Page MenuHome GnuPG
Feed Advanced Search

Jun 21 2017

justus added a comment to rG3621dbe52584: gpg,gpgsm: Fix compliance check for DSA and avoid an assert..

As an example: It costed Stephan an me quite some time to understand why
you did the is_compliance and is_allowed ting. It is indeed a clever
idea but the documentation did not properly explained it and your
comment on our question didn't do it either (granted, we could have
asked more explicitly).

Jun 21 2017, 12:02 PM
justus added a comment to T2905: EFL-based pinentry.

The password quality bar is not working. There are spaces missing in the texts.

Jun 21 2017, 11:02 AM · pinentry, Feature Request
justus added a comment to T2905: EFL-based pinentry.
../../efl/pinentry-efl.c: In function ‘create_window’:
../../efl/pinentry-efl.c:493:7: warning: ISO C90 forbids mixed declarations and code [-Wdeclaration-after-statement]
       int ok_len = ELM_SCALE_SIZE(strlen(txt) * (PADDING * 1.5));
       ^~~
Jun 21 2017, 10:52 AM · pinentry, Feature Request
justus assigned T3214: gpgme fails to build with gcc 7 (std::bind, etc) to aheinecke.
Jun 21 2017, 10:45 AM · gpgme, Bug Report
justus triaged T3215: gpgme_op_import_keys() -- unclear documentation, problematic behavior as Normal priority.
Jun 21 2017, 10:44 AM · gpgme, Bug Report

Jun 20 2017

justus closed T3033: bug: dirmngr latches SRV port cross-scheme as Resolved.

Fixed in 48aae8167dcae80d43b08167a88d9eb170781a04.

Jun 20 2017, 4:40 PM · Restricted Project, gnupg (gpg22), Bug Report, dirmngr
justus committed rG48aae8167dca: dirmngr: Properly handle SRV records. (authored by justus).
dirmngr: Properly handle SRV records.
Jun 20 2017, 4:40 PM
justus committed rGfc4834d213af: dirmngr: Refactor variable-sized array code. (authored by justus).
dirmngr: Refactor variable-sized array code.
Jun 20 2017, 4:40 PM
justus committed rG794261c4bdb2: dirmngr: Fix typo. (authored by justus).
dirmngr: Fix typo.
Jun 20 2017, 4:40 PM
justus claimed T3033: bug: dirmngr latches SRV port cross-scheme.
Jun 20 2017, 12:41 PM · Restricted Project, gnupg (gpg22), Bug Report, dirmngr
justus committed rGbadc1cdae52b: gpg: Fix error handling. (authored by justus).
gpg: Fix error handling.
Jun 20 2017, 10:52 AM
justus closed T3212: when canceling pinentry dialog while creating a new subkey, secondary pinentry dialog shows up as Resolved.

Fixed in badc1cdae52bd434e5fac2e4275575afeccc2837.

Jun 20 2017, 10:50 AM · gnupg (gpg22), Bug Report
justus claimed T3212: when canceling pinentry dialog while creating a new subkey, secondary pinentry dialog shows up.
Jun 20 2017, 10:46 AM · gnupg (gpg22), Bug Report
justus added a comment to rG3621dbe52584: gpg,gpgsm: Fix compliance check for DSA and avoid an assert..

I'm really unhappy with this kind of commit.

Jun 20 2017, 10:20 AM
justus triaged T3212: when canceling pinentry dialog while creating a new subkey, secondary pinentry dialog shows up as Normal priority.

Agreed, that is odd.

Jun 20 2017, 9:45 AM · gnupg (gpg22), Bug Report
justus closed T3213: No passphrase prompt when decrypting symmetric encrypted file (i.e. using gpg -c) as Invalid.

Yes, the passphrase is cached by gpg-agent.

Jun 20 2017, 9:34 AM · Bug Report

Jun 19 2017

justus committed rG61ef43546ba9: gpgscm: Limit the number of parallel jobs. (authored by justus).
gpgscm: Limit the number of parallel jobs.
Jun 19 2017, 4:56 PM
justus committed rG6639aedaee05: gpgscm: Improve error handling of foreign functions. (authored by justus).
gpgscm: Improve error handling of foreign functions.
Jun 19 2017, 4:56 PM
justus committed rGe555e7ed7de2: gpgscm: Improve option parsing. (authored by justus).
gpgscm: Improve option parsing.
Jun 19 2017, 4:56 PM
justus committed rG4c8be58fd46b: gpgscm: Improve error reporting. (authored by justus).
gpgscm: Improve error reporting.
Jun 19 2017, 4:56 PM
justus committed rGb766d3d1034e: tests: Run the OpenPGP tests using the new extended key format. (authored by justus).
tests: Run the OpenPGP tests using the new extended key format.
Jun 19 2017, 4:56 PM
justus triaged T3211: [website] Atom/RSS feed for releases, news and/or blog as Wishlist priority.
Jun 19 2017, 3:39 PM · Feature Request
justus added a comment to T3203: gpg chokes on empty UserId.

I'm not sure I understand the problem. Importing that key seems to work just fine. Listing as well.

Jun 19 2017, 11:57 AM · Feature Request, gnupg (gpg22)
justus committed rG6e23416fe61d: gpg: Disable compliance module for other GnuPG components. (authored by justus).
gpg: Disable compliance module for other GnuPG components.
Jun 19 2017, 11:31 AM
justus closed T3210: assertion failure in compliance.c when using gpgv as Resolved.

Fixed in 6e23416fe61d4130918f2d1bf6e1f98d102c4610.

Jun 19 2017, 11:08 AM · gpgv, Bug Report
justus claimed T3210: assertion failure in compliance.c when using gpgv.
Jun 19 2017, 10:08 AM · gpgv, Bug Report

Jun 14 2017

justus triaged T3207: FASTWIPE_T undefined as Normal priority.
Jun 14 2017, 2:41 PM · Restricted Project, ntbtls, Bug Report
justus set the color for ntbtls to Pink.
Jun 14 2017, 2:41 PM
justus triaged T3206: npth-1.3 failed to build on NetBSD-7 as Normal priority.
Jun 14 2017, 9:49 AM · npth, Bug Report
justus closed T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place as Resolved.

Fixed as of 9b12b45aa5e67d4d422bf75a3879df1d52dbe67f.

Jun 14 2017, 9:45 AM · gnupg (gpg22), Bug Report
justus committed rG9b12b45aa5e6: gpg: Check and fix keys on import. (authored by justus).
gpg: Check and fix keys on import.
Jun 14 2017, 9:44 AM
justus committed rG404fa8211b61: gpg: Refactor key checking and fixing. (authored by justus).
gpg: Refactor key checking and fixing.
Jun 14 2017, 9:44 AM
justus committed rG8095d16b3ef6: gpg: Refactor keyedit module. (authored by justus).
gpg: Refactor keyedit module.
Jun 14 2017, 9:44 AM
justus added a comment to T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place.

It doesn't seem to impact performance significantly:

Jun 14 2017, 9:23 AM · gnupg (gpg22), Bug Report
justus closed T3205: Fall back to private keys without passwords if no TTY is available as Wontfix.

This is a feature request for the 'classic' branch. We will not implement any new features there. Please switch to GnuPG 'modern'.

Jun 14 2017, 8:51 AM · Feature Request

Jun 13 2017

justus committed rDc3fbbbf8cd8f: campaign,de: translate partnering (authored by justus).
campaign,de: translate partnering
Jun 13 2017, 4:09 PM
werner awarded rG15d2a009931f: dirmngr: Implement querying nameservers over IPv6. a Doubloon token.
Jun 13 2017, 1:13 PM
justus added a comment to T3203: gpg chokes on empty UserId.

The key was created programmatically by my standard approach, which is bastardizing openkeychain unit tests. good question about the passphrase - I don't remember exactly, but I'm guessing it's either empty or "x". doesn't really matter in the context of this particular bug I guess :)

Jun 13 2017, 1:06 PM · Feature Request, gnupg (gpg22)
justus added a comment to rG7c91b48f0e80: common: Fix -Wswitch warning..

Oh, that merely lists all has algorithms Libgcrypt supports (iirc, within some sensible range). So yes, gpgsm would support that but I have never encountered one and I guess only gpgsm would be able to create such a CMS message.

Jun 13 2017, 1:03 PM
justus claimed T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place.
Jun 13 2017, 12:23 PM · gnupg (gpg22), Bug Report
justus removed a project from T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place: gnupg (gpg22).
Jun 13 2017, 12:18 PM · gnupg (gpg22), Bug Report
justus moved T3196: Use symmetric ESK packet from Backlog to Wishlist on the gnupg (gpg22) board.
Jun 13 2017, 12:15 PM
justus claimed T3203: gpg chokes on empty UserId.

Out of curiosity, how did you create the key? What is the use case?

Jun 13 2017, 12:13 PM · Feature Request, gnupg (gpg22)
justus closed T2990: dirmngr fails with IPv6 nameserver in resolv.conf as Resolved.
Jun 13 2017, 12:01 PM · gnupg (gpg22), Bug Report, dirmngr
justus added a comment to T2990: dirmngr fails with IPv6 nameserver in resolv.conf.

This is fixed now. The fix 15d2a009931f44a60b9df6325f837add208459d6 should be easy to backport.

Jun 13 2017, 12:01 PM · gnupg (gpg22), Bug Report, dirmngr
justus committed rG15d2a009931f: dirmngr: Implement querying nameservers over IPv6. (authored by justus).
dirmngr: Implement querying nameservers over IPv6.
Jun 13 2017, 12:00 PM
justus abandoned D429: gpg: Report compliance with CO_DE_VS. xxx.
Jun 13 2017, 11:27 AM
justus abandoned D430: Implement 'is_de_vs' for decryption results and signatures. xxx.
Jun 13 2017, 11:27 AM
justus added a comment to T3187: Checksum error with extended-key-format and --paswd on a subkey.

Still, looks totally fine to me:

Jun 13 2017, 10:57 AM · gnupg (gpg22), gpgagent
justus added a comment to rG7c91b48f0e80: common: Fix -Wswitch warning..

% sm/gpgsm --help|grep WHIRL
Hash: MD5, SHA1, RIPEMD160, SHA256, SHA384, SHA512, SHA224, WHIRLPOOL

Jun 13 2017, 10:46 AM
justus triaged T3203: gpg chokes on empty UserId as Normal priority.
Jun 13 2017, 10:37 AM · Feature Request, gnupg (gpg22)

Jun 12 2017

justus added a comment to T3187: Checksum error with extended-key-format and --paswd on a subkey.
In T3187#98531, @werner wrote:

I will try to reproduce it. It might be that --passwd also trigerred the conversion to the new format.

Jun 12 2017, 5:00 PM · gnupg (gpg22), gpgagent
justus claimed T2990: dirmngr fails with IPv6 nameserver in resolv.conf.
Jun 12 2017, 4:59 PM · gnupg (gpg22), Bug Report, dirmngr
justus added a comment to T3187: Checksum error with extended-key-format and --paswd on a subkey.

Odd, I cannot reproduce this:

Jun 12 2017, 12:11 PM · gnupg (gpg22), gpgagent
justus claimed T3187: Checksum error with extended-key-format and --paswd on a subkey.
Jun 12 2017, 12:01 PM · gnupg (gpg22), gpgagent
justus triaged T3202: add support for illumos to our version of libtool as Wishlist priority.
Jun 12 2017, 11:41 AM · Info Needed, gpgrt, Bug Report

Jun 8 2017

justus moved T3087: dirmngr, when configured to use an .onion address, should not permit HTTP redirects to a non-onion address from Backlog to Wishlist on the gnupg (gpg22) board.
Jun 8 2017, 3:42 PM · dirmngr, gnupg (gpg22)
justus moved T3088: document --no-use-tor and its interaction with --use-tor from Backlog to Wishlist on the gnupg (gpg22) board.
Jun 8 2017, 3:41 PM · gnupg (gpg22)
justus moved T3117: improve warnings when daemons are older than gpg from Backlog to Wishlist on the gnupg (gpg22) board.
Jun 8 2017, 3:41 PM · gnupg (gpg22)
justus moved T3200: Fix sym cipher discrepancies in gpg4vsnfd evaluation documents. from Backlog to Blocker on the gnupg (gpg22) board.
Jun 8 2017, 3:41 PM · Documentation, gnupg (gpg22)
justus renamed T3194: Export of keys fails (gets mangled) if stdout is redirected to a file on Windows from GPG on Windows 10: Order of export-key command affecting exported key quality? to Export of keys fails (gets mangled) if stdout is redirected to a file on Windows.
Jun 8 2017, 3:40 PM · gnupg (gpg22), Windows 32, Bug Report
justus closed T3138: Help: "Error- key importing failed" - "gpg: starting migration from earlier GnuPG versions" ? as Invalid.

Hello. Please note that this is a bug tracker and not a support forum. Nevertheless, let's investigate.

Jun 8 2017, 3:07 PM · Enigmail, Ubuntu, gnupg
justus triaged T3033: bug: dirmngr latches SRV port cross-scheme as Normal priority.
Jun 8 2017, 3:01 PM · Restricted Project, gnupg (gpg22), Bug Report, dirmngr
justus triaged T3054: dirmngr only using cAcertificate attr type when querying LDAP directory as Wishlist priority.
Jun 8 2017, 3:00 PM · Active Directory, dirmngr
justus triaged T3056: gpgme-1.8.0: test failures on NetBSD as Normal priority.
Jun 8 2017, 2:59 PM · gpgme (gpgme 1.23.x), gpgagent, gnupg (gpg23)
justus triaged T3084: pinentry and password managers mix poorly as Wishlist priority.

Thanks for the input. You need to understand that this ("keyboard grabbing") is actually a security feature. If you don't like it, you can disable it (using the pinentry option --no-global-grab), or you can switch to a pinentry without that feature (e.g. the qt one).

Jun 8 2017, 2:57 PM · pinentry
justus triaged T3087: dirmngr, when configured to use an .onion address, should not permit HTTP redirects to a non-onion address as Wishlist priority.
Jun 8 2017, 2:53 PM · dirmngr, gnupg (gpg22)
justus triaged T3094: gpgol causing crash in Outlook as Normal priority.
Jun 8 2017, 2:52 PM · Bug Report, gpgol
justus triaged T3156: Offer to switch to automatic mode once in GpgOL and Kleopatra as Low priority.
Jun 8 2017, 2:51 PM · g10code Sprint, gpg4win
justus triaged T3075: Campaign 2017 as High priority.
Jun 8 2017, 2:50 PM · g10code, Verein
justus closed T3055: where/how do I resolv this 'AIX-rpm < 5.3.0.0 is needed by pinentry-1.0.0-1'??? as Invalid.

Hi. Sorry for your problems, but this is a bug tracker and not a support forum. You should ask your distributor for help, or you might want to ask on our gnupg-users mailing list.

Jun 8 2017, 2:50 PM
justus triaged T3088: document --no-use-tor and its interaction with --use-tor as Wishlist priority.
Jun 8 2017, 2:47 PM · gnupg (gpg22)
justus closed T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME as Resolved.
Jun 8 2017, 2:24 PM · g10code Sprint (KW 22), gpgme, gnupg
justus closed T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME, a subtask of T3058: Implement GUI for compliance mode, as Resolved.
Jun 8 2017, 2:24 PM · kleopatra, gpgol
justus closed T3191: Make sure only listed algorithms are used with --compliance=de-vs as Resolved.

Implemented. The policy should be easy to adjust later on.

Jun 8 2017, 2:24 PM · gnupg (gpg22)
justus committed rGa64a55e10420: common,gpg,sm: Restrict the use of algorithms according to CO_DE_VS. (authored by justus).
common,gpg,sm: Restrict the use of algorithms according to CO_DE_VS.
Jun 8 2017, 2:23 PM
justus committed rGb03fab09e188: gpg: Fix computation of compliance with CO_DE_VS. (authored by justus).
gpg: Fix computation of compliance with CO_DE_VS.
Jun 8 2017, 2:23 PM
justus added a comment to T3191: Make sure only listed algorithms are used with --compliance=de-vs.

4.4.1 does not allow the use of AES-128 CFB as a cipher to encrypt the body of messages, but 4.4.2 even lists AES-128 CFB as conforming to VS-NfD. Furthermore, 4.1.1 allows,the use of AES-128 CFB as a cipher to encrypt the body of messages. I'm going to assume that this is a bug in the specification and also allow it for symmetric encryption.

Jun 8 2017, 1:32 PM · gnupg (gpg22)
justus added a comment to T2905: EFL-based pinentry.
In T2905#98127, @wltjr wrote:

I got your point, I was saying do not have a chat client or program that would create pop ups and grab focus away. Its a highly debatable and personal preference type of thing. I have run into such already.

Jun 8 2017, 1:17 PM · pinentry, Feature Request
justus triaged T3065: dirmngr: proxy issues with dnslookup causing failure as Normal priority.
Jun 8 2017, 12:38 PM · gnupg (gpg22), dns, dirmngr
justus awarded M8: Campaign Banner 2017 a Hungry Hippo token.
Jun 8 2017, 12:34 PM
justus triaged T3128: Configure the Arch Linux build slave to run with a time offset as Wishlist priority.
Jun 8 2017, 12:12 PM · g10code Sprint, CI

Jun 7 2017

justus committed rGe051e3961562: common: Add cipher mode to compliance predicate. (authored by justus).
common: Add cipher mode to compliance predicate.
Jun 7 2017, 4:55 PM
justus committed rG21fc2508c979: common,gpg,sm: Initialize compliance module. (authored by justus).
common,gpg,sm: Initialize compliance module.
Jun 7 2017, 4:55 PM
justus committed rGf440cf73eab0: common,gpg: Move the compliance option printer. (authored by justus).
common,gpg: Move the compliance option printer.
Jun 7 2017, 4:55 PM
justus committed rG842d233d4084: common,gpg,sm: Move the compliance option parser. (authored by justus).
common,gpg,sm: Move the compliance option parser.
Jun 7 2017, 4:55 PM
justus committed rG027ce4ba37be: gpg: Improve compliance with CO_DE_VS. (authored by justus).
gpg: Improve compliance with CO_DE_VS.
Jun 7 2017, 4:55 PM
justus added a comment to T3191: Make sure only listed algorithms are used with --compliance=de-vs.

4.2.2 lists session keys for ciphers that are not allowed.

Jun 7 2017, 4:31 PM · gnupg (gpg22)
justus added a comment to T3196: Use symmetric ESK packet.

"werner (Werner Koch)" <noreply@dev.gnupg.org> writes:

Jun 7 2017, 3:42 PM
justus reopened T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME, a subtask of T3058: Implement GUI for compliance mode, as Open.
Jun 7 2017, 11:02 AM · kleopatra, gpgol
justus reopened T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME as "Open".

GnuPG needs to report compliance when decrypting symmetrically encrypted packet.

Jun 7 2017, 11:02 AM · g10code Sprint (KW 22), gpgme, gnupg
justus triaged T3110: Jenkins Improvements as Wishlist priority.
Jun 7 2017, 10:47 AM · g10code Sprint, CI
justus triaged T3133: Fix jenkins build system as Wishlist priority.
Jun 7 2017, 10:47 AM · g10code Sprint, CI
justus assigned T3124: Debian 8 BPO with TB 45 and enigmail still hijacking gpg to dkg.

this is not the place to report Debian bugs, nevertheless, I have assigned this to our resident Debian expert.

Jun 7 2017, 10:46 AM · Debian
justus assigned T3197: Missing free to aheinecke.
Jun 7 2017, 10:16 AM · gnupg (gpg22), Bug Report

Jun 6 2017

justus committed rG216f0804c145: common,g10: Fix typos. (authored by justus).
common,g10: Fix typos.
Jun 6 2017, 4:28 PM
justus triaged T3117: improve warnings when daemons are older than gpg as Wishlist priority.
Jun 6 2017, 12:47 PM · gnupg (gpg22)
justus triaged T3194: Export of keys fails (gets mangled) if stdout is redirected to a file on Windows as Normal priority.
Jun 6 2017, 12:42 PM · gnupg (gpg22), Windows 32, Bug Report
justus moved T3193: --symmetric --multifile from Backlog to Wishlist on the gnupg (gpg22) board.
Jun 6 2017, 12:39 PM · gnupg24, gnupg (gpg23), Feature Request
justus created T3196: Use symmetric ESK packet.
Jun 6 2017, 11:16 AM