Page MenuHome GnuPG
Feed Advanced Search

Sep 19 2016

codemonkee added projects to T2692: GpgOL, Sign by default enables encrypt by default: gpgol, Bug Report.
Sep 19 2016, 6:01 PM · Duplicate, Bug Report, gpgol
codemonkee set Version to 1.4.0 on T2692: GpgOL, Sign by default enables encrypt by default.
Sep 19 2016, 6:01 PM · Duplicate, Bug Report, gpgol
justus assigned T2690: crash when editing key with no signatures to werner.
Sep 19 2016, 2:00 PM · Bug Report, gnupg
justus closed T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux as Invalid.
Sep 19 2016, 2:00 PM · gnupg, Support
justus claimed T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.
Sep 19 2016, 2:00 PM · gnupg, Support
justus lowered the priority of T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux from Unbreak Now! to Normal.
Sep 19 2016, 2:00 PM · gnupg, Support
justus added a comment to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.

This is an issue of GNOME as packaged by Red Hat. Please file a bug in Red
Hat's bug tracker instead.

Sep 19 2016, 2:00 PM · gnupg, Support
JochenSaalfeld added a comment to T2448: dirmngr fails to load crl when imported manually.

I'm on T2448 (aheinecke on Sep 05 2016, 02:14 PM / Roundup).

Sep 19 2016, 11:28 AM · gnupg, Windows 32, Windows, Bug Report
bernhard added a comment to T2448: dirmngr fails to load crl when imported manually.

Jochen, is T2448 (aheinecke on Sep 05 2016, 02:14 PM / Roundup) something you could do?

Sep 19 2016, 10:26 AM · gnupg, Windows 32, Windows, Bug Report
bernhard changed Version from 2.1.11 to 2.1.15 on T2448: dirmngr fails to load crl when imported manually.
Sep 19 2016, 10:26 AM · gnupg, Windows 32, Windows, Bug Report
bernhard reassigned T2448: dirmngr fails to load crl when imported manually from werner to JochenSaalfeld.
Sep 19 2016, 10:26 AM · gnupg, Windows 32, Windows, Bug Report
SandeepReddy496 removed a project from T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux: In Progress.
Sep 19 2016, 8:53 AM · gnupg, Support
SandeepReddy496 added a project to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux: In Progress.
Sep 19 2016, 8:49 AM · gnupg, Support
SandeepReddy496 reopened T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux as "Open".
Sep 19 2016, 8:49 AM · gnupg, Support
SandeepReddy496 added a comment to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.

I don't have sufficient permission to upgrade gnome session, so if you have
any idea suggest me

Sep 19 2016, 8:49 AM · gnupg, Support
bernhard updated subscribers of T2687: 98 chars limits on archived filenames for windows (gpgtar).

@werner, if I understand the description at
https://www.gnu.org/software/tar/manual/html_section/tar_68.html
then ustar would also be able to read "posix" archives.

Sep 19 2016, 8:36 AM · gpgtar, Bug Report, gpg4win
werner added a project to T2690: crash when editing key with no signatures: Restricted Project.
Sep 19 2016, 8:32 AM · Bug Report, gnupg
werner set Version to 2.1 on T2690: crash when editing key with no signatures.
Sep 19 2016, 8:32 AM · Bug Report, gnupg
werner added a comment to T2690: crash when editing key with no signatures.

Thanks. I took your solution.

Sep 19 2016, 8:32 AM · Bug Report, gnupg
werner added a comment to T2687: 98 chars limits on archived filenames for windows (gpgtar).

ustar is the format introduced by PGP 6; also for Windows. This is the only
reason we use it. PGP users demanded that we support that "pgpzip". We can't
drop it.

Sep 19 2016, 8:19 AM · gpgtar, Bug Report, gpg4win
werner added a comment to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.

Use a recent gnome version and you are fine.

Sep 19 2016, 8:16 AM · gnupg, Support
werner added a project to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux: Support.
Sep 19 2016, 8:16 AM · gnupg, Support
werner closed T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux as Resolved.
Sep 19 2016, 8:16 AM · gnupg, Support
werner removed Due Date on T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.
Sep 19 2016, 8:16 AM · gnupg, Support
SandeepReddy496 set Due Date to Sep 21 2016, 2:00 AM on T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.
Sep 19 2016, 7:10 AM · gnupg, Support
SandeepReddy496 set Version to 2.0.30 on T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux.
Sep 19 2016, 7:10 AM · gnupg, Support
SandeepReddy496 added projects to T2691: how to resolve the issue gnome keyring manager hijacked the gnupg agent in redhat linux: gnupg, Bug Report.
Sep 19 2016, 7:10 AM · gnupg, Support
steven added projects to T2690: crash when editing key with no signatures: gnupg, Bug Report.
Sep 19 2016, 12:04 AM · Bug Report, gnupg

Sep 18 2016

steven set Version to 2.1.15 on T2689: trustdb error when lower 32-bits of ultimately trusted fingerprint are zero.
Sep 18 2016, 5:52 AM · Bug Report, gnupg
steven added projects to T2689: trustdb error when lower 32-bits of ultimately trusted fingerprint are zero: gnupg, Bug Report.
Sep 18 2016, 5:52 AM · Bug Report, gnupg

Sep 15 2016

justus added a comment to T2682: Keys cannot be refreshed via "gpg2 --refresh-keys".

Sorry, I cannot reproduce this problem using 2.1.11:

% export GNUPGHOME=$(mktemp -d)
% echo "keyserver hkps://hkps.pool.sks-keyservers.net
hkp-cacert
/home/teythoon/repos/g10/gnupg-2.1.11/dirmng/sks-keyservers.netCA.pem" >
$GNUPGHOME/dirmngr.conf
% g10/gpg2 --recv-keys 99B03CE455DB476E737057B44FD0FA5528DB9E3F
gpg: /tmp/tmp.QINMXRcRqH/trustdb.gpg: trustdb created
gpg: key 28DB9E3F: public key "Justus Winter <justus@gnupg.org>" imported
gpg: no ultimately trusted keys found
gpg: Total number processed: 1
gpg: imported: 1
% g10/gpg2 --refresh-keys
gpg: refreshing 1 key from hkps://hkps.pool.sks-keyservers.net
gpg: key 28DB9E3F: "Justus Winter <justus@gnupg.org>" not changed
gpg: Total number processed: 1
gpg: unchanged: 1

(Adding the .onion service makes no difference for me either.)

Sep 15 2016, 4:34 PM · Bug Report, gnupg
justus closed T2685: GnuPG failed to start as Invalid.
Sep 15 2016, 4:13 PM · gnupg
justus lowered the priority of T2685: GnuPG failed to start from High to Normal.
Sep 15 2016, 4:13 PM · gnupg
aheinecke added a comment to T2687: 98 chars limits on archived filenames for windows (gpgtar).

What I meant by "KArchive" is that we already have all that nice archiving code
in Kleopatra already: https://api.kde.org/frameworks/karchive/html/index.html
To work with standard formats like tar / zip / 7zip etc.

This would get us the included platform abstraction through Qt for stuff like
filenames etc. and we wouldn't have to maintain our own implementations for
these archive formats.

Sep 15 2016, 11:55 AM · gpgtar, Bug Report, gpg4win
bernhard added a comment to T2687: 98 chars limits on archived filenames for windows (gpgtar).

Can you create a new issue with the data "loss" part?

As for the default format:
I think we should use and propose a default format that is mostly compatible
over platforms (and robust in the future). tar "posix" seems to be
such a format. Am not sure how this evaluates for karchive or 7zip.

Sep 15 2016, 11:47 AM · gpgtar, Bug Report, gpg4win
bernhard updated subscribers of T2687: 98 chars limits on archived filenames for windows (gpgtar).
Sep 15 2016, 11:47 AM · gpgtar, Bug Report, gpg4win
aheinecke added a project to T2687: 98 chars limits on archived filenames for windows (gpgtar): Bug Report.
Sep 15 2016, 9:49 AM · gpgtar, Bug Report, gpg4win
aheinecke added a comment to T2687: 98 chars limits on archived filenames for windows (gpgtar).

https://www.gnu.org/software/tar/manual/html_section/tar_68.html gives a good
overview imo.

So yes raising the file name length limit could be problematic with
compatibility and we might have to change more in our implementation to create
formats of a different spec.

From the discussion in the forum it looks like the error was silently discarded
when used in Kleopatra. We need error handling in that case. So I think this is
an Urgent bug as silent discard of archive contents can lead to data loss. So
for me this part is an urgent bug. Actually handling longer filenames is another
issue.

As a sidenote:
Kleopatra already links KArchive for svgz handling so it already contains a good
API for ZIP file creation. I'd like to add that to Kleopatra and make it default
so that the default is not our own error prone tar implementation. (Other tar
implementations also are problematic for windows). In that case we could also
drop the extraction as zip file support is native in the windows file explorer.

And as suggested in the forum entry we should probably also document how to add
7zip support to kleopatra or check for this at runtime and add some 7zip archive
options if it is available.
This should be doable by editing libkleopatrarc but I'd have to check the syntax
myself in the code as its not documented afaik.

Sep 15 2016, 9:49 AM · gpgtar, Bug Report, gpg4win
aheinecke raised the priority of T2687: 98 chars limits on archived filenames for windows (gpgtar) from Wishlist to High.
Sep 15 2016, 9:49 AM · gpgtar, Bug Report, gpg4win
hwittmaack_gmail.com added a comment to T2685: GnuPG failed to start.

..it was an error from kwallet. So I had gpg new installed from source. By
installing I have seen, that kwallet make problems, so I install also kwallet
completely new.
Now there is no error-message from gpg. I'm happy. Sorry to all, but I didn't
know, what to do before.

Sep 15 2016, 9:44 AM · gnupg

Sep 14 2016

hwittmaack_gmail.com set Version to 2.0.24 on T2685: GnuPG failed to start.
Sep 14 2016, 4:14 PM · gnupg
hwittmaack_gmail.com added a project to T2685: GnuPG failed to start: Bug Report.
Sep 14 2016, 4:14 PM · gnupg
justus lowered the priority of T2684: GPG encrypts using a key of a partial recipient match instead of exact match from High to Normal.
Sep 14 2016, 3:25 PM · gnupg (gpg14), Bug Report
justus changed Version from 2.0.22 to 1.4, 2.0.22, master on T2684: GPG encrypts using a key of a partial recipient match instead of exact match.
Sep 14 2016, 3:25 PM · gnupg (gpg14), Bug Report
justus renamed T2684: GPG encrypts using a key of a partial recipient match instead of exact match from GPG signs using a key of a partial recipient match instead of exact match to GPG encrypts using a key of a partial recipient match instead of exact match.
Sep 14 2016, 3:25 PM · gnupg (gpg14), Bug Report
justus added a project to T2684: GPG encrypts using a key of a partial recipient match instead of exact match: gnupg (gpg22).
Sep 14 2016, 3:25 PM · gnupg (gpg14), Bug Report
justus added a comment to T2684: GPG encrypts using a key of a partial recipient match instead of exact match.

Indeed, this is unfortunate, but not as bad as you make it sound (unless the
user uses always trust).

Note that this is not about signing (which uses the private key), but about
encryption. I've changed the bug title accordingly.

This happens also with master, and it seems the order of keys in the public
keyring is important:

teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % export GNUPGHOME=$(mktemp -d)
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % gpg2 --import test.user.asc
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: keybox '/tmp/tmp.TR2cSoWHMb/pubring.kbx' created
gpg: /tmp/tmp.TR2cSoWHMb/trustdb.gpg: trustdb created
gpg: key 8D62594F1FE90C7B: public key "test.user@example.org" imported
gpg: Total number processed: 1
gpg: imported: 1
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % gpg2 --import user.asc
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: key 00988FEC00B5CA77: public key "user@example.org" imported
gpg: Total number processed: 1
gpg: imported: 1
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % echo huhu|gpg2 -e -r
"user@example.org" -a|gpg2

gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: 1A7265CF27F9E78E: There is no assurance this key belongs to the named user
sub rsa2048/1A7265CF27F9E78E 2016-09-14 test.user@example.org
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
Primary key fingerprint: CA77 8656 2AAC BBB2 6A50 3A50 8D62 594F 1FE9 0C7B

      Subkey fingerprint: 52CB E9DC 1812 9F78 3054  6569 1A72 65CF 27F9 E78E

It is NOT certain that the key belongs to the person named
in the user ID. If you *really* know what you are doing,
you may answer the next question with yes.

Use this key anyway? (y/N)

gpg: signal gpgInterrupt: signal caught ... exiting
Interrupt caught ... exiting
130 teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % export
GNUPGHOME=$(mktemp -d)
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % gpg2 --import user.asc
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: keybox '/tmp/tmp.Hfjbb2jvji/pubring.kbx' created
gpg: /tmp/tmp.Hfjbb2jvji/trustdb.gpg: trustdb created
gpg: key 00988FEC00B5CA77: public key "user@example.org" imported
gpg: Total number processed: 1
gpg: imported: 1
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % gpg2 --import test.user.asc
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: key 8D62594F1FE90C7B: public key "test.user@example.org" imported
gpg: Total number processed: 1
gpg: imported: 1
teythoon@europa ~/repos/g10/gnupg/obj (git)-[master] % echo huhu|gpg2 -e -r
"user@example.org" -a|gpg2
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: NOTE: THIS IS A DEVELOPMENT VERSION!
gpg: It is only intended for test purposes and should NOT be
gpg: used in a production environment or with production keys!
gpg: DAB278A8736B0D2C: There is no assurance this key belongs to the named user
sub rsa2048/DAB278A8736B0D2C 2016-09-14 user@example.org
Primary key fingerprint: 6680 B181 D853 CEB5 6671 ECC7 0098 8FEC 00B5 CA77

      Subkey fingerprint: 3909 7C31 399C A746 87B3  5D74 DAB2 78A8 736B 0D2C

It is NOT certain that the key belongs to the person named
in the user ID. If you *really* know what you are doing,
you may answer the next question with yes.

Use this key anyway? (y/N)

gpg: signal gpgInterrupt: signal caught ... exiting
Interrupt caught ... exiting

Sep 14 2016, 3:25 PM · gnupg (gpg14), Bug Report
tvenhola added projects to T2684: GPG encrypts using a key of a partial recipient match instead of exact match: gnupg (gpg14), gnupg (gpg20), Bug Report.
Sep 14 2016, 2:01 PM · gnupg (gpg14), Bug Report
werner closed T2446: gpgme_set_armor(myctx, 0) ignored if 'armor' option is set in gpg.conf as Resolved.
Sep 14 2016, 12:51 PM · gpgme, Bug Report, Not A Bug
andrewgdotcom added a comment to T2671: "Invalid option" with utf-16 config files (windows).

Werner Koch <wk@gnupg.org> added the comment:

Any suggestion on how to detect utf-16 easily?

Sep 14 2016, 10:05 AM · gnupg24, Restricted Project, Bug Report
werner added a comment to T2671: "Invalid option" with utf-16 config files (windows).

Any suggestion on how to detect utf-16 easily?

Sep 14 2016, 8:52 AM · gnupg24, Restricted Project, Bug Report
werner closed T2681: misleding man page entry as Resolved.
Sep 14 2016, 8:51 AM · Bug Report, Not A Bug, gnupg
werner reopened T2681: misleding man page entry as "Open".
Sep 14 2016, 8:51 AM · Bug Report, Not A Bug, gnupg
werner added a comment to T2681: misleding man page entry.

What you see is no output but diagnostic messages send to stderr.

Sep 14 2016, 8:51 AM · Bug Report, Not A Bug, gnupg
werner closed T2681: misleding man page entry as Resolved.
Sep 14 2016, 8:51 AM · Bug Report, Not A Bug, gnupg
werner added a project to T2681: misleding man page entry: Not A Bug.
Sep 14 2016, 8:51 AM · Bug Report, Not A Bug, gnupg

Sep 13 2016

colan added projects to T2682: Keys cannot be refreshed via "gpg2 --refresh-keys": gnupg, Bug Report.
Sep 13 2016, 10:31 PM · Bug Report, gnupg
toralf set Version to 2.0.28 on T2681: misleding man page entry.
Sep 13 2016, 10:41 AM · Bug Report, Not A Bug, gnupg
toralf added projects to T2681: misleding man page entry: gnupg, Bug Report.
Sep 13 2016, 10:41 AM · Bug Report, Not A Bug, gnupg
bernhard added a comment to T1804: HKPS scheme support for Windows Installer.

Spoke to Werner, it is better to do ntbtls anyway.
Timeline is: this year, hopefully earlier.

For ntbtls also see: https://wiki.gnupg.org/NTBTLS

Sep 13 2016, 9:21 AM · Bug Report, gnupg, dirmngr
bernhard added a comment to T1804: HKPS scheme support for Windows Installer.

ntbtls is a development from Werner:
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=ntbtls.git;a=summary

What about using https://tls.mbed.org/? At least until ntbtls is mature?

Sep 13 2016, 8:38 AM · Bug Report, gnupg, dirmngr
werner added a project to T2677: enable-special-filenames does not work with --output: In Progress.
Sep 13 2016, 8:33 AM · Bug Report, gnupg
werner lowered the priority of T2678: digitp has different meanings across the codebase from Normal to Low.
Sep 13 2016, 8:30 AM · Bug Report, gnupg
werner closed T2678: digitp has different meanings across the codebase as Resolved.
Sep 13 2016, 8:30 AM · Bug Report, gnupg
werner added a comment to T2678: digitp has different meanings across the codebase.

Good catch. I fixed usbmod in the repo.

Sep 13 2016, 8:30 AM · Bug Report, gnupg
werner added a project to T2676: invalid passphrase: Trash.
Sep 13 2016, 8:17 AM · Trash, Bug Report
werner closed T2676: invalid passphrase as Resolved.
Sep 13 2016, 8:17 AM · Trash, Bug Report
werner added a comment to T2676: invalid passphrase.

Please ask on gnupg-users or any other public resource for help. This is a bug
tracker and not a help line.

Sep 13 2016, 8:17 AM · Trash, Bug Report

Sep 12 2016

bernhard removed a project from T1804: HKPS scheme support for Windows Installer: Feature Request.
Sep 12 2016, 12:47 PM · Bug Report, gnupg, dirmngr
bernhard added a project to T1804: HKPS scheme support for Windows Installer: Bug Report.
Sep 12 2016, 12:47 PM · Bug Report, gnupg, dirmngr
t8m added a comment to T2680: Make the error message when pinentry does not have a tty more clear.

See also https://bugzilla.redhat.com/show_bug.cgi?id=1362477

Sep 12 2016, 11:56 AM · gnupg, Bug Report
t8m added a project to T2680: Make the error message when pinentry does not have a tty more clear: Bug Report.
Sep 12 2016, 11:55 AM · gnupg, Bug Report

Sep 9 2016

paz added projects to T2679: Raise error if keyring if not readable: Bug Report, gpgme.
Sep 9 2016, 12:37 PM · gpgme, Bug Report

Sep 8 2016

dkg set Version to 2.1.15 on T2678: digitp has different meanings across the codebase.
Sep 8 2016, 5:13 PM · Bug Report, gnupg
dkg added projects to T2678: digitp has different meanings across the codebase: gnupg, Bug Report.
Sep 8 2016, 5:13 PM · Bug Report, gnupg
dkg added projects to T2677: enable-special-filenames does not work with --output: gnupg, Bug Report.
Sep 8 2016, 12:34 PM · Bug Report, gnupg
dkg set Version to 2.1.15 on T2677: enable-special-filenames does not work with --output.
Sep 8 2016, 12:34 PM · Bug Report, gnupg
flux added a project to T2676: invalid passphrase: Bug Report.
Sep 8 2016, 12:04 PM · Trash, Bug Report
gvs added a comment to T2390: gpg-agent not expiring passphrase.

I tested with 2.0.22 on Ubuntu 14.04.5 LTS and SIGHUP expired the cached
passphrase. I'll have to find some time to test 2.0.30.

Sep 8 2016, 8:44 AM · Info Needed, Bug Report, gnupg

Sep 7 2016

andrewgdotcom added a project to T2671: "Invalid option" with utf-16 config files (windows): Bug Report.
Sep 7 2016, 1:21 PM · gnupg24, Restricted Project, Bug Report

Sep 6 2016

dkg added a comment to T2669: gpg --import auto-launches gpg-agent even when no secret keys are imported.

So i see a couple options:

a) We import a secret key -- this requires that we launch the agent to store it.
b) We import a public key and see that its preferences do match our
implementation -- in this case, we don't need to talk to the agent, right?
c) We import a public key and see that its preferences do not match our
implementation -- in this case, we could check whether the agent has the
corresponding secret key, and if it does, we could complain to the user.

instead of (c), though, we could trigger such a test the other way around: if
we're using a secret key and we notice that its public preferences don't match
our implementation, that's when we could warn the user about the mismatch.

Sep 6 2016, 9:26 AM · Bug Report, gnupg
werner added a comment to T2666: gpg --list-config does not include default-key.

What both won't give you is the key actually used as default key. A
test signing might be a better way to figure out the default key:

  $ fortune | gpg -sv -o /dev/null --status-fd 1
  gpg: using "1E42B367" as default secret key for signing
  gpg: using subkey 4F0540D577F95F95 instead of primary key F2AD85AC1E42B367
  [GNUPG:] KEY_CONSIDERED 80615870F5BAD690333686D0F2AD85AC1E42B367 0
  gpg: writing to '/dev/null'
  [GNUPG:] BEGIN_SIGNING H2
  [GNUPG:] PINENTRY_LAUNCHED 960
  gpg: DSA/SHA1 signature from: "4F0540D577F95F95 Werner Koch <wk@gnupg.org>"
  [GNUPG:] SIG_CREATED S 17 2 00 1473143881 E4B868C8F90C8964B5AF9DBC4F0540D577F95F95

The used key can be taken from the SIG_CREATED status line. This is
not the primary key, so we may want to add anoter status line. To
avoid the Pinentry this could be used:

  $ fortune | gpg -sv -o /dev/null --status-fd 1 --pinentry-mode=cancel
  gpg: using "1E42B367" as default secret key for signing
  gpg: using subkey 4F0540D577F95F95 instead of primary key F2AD85AC1E42B367
  [GNUPG:] KEY_CONSIDERED 80615870F5BAD690333686D0F2AD85AC1E42B367 0
  gpg: writing to '/dev/null'
  [GNUPG:] BEGIN_SIGNING H2
  gpg: signing failed: Operation cancelled
  [GNUPG:] FAILURE sign 67108963

along with a new status line.

Sep 6 2016, 8:46 AM · Bug Report, gnupg
werner added a comment to T2669: gpg --import auto-launches gpg-agent even when no secret keys are imported.

Thanks. It happens only for a new or modified key. The reason is that we then
check that the preferences of the key match our implementation. This check
makes only sense if we have the secret key and to detect this we need to start
the agent.

To avoid this, we would need to implement yet another gpg option.

Or we use a hack to detect the presence of the private-keys-v1.d directory.
That would solve the problem for now but not if the agent is accessed via the
--extra-socket feature.

Sep 6 2016, 8:36 AM · Bug Report, gnupg
dkg added a comment to T2324: gpg --batch --export-secret-key fails (requires user interaction) if key has no passphrase.

So i've tested this locally with:

    export GNUPGHOME=$(mktemp -d)
    gpg --quick-gen-key 'test user <test@example.org>'
    gpg --armor --export-secret-key 'test user <test@example.org>'

(choosing no passphrase during the prompts that come up during the quick-gen-key
step). The final export step works fine.

Can you show what steps you're taking that fail for you, Andre?

Sep 6 2016, 5:08 AM · gnupg, OpenPGP, Bug Report
dkg added a comment to T2669: gpg --import auto-launches gpg-agent even when no secret keys are imported.

Sep 6 2016, 2:59 AM · Bug Report, gnupg
dkg added a comment to T2669: gpg --import auto-launches gpg-agent even when no secret keys are imported.

sure: using the attached "dkg.gpg" file (a pruned version of my own public key),
i did:

Sep 6 2016, 2:59 AM · Bug Report, gnupg
dkg added a comment to T2666: gpg --list-config does not include default-key.

if --list-config is deprecated, should it emit a warning? doc/gpg.texi shows no
mention that it is deprecated, or that "gpgconf --list-options gpg" should be
preferred.

Also, i note that --list-config is still used in the test suite:

tests/openpgp/defs.inc uses it with "ciphername" and "digestname", and
tests/openpgp/defs.scm uses it with "ciphername" and "digestname" and
"pubkeyname". I don't see any way to get the same information out of gpgconf.
Perhaps gpgconf needs to provide some equivalent?

Sep 6 2016, 2:02 AM · Bug Report, gnupg

Sep 5 2016

rivy added a comment to T2670: (Win32/64) gpg-agent locks directory of initial signature.

No, it's not the config files that are a problem. And maybe I'm using
imprecise terminology. But, the gpg-agent process maintains an open
handle on the current working directory in which the process is started,
until it is killed. Here's an example:

Sep 5 2016, 7:36 PM · Bug Report, gpg4win
aheinecke added a comment to T2405: Possible timing problem with TOFU.

Thanks for clarifying this.

I've update the comment in the test accordingly. This issue is resolved for me.

Sep 5 2016, 4:56 PM · gnupg, gnupg (gpg22), Bug Report
aheinecke removed a project from T2405: Possible timing problem with TOFU: Restricted Project.
Sep 5 2016, 4:56 PM · gnupg, gnupg (gpg22), Bug Report
aheinecke closed T2405: Possible timing problem with TOFU as Resolved.
Sep 5 2016, 4:56 PM · gnupg, gnupg (gpg22), Bug Report
aheinecke placed T2405: Possible timing problem with TOFU up for grabs.
Sep 5 2016, 4:56 PM · gnupg, gnupg (gpg22), Bug Report
werner added a comment to T2666: gpg --list-config does not include default-key.

--list-config is an old interface which has been superseeded by gpgconf.

Sep 5 2016, 4:55 PM · Bug Report, gnupg
werner added a comment to T2405: Possible timing problem with TOFU.

OpenPGP has a timestamp granularity of one second and thus you can't distinguish
non-RSA signature from each other if they are donewithin the same second.

Waiting a second is an old trick which is even employed somewhere inside gpg.

Sep 5 2016, 4:51 PM · gnupg, gnupg (gpg22), Bug Report
werner added a comment to T2668: gpgv verification of inline-signed data ignores leading and trailing garbage.

The leading and trailing garbage is by design - cf. >20 years discussions on the
problem of the cleartext format. A --verify works best with a detached
signature, because only this format makes it easy to decide what has been signed.

We need to review why --output has no effect with --verify or gpgv.

Sep 5 2016, 4:48 PM · Bug Report, gnupg
werner added a comment to T2670: (Win32/64) gpg-agent locks directory of initial signature.

There is no lock on a directory. However, several lock files are created in the
GNUPGHOME directory. Sure, you can't delete them as long as the processes
holding them are alive.

Can you please give more detailed information on your problem? For example the
name of the lock files and which processes are holding them? How can we
replicate the problem.

Sep 5 2016, 4:44 PM · Bug Report, gpg4win
werner added a comment to T2669: gpg --import auto-launches gpg-agent even when no secret keys are imported.

Can you please given an ezample - I can't replicate it.

Sep 5 2016, 4:41 PM · Bug Report, gnupg
aheinecke changed Version from 2.1.11 to 2.1.15 on T2324: gpg --batch --export-secret-key fails (requires user interaction) if key has no passphrase.
Sep 5 2016, 2:40 PM · gnupg, OpenPGP, Bug Report
aheinecke added a comment to T2324: gpg --batch --export-secret-key fails (requires user interaction) if key has no passphrase.

I'm using latest master and I still can't export a secret key without passphrase.

And Justus also has not closed this bug or wrote that he commited something
more. So I think the 2.1.13 announcement was mistaken and this problem still
exists. (Or am I missing some option / need a different pinentry mode?)

Sep 5 2016, 2:40 PM · gnupg, OpenPGP, Bug Report
aheinecke removed a project from T2448: dirmngr fails to load crl when imported manually: Restricted Project.
Sep 5 2016, 2:14 PM · gnupg, Windows 32, Windows, Bug Report