Page MenuHome GnuPG
Feed Advanced Search

Jul 5 2017

marcus added a comment to T2019: Order of magnitude degradation in performance in gpg2 cf gpg.

As the @neal branch has not been updated anymore, I wonder what the status of this report is. Do we have a canonical test case and a performance goal, or anything else that let's us evaluate this? @werner ?

Jul 5 2017, 1:53 PM · Stalled, Bug Report, gnupg
marcus closed T1944: Global changing of expiration date for mainkey and subkeys as Resolved.

Given that we have reduced the number of operations to at most 2 (down from unlimited), and it is unclear if and how to proceed on this, I am closing here.

Jul 5 2017, 12:50 AM · gnupg, Feature Request

Jul 4 2017

marcus closed T2682: Keys cannot be refreshed via "gpg2 --refresh-keys" as Resolved.
Jul 4 2017, 10:45 PM · Bug Report, gnupg
colan added a comment to T2682: Keys cannot be refreshed via "gpg2 --refresh-keys".

Fine by me, unless someone else is still running into this.

Jul 4 2017, 7:09 PM · Bug Report, gnupg
werner lowered the priority of T169: Add a way to generate keypairs from a passphrase from Normal to Low.

FWIW, OpenPGP's S2K and PKCS's PBKDF2 are very similar and don't make a difference except that we have calibration code for S2K in gpg-agent.

Jul 4 2017, 3:43 PM · gnupg, Feature Request
werner added a comment to T2682: Keys cannot be refreshed via "gpg2 --refresh-keys".

We have fixed a couple of bugs related to keyservers between 2.1.17 and the current .21.

Jul 4 2017, 10:45 AM · Bug Report, gnupg
werner lowered the priority of T2967: Allow to keep original timestamp on keysig updates from Normal to Low.
Jul 4 2017, 10:40 AM · gnupg, Feature Request

Jul 3 2017

justus added a comment to T2135: Keyring locking on Windows broken.

No I don't recall any such problems, sorry.

Jul 3 2017, 11:52 AM · Bug Report, gpg4win, Windows, gnupg, Windows 32
marcus closed T3243: Typo in --verify documentation: " ake" => "make" as Resolved.
Jul 3 2017, 11:04 AM · gnupg
marcus added a comment to T3243: Typo in --verify documentation: " ake" => "make".

Thanks, fixed in 7b045f539e5f67c937c18157c26fb3a767c1c7e6

Jul 3 2017, 11:04 AM · gnupg
420Dreamin added a comment to T3243: Typo in --verify documentation: " ake" => "make".
In T3243#99605, @jcross wrote:

Hi @420Dreamin - you just "fixed" the typo I was trying to demonstrate :/

Jul 3 2017, 1:58 AM · gnupg
420Dreamin added a comment to T3243: Typo in --verify documentation: " ake" => "make".

Sorry man. I didn't realize wht I was doing.

Jul 3 2017, 1:57 AM · gnupg
420Dreamin claimed T3243: Typo in --verify documentation: " ake" => "make".
Jul 3 2017, 1:50 AM · gnupg
jcross updated subscribers of T3243: Typo in --verify documentation: " ake" => "make".

Hi @420Dreamin - you just "fixed" the typo I was trying to demonstrate :/

Jul 3 2017, 1:48 AM · gnupg
420Dreamin updated the task description for T3243: Typo in --verify documentation: " ake" => "make".
Jul 3 2017, 1:46 AM · gnupg

Jul 2 2017

jcross created T3243: Typo in --verify documentation: " ake" => "make" in the S1 Public space.
Jul 2 2017, 11:33 PM · gnupg
marcus merged T1337: No mention of --default-cert-check-level in man into T2823: generate web-based manpage from latest release.
Jul 2 2017, 12:46 PM · Bug Report, gnupg
gouttegd added a comment to T2923: trust signature domain restrictions don't work.

For information, this issue was also discussed on both gnupg-user and gnupg-devel back in january 2017. I mention it here for reference.

Jul 2 2017, 12:34 AM · gnupg (gpg14), Bug Report

Jul 1 2017

marcus added a comment to T2143: Interactive passwd command doesn't work if passphrase-file is set.

Well, I closed it as invalid because werner asked for more info a year ago and there was no response (at least none that made it into the bug tracker). If there is still an issue, maybe you can describe it in more detail and reopen the ticket. Thanks!

Jul 1 2017, 10:23 PM · Info Needed, gnupg, Bug Report
sdaoden added a comment to T2143: Interactive passwd command doesn't work if passphrase-file is set.

Oh, this has been fixed? Sorry, i don't think i got any message from this, i have changed my e-mail address now.

Jul 1 2017, 9:59 PM · Info Needed, gnupg, Bug Report
marcus closed T2143: Interactive passwd command doesn't work if passphrase-file is set as Invalid.
Jul 1 2017, 3:22 PM · Info Needed, gnupg, Bug Report
marcus updated subscribers of T2135: Keyring locking on Windows broken.

@werner The backport to 2.0 didn't happen, I think. Is this still relevant. @justus Do you recall any more problems in the tests?

Jul 1 2017, 2:43 PM · Bug Report, gpg4win, Windows, gnupg, Windows 32
marcus added a comment to T2251: Tests not working if build folder path longer than 81 character.

Is this still an issue?

Jul 1 2017, 2:38 PM · Bug Report, gnupg
marcus closed T2231: gpgsm has --prefer-system-dirmngr, but system-wide dirmngr is deprecated as Resolved.

The passage has been removed from the dirmngr man page, and I marked the gpgsm option as obsolete.

Jul 1 2017, 2:35 PM · Documentation, Bug Report, gnupg
marcus closed T2148: dirmngr fails when started from gpg2 --homedir <something> as Resolved.

This works now, there have been many changes in how homedir is handled since then. For example 70a8584ec4389209762eb65bb77f20f7881577be and aab8a0b05292b0d06e3001a0b289224cb7156dbd, among many others.

Jul 1 2017, 2:13 PM · gnupg, Bug Report, dirmngr
marcus closed T1963: ldap keyserver communication error as Invalid.
Jul 1 2017, 1:54 PM · Fedora, gnupg (gpg14), Bug Report, gnupg
marcus closed T2039: CRL issuingDistributionPoint support as Wontfix.

Digicert TERENAPersonalCA3 doesn't use issuingDistributionPoint anymore. It's hard to survey CRLs that are actually in use, so I don't know if there are other important users, but the fact that nobody else reported such problems is an indication that it is not widely used among dirmngr users. Supporting this is a lot of work, because it makes validating certificates much more complicated, so this is unlikely to happen without strong motivation, so I am closing this here.

Jul 1 2017, 1:52 PM · gnupg, Feature Request, dirmngr
werner added a comment to T1396: Subkey expiring breaks other subkeys.

That's fine. The 2.0 branch will reach EOL in 6 months and we will
probably only do a last maintenance release. No need to backport this
fix, though.

Jul 1 2017, 12:19 PM · Too Old, Bug Report, gnupg

Jun 30 2017

marcus added a comment to T1396: Subkey expiring breaks other subkeys.

Btw, if you want to use the test script, you have to use "gpg2 --keyid-format short".

Jun 30 2017, 10:56 PM · Too Old, Bug Report, gnupg
marcus closed T1396: Subkey expiring breaks other subkeys as Wontfix.

I have verified that it works fine in 2.1.21. I did not test 2.0.30, but that's very old, just use the latest 2.1.x version. gpg 1.4 also only receives critical fixes.

Jun 30 2017, 10:55 PM · Too Old, Bug Report, gnupg
marcus closed T1735: No NEED_PASSPHRASE in batch mode as Invalid.

You should really use GPGME.

Jun 30 2017, 8:39 PM · Bug Report, gnupg
marcus closed T1952: gpg 1.4 interactions between --passphrase-fd=0 and --use-agent are confused/confusing as Wontfix.

I don't think we want any behavioral changes to gpg 1.4 anymore. And in gpg2 all of this is different (use-agent is mandatory, passphrase-fd only used with batch).

Jun 30 2017, 8:34 PM · Bug Report, gnupg, gpgagent
marcus closed T1759: gnupg 2.1 regression: cannot use OpenPGP card for signing as Invalid.

No feedback for 2 years.

Jun 30 2017, 8:27 PM · Info Needed, Bug Report, gnupg
marcus added a comment to T1948: unintuitive behavior when clearing or setting unsecure passphrase.

Still an issue in gpg 2.1.21.

Jun 30 2017, 8:25 PM · Bug Report, In Progress, gnupg
marcus closed T1721: "go back" option in CLI as Wontfix.

Most people should use a graphical user interface, and the console gui for key generation doesn't ask too many questions, while the key editor allows to go "back". So I am closing this suggestion.

Jun 30 2017, 6:31 PM · gnupg, Feature Request
marcus closed T1212: Test fdpassing fails in libassuan 2.0.0 on Solaris 9 as Resolved.

Seems to work fine on Solaris 11.3 and gcc 4.8.

Jun 30 2017, 5:43 PM · gnupg, Bug Report

Jun 29 2017

marcus added a comment to T1347: More informative error message for unusable keys.

Still no better message with gpg 2.1.21:

Jun 29 2017, 4:32 PM · gnupg, Feature Request
marcus assigned T1395: Write an architecture chapter for GnuPG to neal.

Maybe this can be done by Neal along with the book?

Jun 29 2017, 4:03 PM · gnupg, Feature Request, Documentation
marcus added a comment to T169: Add a way to generate keypairs from a passphrase.

The change werner mentioned previously is eaba8d58acda66f428870794115cb22c2590ec5e, but this is based on Elgamal. RFC4880 since then specified S2K, and better approaches are available, too (at least PBKDF2 is in libgcrypt). These could be used with HKDF for RSA and other asymmetric key generation methods.

Jun 29 2017, 4:01 PM · gnupg, Feature Request

Jun 28 2017

marcus closed T2383: letter case and other text corrections and improvements as Resolved.
Jun 28 2017, 5:28 PM · gnupg
marcus closed T1835: [doc] Another use case for --show-session-key as Resolved.

Fixed in 1209ea4e07b50d5cc4f9ffe6aef970ed3572fff0

Jun 28 2017, 5:13 PM · gnupg
marcus merged task T1561: configure: --with-libgpg-error-prefix doesn't impact includes into T1467: libksba's configure script reports "--with-libgpg-error-prefix", expects "--with-gpg-error-prefix".
Jun 28 2017, 5:11 PM · Feature Request, In Progress, gnupg
marcus closed T1601: Add info about gpg1 vs. gpg2 to the man page as Wontfix.

gnupg 1.4 is phased out and only receives important updates.

Jun 28 2017, 4:18 PM · Feature Request, gnupg
marcus lowered the priority of T1333: GPGSM rejects OCSP responder cert without keyUsage from Normal to Low.
Jun 28 2017, 4:05 PM · Bug Report, gnupg
twouters added a comment to T3228: gpgconf adds one unnecessary quote to string values.

Oh, my bad. Someone on IRC said it was a bug and I didn't look at any further details.

Jun 28 2017, 1:39 PM · gnupg, Bug Report
justus closed T3228: gpgconf adds one unnecessary quote to string values as Invalid.

No, that is the convention used by gpgconf. See https://gnupg.org/documentation/manuals/gnupg/Format-conventions.html#Format-conventions:

Jun 28 2017, 11:43 AM · gnupg, Bug Report
twouters created T3228: gpgconf adds one unnecessary quote to string values.
Jun 28 2017, 11:43 AM · gnupg, Bug Report
toomas created T3225: typo in agent/gpg-agent.c.
Jun 28 2017, 11:43 AM · patch, gnupg, Bug Report
werner claimed T3225: typo in agent/gpg-agent.c.
Jun 28 2017, 11:43 AM · patch, gnupg, Bug Report
werner closed T3225: typo in agent/gpg-agent.c as Resolved.

Fixed. Thanks.

Jun 28 2017, 11:43 AM · patch, gnupg, Bug Report

Jun 27 2017

justus closed T2381: Add more support for profiles in gpgconf as Resolved.

I'm going to close this task now. If we need more options to be configurable, it is easy to open another task for them.

Jun 27 2017, 11:40 AM · In Progress, gnupg (gpg22), gnupg, Feature Request
justus added a comment to T2826: Clock skew screws up expiration and usage of keys.

It fails the very same way:

Jun 27 2017, 11:38 AM · gnupg, Bug Report
marcus claimed T2011: gnupg should notify cancellation of its operation to gpg-agent to kill pinentry.
Jun 27 2017, 10:50 AM · Bug Report, gpgagent
marcus merged T3186: pinentry-curses, pinentry-tty both freak out at control+c into T2011: gnupg should notify cancellation of its operation to gpg-agent to kill pinentry.
Jun 27 2017, 10:49 AM · Bug Report, gpgagent
marcus merged task T3186: pinentry-curses, pinentry-tty both freak out at control+c into T2011: gnupg should notify cancellation of its operation to gpg-agent to kill pinentry.
Jun 27 2017, 10:49 AM · g10code Sprint (KW 26), gnupg, pinentry, Bug Report
marcus edited projects for T3186: pinentry-curses, pinentry-tty both freak out at control+c, added: g10code Sprint (KW 26); removed g10code Sprint (KW 25).
Jun 27 2017, 9:58 AM · g10code Sprint (KW 26), gnupg, pinentry, Bug Report

Jun 26 2017

wltjr added a comment to T2103: Improve the pinentry password quality indication.

I agree with @dkg, and something should be done to address this one way or another. It is pretty misleading.

Jun 26 2017, 8:46 PM · gnupg (gpg23), Feature Request
dkg added a comment to T2103: Improve the pinentry password quality indication.

fwiw, i also find this password quality indicator rather dubious.

Jun 26 2017, 7:07 PM · gnupg (gpg23), Feature Request
justus closed T2856: Can't ssh-add a key w/o a passphrase as Resolved.

Fixed in 273964798592cd479c111f47e8ce46d5b1999d6a.

Jun 26 2017, 2:57 PM · Debian, Bug Report, gnupg, ssh

Jun 23 2017

werner added a comment to T2423: configure: error: Sorry, the current implemenation requires mmap. due to empty CFLAGS (missing -fPIC).

I can't remember either. We should swicth back to mailing lists for such things.

Jun 23 2017, 5:26 PM · gnupg (gpg22), Bug Report, gnupg
jcross added a comment to T2289: UI says “Secret key is available.” in gpg when it is not.

Any updates / thoughts on how this might be fixed?

Jun 23 2017, 5:18 PM · Bug Report, gnupg, gnupg (gpg20), gnupg (gpg14)
werner added a comment to T2826: Clock skew screws up expiration and usage of keys.

ping

Jun 23 2017, 5:17 PM · gnupg, Bug Report
werner raised the priority of T2856: Can't ssh-add a key w/o a passphrase from Normal to High.

Well, can you then please fix it?

Jun 23 2017, 5:14 PM · Debian, Bug Report, gnupg, ssh
werner added a comment to T2968: gpg --search: Connection closed in DNS.

Any update on this?

Jun 23 2017, 5:11 PM · Info Needed, gnupg (gpg22), Bug Report, Debian, Keyserver, dirmngr
werner added a project to T3030: Test failure: test using user's keyring instead of fresh keyring?: Info Needed.
Jun 23 2017, 5:09 PM · Info Needed, Bug Report, gnupg
werner closed T2286: gpg-agent not working on AIX 6.1 TL09 as Resolved.
Jun 23 2017, 4:29 PM · gnupg, Bug Report
werner closed T2928: stop fetching PTR records entirely as Resolved.
Jun 23 2017, 4:22 PM · Debian, Bug Report, gnupg, dirmngr
werner closed T1714: parse_key doesn't check for EOF when listing packets as Resolved.

We now have a GPGME feature to list packets:

Jun 23 2017, 4:21 PM · gnupg, Bug Report
werner closed T1448: gpgconf lists options which break gpg1 when gpg2 is also installed as Resolved.

Solution has been given: Use "gpg.conf-1" for gpg 1.4

Jun 23 2017, 4:10 PM · Not A Bug, Bug Report, gnupg
werner closed T928: Add runtime check for SE-linux as Wontfix.
Jun 23 2017, 4:02 PM · Info Needed, gnupg, Feature Request

Jun 22 2017

marcus closed T1776: Fix deprecation warning about AM_PROG_MKDIR_P as Resolved.
Jun 22 2017, 9:05 PM · patch, gnupg, gnupg (gpg21)
marcus closed T1789: build-aux/missing is too old as Resolved.
Jun 22 2017, 9:02 PM · gnupg
marcus closed T2755: translation to portuguese as Resolved.
Jun 22 2017, 5:35 PM · Bug Report, gnupg
marcus closed T1480: [patch] get rid of old ERR return values as Resolved.

I don't know if this ever landed. If not, please reopen. We now have a bug tracker that can do nice patch management, too :)

Jun 22 2017, 5:30 PM · Too Old, gnupg
marcus added a comment to T2286: gpg-agent not working on AIX 6.1 TL09.

@werner Can we close this here?

Jun 22 2017, 5:28 PM · gnupg, Bug Report
marcus closed T2149: Use termcolors for gpg2 as Wontfix.
Jun 22 2017, 5:22 PM · gnupg, Feature Request
marcus closed T1301: file-encryption does not work when keyrings are stored on volumes that are made offline available as Invalid.

Thanks for the fast response!

Jun 22 2017, 5:13 PM · gpg4win, Bug Report, gnupg
bkrbecek added a comment to T1301: file-encryption does not work when keyrings are stored on volumes that are made offline available.

we don't use GPG4Win anymore ... so, honestly I don't know - if you want I can verify that. Or you simply close the topic ...

Jun 22 2017, 5:12 PM · gpg4win, Bug Report, gnupg
thomas added a comment to T1291: signatures to OpenPGP keys no longer expire by default if the signed key expires.
  • marcus (Marcus Brinkmann) <noreply@dev.gnupg.org> [20170622 16:41]:
So, the default change 7y ago and the world didn't end. Closing this.
Jun 22 2017, 4:52 PM · gnupg, Feature Request, OpenPGP
marcus closed T1490: inconsistant bytecount for output files as Invalid.
Jun 22 2017, 4:50 PM · gnupg, gnupg (gpg14)
marcus added a comment to T1306: gpg asks for one password, tries multiple keys with anonymous recipient.

@werner What's the status here?

Jun 22 2017, 4:46 PM · Feature Request, gnupg
marcus added a comment to T1301: file-encryption does not work when keyrings are stored on volumes that are made offline available.

Is this still an issue?

Jun 22 2017, 4:44 PM · gpg4win, Bug Report, gnupg
marcus closed T1291: signatures to OpenPGP keys no longer expire by default if the signed key expires as Wontfix.

So, the default change 7y ago and the world didn't end. Closing this.

Jun 22 2017, 4:41 PM · gnupg, Feature Request, OpenPGP
marcus added a comment to T1129: Should cope better with read-only keyrings.

@werner do you have any updates on this?

Jun 22 2017, 4:35 PM · Stalled, gnupg, Debian, Feature Request

Jun 21 2017

justus claimed T1537: gpgv does not handle expired or revoked keys.
Jun 21 2017, 12:18 PM · Feature Request, gnupg

Jun 20 2017

marcus added a comment to T3186: pinentry-curses, pinentry-tty both freak out at control+c.

By the way, when terminating pinentry with "kill -TERM ...", it shuts down correctly, while CTRL-C show "gpg: signal Interrupt caught ... exiting" and a corrupt screen layout that is reset when pressing RETURN, further confirming the above diagnosis.

Jun 20 2017, 5:26 PM · g10code Sprint (KW 26), gnupg, pinentry, Bug Report
marcus added a project to T3186: pinentry-curses, pinentry-tty both freak out at control+c: gnupg.

The problem seems to be that the CTRL-C is sent to gpg, terminating it, but pinentry keeps running and interfers with the terminal. With "ps -j" we can verify that pinentry runs in the process group and session of gpg-agent, while gpg runs in its own process group within the shell session. So, the signal rightly goes to gpg.

Jun 20 2017, 5:23 PM · g10code Sprint (KW 26), gnupg, pinentry, Bug Report

Jun 14 2017

marcus added a comment to T464: Win32 console: non-ASCII file names output incorrectly.

We can do this with estream now.

Jun 14 2017, 6:47 PM · Stalled, Bug Report, gnupg

Jun 13 2017

justus removed a project from T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place: gnupg (gpg22).
Jun 13 2017, 12:18 PM · gnupg (gpg22), Bug Report

Jun 8 2017

justus closed T3138: Help: "Error- key importing failed" - "gpg: starting migration from earlier GnuPG versions" ? as Invalid.

Hello. Please note that this is a bug tracker and not a support forum. Nevertheless, let's investigate.

Jun 8 2017, 3:07 PM · Enigmail, Ubuntu, gnupg
justus closed T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME as Resolved.
Jun 8 2017, 2:24 PM · g10code Sprint (KW 22), gpgme, gnupg

Jun 7 2017

justus reopened T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME as "Open".

GnuPG needs to report compliance when decrypting symmetrically encrypted packet.

Jun 7 2017, 11:02 AM · g10code Sprint (KW 22), gpgme, gnupg

Jun 5 2017

gniibe added a subtask for T1983: gpg2 prefers missing secret key to available key on card: T3192: gpg returns with non-zero exit status after successful run when using disable-scdaemon.
Jun 5 2017, 3:44 AM · Bug Report, gnupg

Jun 2 2017

werner added a comment to T3027: gpg-agent crash on macOS Sierra triggerd by ssh.

I released libgcrypt 1.7.7
and nPth 1.6

Jun 2 2017, 10:52 AM · Bug Report, gpgagent, gnupg
gniibe added a comment to T3027: gpg-agent crash on macOS Sierra triggerd by ssh.

libgcrypt secmem fix is not that in hurry, I think. nPTh bug for macOS sounds more severe.

Jun 2 2017, 12:37 AM · Bug Report, gpgagent, gnupg

Jun 1 2017

werner added a comment to T3027: gpg-agent crash on macOS Sierra triggerd by ssh.

So, should we do a new libgcrypt release RSN?
There is another bug with solution also pending and it might not be too late for Squeeze if we hurry.

Jun 1 2017, 2:47 PM · Bug Report, gpgagent, gnupg
justus closed T3059: Make information that a verifyresult / decrypt result was compliant to a compliance mode available through GPGME as Resolved.

Implemented in gpg, gpgsm, and gpgme with all bindings.

Jun 1 2017, 2:19 PM · g10code Sprint (KW 22), gpgme, gnupg
gniibe added a comment to T3027: gpg-agent crash on macOS Sierra triggerd by ssh.

I managed to replicate this issue by preparing artificial nPth on x86 GNU/Linux.

Jun 1 2017, 2:16 PM · Bug Report, gpgagent, gnupg
crosser added a comment to T2440: scdaemon grabs card exclusively; it'd be nice if it didn't.

@gniibe , I was happily running scdaemon 2.1.21-beta73 for more than a month and it properly relinquished the card every time. However, a few days ago it got hold of the card and would not let go (or at least, other users of the card got "sharing violation" error from pcscd). I collected some debugging information:

Jun 1 2017, 9:30 AM · scd, gnupg, Feature Request
gniibe added a project to T3190: Recursive call of pinentry: gnupg.
Jun 1 2017, 6:17 AM · gnupg (gpg22)