg
werner removed a project from T2112: Crash on ssh-add: Restricted Project.
Jan 15 2016, 1:27 PM · Bug Report, gnupg
werner added a comment to T2112: Crash on ssh-add.

The problem itself has been fixed. Please open another bug for the UX problem.

Jan 15 2016, 1:27 PM · Bug Report, gnupg
werner added a project to T2126: gpgsm-2.0.x does not work with option --homedir, needs GNUPGHOME: Won't Fix.
Jan 15 2016, 1:22 PM · Won't Fix, gnupg (gpg20), Bug Report, gnupg
werner closed T2126: gpgsm-2.0.x does not work with option --homedir, needs GNUPGHOME as Resolved.
Jan 15 2016, 1:22 PM · Won't Fix, gnupg (gpg20), Bug Report, gnupg
werner added a comment to T2126: gpgsm-2.0.x does not work with option --homedir, needs GNUPGHOME.

We wont fix that because it has been fixed in 2.1 and backporting make no sense
given that an easy workaround is available.

Jan 15 2016, 1:22 PM · Won't Fix, gnupg (gpg20), Bug Report, gnupg
werner added a project to T2143: Interactive passwd command doesn't work if passphrase-file is set: Info Needed.
Jan 15 2016, 1:21 PM · Info Needed, gnupg, Bug Report
werner added a comment to T2143: Interactive passwd command doesn't work if passphrase-file is set.

Please given an example.

Jan 15 2016, 1:21 PM · Info Needed, gnupg, Bug Report
werner lowered the priority of T2134: iconv.dll is still a problem from Normal to Wishlist.
Jan 15 2016, 1:20 PM · Feature Request, gnupg
werner added a project to T2134: iconv.dll is still a problem: Feature Request.
Jan 15 2016, 1:20 PM · Feature Request, gnupg
werner removed a project from T2134: iconv.dll is still a problem: Bug Report.
Jan 15 2016, 1:20 PM · Feature Request, gnupg
werner added a comment to T2134: iconv.dll is still a problem.

I don't count win-iconv a small helper.
We can solve this problem more easily by moving the ut8conv.c code to
libgpg-error which alread has some of the conversion code.

I change the category to whis because this is not a bug but a build requirement.

Jan 15 2016, 1:20 PM · Feature Request, gnupg
werner set Due Date to Jan 20 2016, 1:00 AM on T2147: auto-key-retrieve does not work if keyserver is set in dirmngr.conf instead of gpg.conf.
Jan 15 2016, 12:55 PM · gnupg, Bug Report
werner added a comment to T2153: agent_pksign_do ignores do_encode_raw_pkcs1 do_encode_md return values.

I am not sure about which code part you are talking. Please can one of you
explain. If this is what I assume, please have a look at commit 25f0f05.

Jan 15 2016, 12:54 PM · Bug Report, gnupg
werner closed T2155: check_cert_policy does not check strpbrk ret val for NULL as Resolved.
Jan 15 2016, 12:45 PM · Not A Bug, Bug Report, gnupg
werner added a project to T2193: keyring / keybox race: Restricted Project.
Jan 15 2016, 12:44 PM · Bug Report, gnupg
werner closed T2156: remove some dead assignments, add some NULL pointer checks as Resolved.
Jan 15 2016, 12:44 PM · Info Needed, Bug Report, gnupg
werner added a project to T2156: remove some dead assignments, add some NULL pointer checks: Info Needed.
Jan 15 2016, 12:44 PM · Info Needed, Bug Report, gnupg
werner added a comment to T2195: keyring: cache consistency problem.

FWIW, we do not copy to create the backup but use atomic renames:

  lock(pubring.gpg.lock)
  read(pubring.gpg) -> process -> write(pubring.tmp)
  rename(pubring.gpg, pubring.gpg~)
  rename(pubring.tmp, pubring.gpg)
  unlock(pubring.gpg.lock)

Thus the worst case is that another non-updating process sees no pubring.gpg
during the time between the two renames.

Jan 15 2016, 10:18 AM · Bug Report, gnupg
werner lowered the priority of T2195: keyring: cache consistency problem from Normal to Low.
Jan 15 2016, 10:10 AM · Bug Report, gnupg
werner added a comment to T2195: keyring: cache consistency problem.

Note that under Windows we don't have inodes :-(
See also T2135 .
As I remarked several times in the past the only solid way to handle these
problem is to allow access to the keyrings only via a dedicated processs.

Jan 15 2016, 10:10 AM · Bug Report, gnupg
werner lowered the priority of T2196: keydb locking can result in deadlock from Normal to Low.
Jan 15 2016, 10:05 AM · Bug Report, gnupg
werner added a comment to T2196: keydb locking can result in deadlock.

We have never seen a real-world bug here. Thus I change this to a minor-bug.
You solution is not that easy becuase we need to maintain that order for all
time and we can't cope with older gpg versions which are still in use on the
same ~/.gnupg - they would have a different lock order and that would indeed
lead to a deadlock. As of now this is mitigated by all gpg versions using the
same config file and thus the same order of keyrings.

Jan 15 2016, 10:05 AM · Bug Report, gnupg
werner closed T2200: redefinition of typedef ‘ctrl_t’ as Resolved.
Jan 15 2016, 10:00 AM · gnupg, Bug Report
werner added a comment to T2200: redefinition of typedef ‘ctrl_t’.

Fix will be in 2.1.11. Thanks for testing.

Jan 15 2016, 10:00 AM · gnupg, Bug Report
werner closed T2205: GnuPG does not detect damaged keys on import as Resolved.
Jan 15 2016, 9:57 AM · Not A Bug, Debian, Bug Report, gnupg
werner lowered the priority of T1624: Gpgtar fails when files have non ASCII characters from High to Normal.
Jan 15 2016, 9:57 AM · gnupg, Windows 32, Windows, Bug Report
werner added a project to T2135: Keyring locking on Windows broken: In Progress.
Jan 15 2016, 9:54 AM · Bug Report, gpg4win, Windows, gnupg, Windows 32
werner added a project to T2135: Keyring locking on Windows broken: backport.
Jan 15 2016, 9:54 AM · Bug Report, gpg4win, Windows, gnupg, Windows 32
werner added a comment to T2135: Keyring locking on Windows broken.

I have pushed chnages to master to fix this problem. One drawback is that
during an import another process "gpg -k" may rarely see no keys at all. A full
fix would either require that we lock the keyrings during all read-only
operations, which would severely hit on the performance of all common
operations, or change the whole system to use a new key access daemon.

If this works the changes need to be backported to 2.0.

Jan 15 2016, 9:54 AM · Bug Report, gpg4win, Windows, gnupg, Windows 32

Jan 14 2016

werner closed T2214: Typo --gen-full-key in doc/whats-new-in-2.1.txt as Resolved.
Jan 14 2016, 11:07 AM · Bug Report, gnupg
werner added a comment to T2214: Typo --gen-full-key in doc/whats-new-in-2.1.txt.

Actually this is a copy of the web site version. I fixed both versions. Thanks.

Jan 14 2016, 11:07 AM · Bug Report, gnupg
werner added a comment to T2218: GPG2 hangs at enter passphrase step during --gen-key.

Please ask on the gnupg-users mailing list for help. This is a bug tracker and
not a help forum, sorry.

Jan 14 2016, 10:39 AM · Bug Report, gnupg, Support
werner added a project to T2218: GPG2 hangs at enter passphrase step during --gen-key: Support.
Jan 14 2016, 10:39 AM · Bug Report, gnupg, Support
werner removed a project from T2218: GPG2 hangs at enter passphrase step during --gen-key: Info Needed.
Jan 14 2016, 10:39 AM · Bug Report, gnupg, Support
werner closed T2218: GPG2 hangs at enter passphrase step during --gen-key as Resolved.
Jan 14 2016, 10:39 AM · Bug Report, gnupg, Support
werner closed T2215: Use of '--auto-key-locate pka' for DNS key install results in 'Not implemented' error as Resolved.
Jan 14 2016, 10:37 AM · Not A Bug, Bug Report, gnupg

Jan 13 2016

gniibe added a comment to T1828: card-edit/fetch assumes signing key is master key and fails if not.

It would be different issue, but we have similar problem for 'fetch' failure
with an error message like:

gpg: key B00DC692: rejected by import filter" followed by "gpg: Total number
processed: 1

Jan 13 2016, 1:21 AM · Bug Report, gnupg
gniibe added a comment to T1828: card-edit/fetch assumes signing key is master key and fails if not.

Finally, I confirmed the problem. Sorry for taking long time. My understanding
was bad. I'm going to fix this.

Jan 13 2016, 1:13 AM · Bug Report, gnupg

Jan 11 2016

grempe reopened T2215: Use of '--auto-key-locate pka' for DNS key install results in 'Not implemented' error as "Open".
Jan 11 2016, 6:44 PM · Not A Bug, Bug Report, gnupg
grempe added a comment to T2215: Use of '--auto-key-locate pka' for DNS key install results in 'Not implemented' error.

OK, thanks for the response Werner. Perhaps this bug then is to update the website
docs to reflect what I gather may be big changes to this feature as compared to earlier
gnupg releases.

It seems that everything that can be found here (the best source I have found for using
gnupg w/ DNS) is now outdated and will no longer work:
http://gushi.org/make-dns-cert/HOWTO.html

I wanted to learn more about the new changes but I was only able to find the following
references which I'll document here in case someone else comes across it.
Unfortunately, I won't be able to test out the new method as I don't run my own bind
server and like many of us rely on a DNS provider that doesn't allow me to create the
form of DNS record output by --print-pka-records.

I only found three references to the new '--print-pka-records':

2.1.3 Announce:
https://lists.gnupg.org/pipermail/gnupg-announce/2015q2/000365.html

"* gpg: New option --print-pka-records. Changed the PKA method to use

   CERT records and hashed names."

gnupg docs:
https://www.gnupg.org/documentation/manuals/gnupg/GPG-Input-and-Output.html

"--print-pka-records
Modify the output of the list commands to print PKA records suitable to put into DNS
zone files. An ORIGIN line is printed before each record to allow diverting the records
to the corresponding zone file."

And finally an announcement from you in gnupg-devel from last year where you state that
all of the old functionality for PKA has been removed and replaced with something
entirely new (which is just for key 'validation' and not for key installation?):
http://marc.info/?l=gnupg-devel&m=142488047809150&w=2

Jan 11 2016, 6:44 PM · Not A Bug, Bug Report, gnupg