Page MenuHome GnuPG
Feed Advanced Search

Mar 15 2017

werner added a project to T2994: Login via Roundup account on wiki.gnupg.org currently not possible: gpgweb.
Mar 15 2017, 10:10 AM · gpgweb, Bug Report
ilovezfs added a comment to T2979: "make check" cannot run before "make install" with gnupg 2.1.19.

Any other suggestions?

Mar 15 2017, 9:30 AM · Duplicate, gnupg, Bug Report

Mar 14 2017

thomas added a comment to T2994: Login via Roundup account on wiki.gnupg.org currently not possible.

Please assign this issue to _me_ when ...

Mar 14 2017, 4:38 PM · gpgweb, Bug Report
thomas added a project to T2994: Login via Roundup account on wiki.gnupg.org currently not possible: Bug Report.
Mar 14 2017, 4:38 PM · gpgweb, Bug Report
werner added a comment to T2826: Clock skew screws up expiration and usage of keys.

Can you develop a fix based on the result of your prototype? I mean a short fix
without all the code changes from the prototype.

Mar 14 2017, 12:46 PM · gnupg, Bug Report
werner added a comment to T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path.

I agreed in T2964 (wk on Mar 01 2017, 07:31 AM / Roundup) to auto create socket directories. I would like to do that
only for a tmpfs but we can also try to do this always. Adding a inotify watch
to remove the directory is more complex and I am not sure whether this is really
needed. The other thing is simple and we could do that for 2.1.20.

The whole IPC thing is pretty complex and adding a non-standard hack as proposed
by Justus will for sure cause breakage on some platforms.

Yes, we should document /var/run recommendations in the README. I will do that
for the next release.

Mar 14 2017, 12:06 PM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr
justus added a comment to T2991: dirmngr unable to receive keys if only IPv6 DNS servers are set.

This seems to be a bug in our new resolver library. I have contacted the author
for assistance.

Mar 14 2017, 10:28 AM · g10code (gnupg-2.2), Debian, Bug Report, gnupg, gnupg (gpg21), dirmngr
justus lowered the priority of T2993: --disable-tools break build on ../../tools/gpg-connect-agent.c:21:10: fatal error: config.h: No such file or directory from Normal to Low.
Mar 14 2017, 10:25 AM · Bug Report, gnupg
justus added a comment to T2992: memory erasure improvement.

Hello :)

this is very interesting indeed. However, we focus our development effort on
GnuPG 2.1 nowadays, and a lot has changed since then. Would you be so kind to
redo your analysis on the current version and/or supply us with information how
to use secretgrind?

Mar 14 2017, 10:24 AM · Bug Report, gnupg
ignatenkobrain added projects to T2993: --disable-tools break build on ../../tools/gpg-connect-agent.c:21:10: fatal error: config.h: No such file or directory: gnupg, Bug Report.
Mar 14 2017, 7:32 AM · Bug Report, gnupg
dkg added a comment to T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path.

This bug report simply asks to solve the generic problem of GNUPGHOME being
larger than sun_path. Justus's proposed mechanism is only one way of solving
that problem.

Another proposed mechanism is what i originally proposed in T2964 (dkg on Feb 17 2017, 01:52 AM / Roundup), which
*does* address remote filesystems and re-mounted filesystems.

I don't undertstand the critique about the code not yet being mature. Code
doesn't become mature by not being written, it needs to be written first and
then tested in order to become mature.

Lastly, i think if we expect that /run/user/$(id -u)/ is a "simple dependency"
for building other software, we need to make that expectation explicit someplace
reasonable (e.g. doc/HACKING or something similar)

Mar 14 2017, 4:39 AM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr

Mar 13 2017

lmrs2 added a comment to T2992: memory erasure improvement.

Mar 13 2017, 7:00 PM · Bug Report, gnupg
lmrs2 added a project to T2992: memory erasure improvement: Bug Report.
Mar 13 2017, 7:00 PM · Bug Report, gnupg
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

#2991 is a duplicate of this issue.

Mar 13 2017, 3:52 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added a comment to T2991: dirmngr unable to receive keys if only IPv6 DNS servers are set.

This is a duplicate of #2990.

Mar 13 2017, 3:50 PM · g10code (gnupg-2.2), Debian, Bug Report, gnupg, gnupg (gpg21), dirmngr
flokli added a comment to T2991: dirmngr unable to receive keys if only IPv6 DNS servers are set.

Hey :-)

Glad to see I'm not the only one ;-)

Mar 13 2017, 12:56 PM · g10code (gnupg-2.2), Debian, Bug Report, gnupg, gnupg (gpg21), dirmngr
justus added a comment to T2826: Clock skew screws up expiration and usage of keys.

Prototype in

https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=shortlog;h=refs/heads/justus/issue2826-0

this prototype turns the use of uninitialized values into errors that are easy
to detect. Fail early.

Mar 13 2017, 12:47 PM · gnupg, Bug Report
aheinecke added a comment to T2982: Scdaemon, w32 hang if two assuan connections are made in parallel.

I've tried latest master and it no longer hangs for me.

Thanks. Changing the status to not-released as this is fixed.

Mar 13 2017, 11:57 AM · Unreleased, gpg4win, Bug Report, gnupg, scd
aheinecke added a project to T2982: Scdaemon, w32 hang if two assuan connections are made in parallel: Unreleased.
Mar 13 2017, 11:57 AM · Unreleased, gpg4win, Bug Report, gnupg, scd
aheinecke closed T2982: Scdaemon, w32 hang if two assuan connections are made in parallel as Resolved.
Mar 13 2017, 11:57 AM · Unreleased, gpg4win, Bug Report, gnupg, scd
justus added a comment to T2991: dirmngr unable to receive keys if only IPv6 DNS servers are set.

Indeed, I can reproduce this.

PS: Hi flokli :)

Mar 13 2017, 10:50 AM · g10code (gnupg-2.2), Debian, Bug Report, gnupg, gnupg (gpg21), dirmngr
werner updated subscribers of T2979: "make check" cannot run before "make install" with gnupg 2.1.19.
Mar 13 2017, 10:12 AM · Duplicate, gnupg, Bug Report
werner assigned T2979: "make check" cannot run before "make install" with gnupg 2.1.19 to justus.
Mar 13 2017, 10:12 AM · Duplicate, gnupg, Bug Report
JochenSaalfeld added a comment to T2985: CRLs are not automatically loaded, when trying to send a mail to S/MIME recipient.

I just tested it with gpg4win3.0.0-beta215

gpgsm -v --output Downloads\kitten.gpg --recipient jochen@intevation.de

Downloads\kitten.jpg

gpgsm: certificate #13/CN=Email CA 2013,O=Intevation GmbH,C=DE
gpgsm: Die CRL konnte nicht geprüft werden: Ungültiges CRL Objekt
gpgsm: Benutztes Gültigkeitsmodell: Schale
gpgsm: Hinweis: Verschlüsselung für `jochen@intevation.de' wird nicht

möglich sein: Ungültiges CRL Objekt

    gpgsm: Ungültiger Befehl (Es gibt keinen implizierten Befehl)

So the CRL file was not automatically pulled via console either.

Mar 13 2017, 10:11 AM · Bug Report, gpg4win
aheinecke added a comment to T2985: CRLs are not automatically loaded, when trying to send a mail to S/MIME recipient.

This was with gnupg 2.1.19 I think it's a duplicate of T2984 if the CRL
can't be loaded sending an S/MIME mail will fail.

Mar 13 2017, 10:08 AM · Bug Report, gpg4win
JochenSaalfeld placed T2984: Windows: Unable to import CRL up for grabs.
Mar 13 2017, 9:55 AM · Bug Report, gpg4win
JochenSaalfeld added a comment to T2984: Windows: Unable to import CRL.

I tried it on two different autohrities.

https://ssl.intevation.de/:

    gpgsm -v --import F:\zertifikate\SMIME\emailca2013.crl
    gpgsm: no issuer found in certificate
    gpgsm: Grundlegende Zertifikatprüfungen fehlgeschlagen - nicht importiert
    gpgsm: no issuer found in certificate
    gpgsm: Grundlegende Zertifikatprüfungen fehlgeschlagen - nicht importiert
    gpgsm: ksba_cert_hash failed: Kein Wert
    ksba: ber-decoder: node `?': TLV length too large
    gpgsm: gesamte verarbeitete Anzahl: 2
    gpgsm:                        nicht importiert: 2

https://www.rz.uni-osnabrueck.de/dienste/unios_ca/index.html:

    gpgsm -v --import Downloads\cacrl.crl
    gpgsm: unknown hash algorithm '?'
    gpgsm: certificate has a BAD signature: Allgemeiner Fehler
    gpgsm: Grundlegende Zertifikatprüfungen fehlgeschlagen - nicht importiert
    gpgsm: gesamte verarbeitete Anzahl: 1
    gpgsm:                        nicht importiert: 1

Seem to be different errors, but it doesnt work from command-line, too.

But the error from the front-end is different, when I tried importing via
commandline first:

Beim Importieren der Sperrliste ist ein Fehler aufgetreten. Die Ausgabe von

GpgSM lautet:

gpgsm: unsupported inquiry 'SENDCERT_SKI

93E3D83226DAD5F14AA5914AE0EA4BE2A20CCFE1 /CN=DFN-Verein Certification Authority
2,OU=DFN-PKI,O=Verein zur Foerderung eines Deutschen Forschungsnetzes e. V.,C=DE'

    gpgsm: response of dirmngr: Unbekanntes IPC "Inquire"

The error is the same for both CAs (except tfor the inquiry details).

Mar 13 2017, 9:55 AM · Bug Report, gpg4win

Mar 10 2017

flokli added projects to T2991: dirmngr unable to receive keys if only IPv6 DNS servers are set: dirmngr, gnupg (gpg21), gnupg, Bug Report, Debian.
Mar 10 2017, 9:42 PM · g10code (gnupg-2.2), Debian, Bug Report, gnupg, gnupg (gpg21), dirmngr
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Mar 10 2017, 2:03 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

And failing with IPv6 nameserver.

Mar 10 2017, 2:03 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Mar 10 2017, 2:02 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Here's running normally (not in a container) using IPv4 nameserver.

Mar 10 2017, 2:02 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Arch Linux. The PID was due to running in a container.

Mar 10 2017, 2:01 PM · gnupg (gpg22), Bug Report, dirmngr
walkingrobot removed a project from T2986: Can not access keyserver without the standard-resolver option: Info Needed.
Mar 10 2017, 1:30 PM · Bug Report, gnupg
walkingrobot added a comment to T2986: Can not access keyserver without the standard-resolver option.

Hi,

I am using systemd-resolved. It is listening on localhost UDP.

Mar 10 2017, 1:30 PM · Bug Report, gnupg
walkingrobot lowered the priority of T2986: Can not access keyserver without the standard-resolver option from Normal to Low.
Mar 10 2017, 1:30 PM · Bug Report, gnupg
werner added a comment to T2744: Lack of HTTPS issues on git.gnupg.org.

Please remove the drm.info logo and url. This is an FSFE project and (iirc)
they stopped the DRM project and thus tehre is no budget for doing even trivial
things.
They scared the voluntary sysadmins mostly away.

Mar 10 2017, 11:00 AM · gpgweb, Bug Report
werner added a project to T2986: Can not access keyserver without the standard-resolver option: Info Needed.
Mar 10 2017, 10:53 AM · Bug Report, gnupg
werner claimed T2917: --locate-key should re-fetch key via WKD if it is expired.
Mar 10 2017, 10:52 AM · gnupg (gpg22), Bug Report
werner added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

What OS are you using? It looks like A Linux distro but the process id 10 is a
little bit unlikely.

Mar 10 2017, 10:51 AM · gnupg (gpg22), Bug Report, dirmngr
werner added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Please add

verbose
debug ipc,dns
log-file /foo/bar/dirmngr.log

to dirmngr.conf, kill dirmngr (gpgconf --kill dirmngr), and retry. Show us the
log then.

Mar 10 2017, 10:49 AM · gnupg (gpg22), Bug Report, dirmngr
werner removed a project from T2980: ssh-import.scm fails during "make check" with gnupg 2.1.19: Unreleased.
Mar 10 2017, 10:47 AM · MacOS, Bug Report, gnupg

Mar 9 2017

ilovezfs added a comment to T2980: ssh-import.scm fails during "make check" with gnupg 2.1.19.

4ce4f2f683a17be3ddb93729f3f25014a97934ad allows make check to complete without
the other workaround. So it works as advertised! Thanks, Niibe and Justus.

Mar 9 2017, 3:35 PM · MacOS, Bug Report, gnupg
nfnty added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

Error output:

dirmngr[9.5]: handler for fd 5 started
dirmngr[9.5]: connection from process 10 (1000:1000)
dirmngr[9.5]: command 'KS_GET' failed: Server indicated a failure <Unspecified
source>
gpg: keyserver receive failed: Server indicated a failure
dirmngr[9.5]: handler for fd 5 terminated
Mar 9 2017, 3:27 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty set Version to 2.1.19 on T2990: dirmngr fails with IPv6 nameserver in resolv.conf.
Mar 9 2017, 3:24 PM · gnupg (gpg22), Bug Report, dirmngr
nfnty added projects to T2990: dirmngr fails with IPv6 nameserver in resolv.conf: dirmngr, gnupg, Bug Report.
Mar 9 2017, 3:24 PM · gnupg (gpg22), Bug Report, dirmngr
justus added a comment to T2917: --locate-key should re-fetch key via WKD if it is expired.

Yes, I think that would be good.

Mar 9 2017, 3:22 PM · gnupg (gpg22), Bug Report
ilovezfs added a comment to T2979: "make check" cannot run before "make install" with gnupg 2.1.19.

Sure: https://gist.github.com/ilovezfs/c0754cd0f5795b4830cc55cec1b0d016

Mar 9 2017, 2:58 PM · Duplicate, gnupg, Bug Report

Mar 8 2017

justus added a comment to T2744: Lack of HTTPS issues on git.gnupg.org.

I updated the logo and link to PlusServer.

The remaining issue is the link to drm.info. I contacted the people running the
site in January, and I was told that the issue will be dealt within a few months.

Mar 8 2017, 3:26 PM · gpgweb, Bug Report
justus added a comment to T2986: Can not access keyserver without the standard-resolver option.

Hi,

can you tell me what kind of DNS resolver is listening on localhost? Does it
support UDP? TCP?

Mar 8 2017, 3:01 PM · Bug Report, gnupg
justus closed T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra as Resolved.
Mar 8 2017, 1:33 PM · MacOS, gpgme, Bug Report
justus removed a project from T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra: In Progress.
Mar 8 2017, 1:33 PM · MacOS, gpgme, Bug Report
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

gnupg fixed in dd60e868d2bf649a33dc96e207ffd3b8ae4d35af.

Mar 8 2017, 1:33 PM · MacOS, gpgme, Bug Report
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

ntbtls fixed in e582e91e47a164816ac074b9078dbed8537601dc.

Mar 8 2017, 1:21 PM · MacOS, gpgme, Bug Report
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

libgcrypt fixed in 654024081cfa103c87bb163b117ea3568171d408.

Mar 8 2017, 1:11 PM · MacOS, gpgme, Bug Report
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

libksba fixed in 561d03a008150c201ece22b29c97b24a1f6bf590.

Mar 8 2017, 1:05 PM · MacOS, gpgme, Bug Report
werner assigned T2986: Can not access keyserver without the standard-resolver option to justus.
Mar 8 2017, 12:37 PM · Bug Report, gnupg
werner updated subscribers of T2986: Can not access keyserver without the standard-resolver option.
Mar 8 2017, 12:37 PM · Bug Report, gnupg
werner added a comment to T2986: Can not access keyserver without the standard-resolver option.

Justs, can you please check this bug. It is related to the migration to libdns
and thus we should consider this a bug.

Mar 8 2017, 12:37 PM · Bug Report, gnupg
werner raised the priority of T2986: Can not access keyserver without the standard-resolver option from Low to Normal.
Mar 8 2017, 12:37 PM · Bug Report, gnupg
werner added a comment to T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).

Justus, I mentioned several solutions on Jabber which do not affect the rule not
to modify CFLAGS.

Mar 8 2017, 12:33 PM · gnupg (gpg22), Bug Report, gnupg
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

libassuan fixed in b26b73d04bff10852382113ae361ea5726661510.

Mar 8 2017, 12:30 PM · MacOS, gpgme, Bug Report
justus added a comment to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.

libgpg-error fixed in 5e51b642f747547c737a7abbc37e65b0f630d188.

Mar 8 2017, 11:45 AM · MacOS, gpgme, Bug Report
justus added a comment to T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).

Note that simply reverting 02eb9fc9d5863abcfed6af704e618f8cac7cc2e8 will make
our sanitizer build miscompile, likely because -fsanitize=x breaks some test.
This would be easy to fix with my approach, but Werner does not like it.

Mar 8 2017, 10:37 AM · gnupg (gpg22), Bug Report, gnupg

Mar 7 2017

justus reopened T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC) as "Open".
Mar 7 2017, 3:35 PM · gnupg (gpg22), Bug Report, gnupg
justus reassigned T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC) from justus to neal.
Mar 7 2017, 3:35 PM · gnupg (gpg22), Bug Report, gnupg
justus added a comment to T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).

Reverted 4b57359ef3ce0b87e15889e12ef0fcd23f62dcb4.

Mar 7 2017, 3:35 PM · gnupg (gpg22), Bug Report, gnupg
justus closed T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC) as Resolved.
Mar 7 2017, 3:28 PM · gnupg (gpg22), Bug Report, gnupg
justus claimed T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).
Mar 7 2017, 3:28 PM · gnupg (gpg22), Bug Report, gnupg
justus added a comment to T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).

Fixed in 4b57359ef3ce0b87e15889e12ef0fcd23f62dcb4.

Mar 7 2017, 3:28 PM · gnupg (gpg22), Bug Report, gnupg
justus closed T2960: --quick-revoke-uid can be used to revoke last uid, contrary to docs as Resolved.
Mar 7 2017, 1:56 PM · Bug Report, gnupg, gnupg (gpg22)
justus added a comment to T2960: --quick-revoke-uid can be used to revoke last uid, contrary to docs.

Fixed in 591b6a9d879cbcabb089d89a26d3c3e0306054e1.

Mar 7 2017, 1:56 PM · Bug Report, gnupg, gnupg (gpg22)
justus claimed T2960: --quick-revoke-uid can be used to revoke last uid, contrary to docs.
Mar 7 2017, 1:56 PM · Bug Report, gnupg, gnupg (gpg22)
justus closed T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19 as Resolved.
Mar 7 2017, 12:25 PM · Bug Report, gnupg
justus added a project to T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19: gnupg.
Mar 7 2017, 12:25 PM · Bug Report, gnupg
justus added a comment to T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19.

Simple Y2038 problem. Fixed in de3838372ae3cdecbd83eea2c53c8e2656d93052.

Mar 7 2017, 12:25 PM · Bug Report, gnupg
justus added a comment to T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19.

It fails exactly the same way on 64 bit Windows too. Our 32 bit build machine,
an OpenBSD box, is fine. I'll have a look.

Mar 7 2017, 10:53 AM · Bug Report, gnupg
justus claimed T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19.
Mar 7 2017, 10:53 AM · Bug Report, gnupg
walkingrobot added a comment to T2986: Can not access keyserver without the standard-resolver option.

my resolv.conf
nameserver 127.0.0.1
nameserver 8.8.8.8
nameserver 8.8.4.4
nameserver ::1
nameserver 2001:4860:4860::8888
nameserver 2001:4860:4860::8844

I have test with 2.1.19 it works the same

Mar 7 2017, 9:31 AM · Bug Report, gnupg
gniibe added a comment to T2981: struct ucred usage needs ucred.h on Solaris.

Since this is for command-ssh.c, we can't change the protocol (the client is SSH
process, which doesn't use libassuan).
Here, the purpose of the code is getting PID of peer, so, we can do something
except FreeBSD.

I think that it is fixed in: f7f806afa5083617f4aba02fc3b285b06a7d73d4

Mar 7 2017, 6:25 AM · In Progress, Bug Report, gnupg
gniibe added a project to T2981: struct ucred usage needs ucred.h on Solaris: In Progress.
Mar 7 2017, 6:25 AM · In Progress, Bug Report, gnupg

Mar 6 2017

lfam added a project to T2988: quick-key-manipulation.scm fails on 32-bit architectures for 2.1.19: Bug Report.
Mar 6 2017, 9:08 PM · Bug Report, gnupg
werner added a comment to T2986: Can not access keyserver without the standard-resolver option.

What's your /etc/resolv.conf ? Would you mind to also test with 2.1.19?

Mar 6 2017, 12:52 PM · Bug Report, gnupg
gniibe claimed T2981: struct ucred usage needs ucred.h on Solaris.
Mar 6 2017, 12:47 PM · In Progress, Bug Report, gnupg
werner added a comment to T2984: Windows: Unable to import CRL.

Does this work on the command line?

Mar 6 2017, 12:45 PM · Bug Report, gpg4win
werner added a comment to T2985: CRLs are not automatically loaded, when trying to send a mail to S/MIME recipient.

Which gpg4win version?
Does this work on the command line?

Mar 6 2017, 12:43 PM · Bug Report, gpg4win
werner added a comment to T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path.

My main reasons why I don't want to consider this now are:

  • That code is not written and thus will not be matured.
  • It does not solve the major problem why we moved to /var/run, namely remote file systems and avoidance of possible re-mounted file systems
  • The claim that /var/run/user does not exists is not valid, because that is a simple dependency for building the software or using it with non-common setups (remot, long $HOME). Thus an admin will anyway be on duty and adding a few lines to /etc/rc.local is not a bug deal.

FWIW, we may try this in 2.3 see T2987.

Mar 6 2017, 12:29 PM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr
justus added a comment to T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path.

Werner does not think that this is a problem and does not want me to spend time
on this.

Mar 6 2017, 11:28 AM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr
justus added a comment to T2964: dirmngr and gpg-agent should work automatically even when GNUPGHOME is larger than sun_path.

getsockname is only used to recover the paths of sockets bound by a supervisor
like systemd. So unless systemd starts doing the same trick that I propose,
there is no problem.

Mar 6 2017, 10:38 AM · Stalled, scd, gpgagent, Bug Report, gnupg, dirmngr
gniibe added a project to T2980: ssh-import.scm fails during "make check" with gnupg 2.1.19: Unreleased.
Mar 6 2017, 2:39 AM · MacOS, Bug Report, gnupg
gniibe closed T2980: ssh-import.scm fails during "make check" with gnupg 2.1.19 as Resolved.
Mar 6 2017, 2:39 AM · MacOS, Bug Report, gnupg
gniibe added a comment to T2980: ssh-import.scm fails during "make check" with gnupg 2.1.19.

Sorry, I couldn't find any possible bug for PC/SC access in scdaemon. It looks
like scdaemon crashes when it tries to access card by PC/SC, and it seems that
it crashes there (I mean, in PC/SC).
I believe that this scdaemon's crash is something which is difficult to avoid in
an application.

Anyway, I fixed the issue itself by handling errors of gpg-agent for scdaemon:
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=commit;h=4ce4f2f683a17be3ddb93729f3f25014a97934ad

Mar 6 2017, 2:39 AM · MacOS, Bug Report, gnupg

Mar 5 2017

ph1l added a comment to T2977: dirmngr 2.1.18 fails if keyserver's IP is defined in /etc/hosts.

2.1.19 behaves (almost) the same:

  • dirmngr does ignore /etc/hosts
  • dirmngr is only resolving trough dns

SRV? _pgpkey-https._tcp.keyserver.example.com. (59)
SRV? _pgpkey-https._tcp.keyserver.example.com.localdomain. (71)
A? keyserver.example.com. (40)
A? keyserver.example.com.localdomain. (52)
AAAA? keyserver.example.com. (40)
AAAA? keyserver.example.com.localdomain. (52)
A? keyserver.example.com. (40)
A? keyserver.example.com.localdomain. (52)
AAAA? keyserver.example.com. (40)
AAAA? keyserver.example.com.localdomain. (52)

The command output changed slightly:

gpg2 --debug-level guru --search-keys example.com
gpg: enabled debug flags: packet mpi crypto filter iobuf memory cache memstat trust
hashing ipc clock lookup extprog
gpg: DBG: [not enabled in the source] start
gpg: DBG: chan_3 <- # Home: /tmp/gnupg-test
gpg: DBG: chan_3 <- # Config: /tmp/gnupg-test/dirmngr.conf
gpg: DBG: chan_3 <- OK Dirmngr 2.1.19 at your service
gpg: DBG: connection to the dirmngr established
gpg: DBG: chan_3 -> GETINFO version
gpg: DBG: chan_3 <- D 2.1.19
gpg: DBG: chan_3 <- OK
gpg: DBG: chan_3 -> KS_SEARCH -- example.com
gpg: DBG: chan_3 <- ERR 167772380 No name <Dirmngr>
gpg: error searching keyserver: No name
gpg: keyserver search failed: No name
gpg: DBG: chan_3 -> BYE
gpg: DBG: [not enabled in the source] stop
gpg: random usage: poolsize=600 mixed=0 polls=0/0 added=0/0

outmix=0 getlvl1=0/0 getlvl2=0/0

gpg: secmem usage: 0/32768 bytes in 0 blocks

Mar 5 2017, 12:24 AM · dirmngr, gnupg, Bug Report
ph1l changed Version from 2.1.18 to 2.1.19 on T2977: dirmngr 2.1.18 fails if keyserver's IP is defined in /etc/hosts.
Mar 5 2017, 12:24 AM · dirmngr, gnupg, Bug Report

Mar 4 2017

walkingrobot added projects to T2986: Can not access keyserver without the standard-resolver option: gnupg, Bug Report.
Mar 4 2017, 3:41 AM · Bug Report, gnupg
walkingrobot set Version to 2.1.18 on T2986: Can not access keyserver without the standard-resolver option.
Mar 4 2017, 3:41 AM · Bug Report, gnupg
gniibe added a comment to T2982: Scdaemon, w32 hang if two assuan connections are made in parallel.

This patch tried to fix the issue:
https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=commit;h=f9acc7d18bb90f47dafe7e32ae92f567756d6b12

I was wrong that PIPE can be select(2)-ed on Windows. This patch changes the
code so that it uses kill(2) on UNIX and SetEvent on Windows
to break the loop.

Mar 4 2017, 2:37 AM · Unreleased, gpg4win, Bug Report, gnupg, scd

Mar 3 2017

JochenSaalfeld added projects to T2985: CRLs are not automatically loaded, when trying to send a mail to S/MIME recipient: gpg4win, Bug Report.
Mar 3 2017, 1:46 PM · Bug Report, gpg4win
JochenSaalfeld updated subscribers of T2985: CRLs are not automatically loaded, when trying to send a mail to S/MIME recipient.
Mar 3 2017, 1:46 PM · Bug Report, gpg4win
aheinecke claimed T2984: Windows: Unable to import CRL.
Mar 3 2017, 1:40 PM · Bug Report, gpg4win