Page MenuHome GnuPG
Feed All Stories

Aug 21 2017

Unknown Object (User) created T3360: Remove my account.
Aug 21 2017, 9:47 AM · dev.gnupg.org
gouttegd added a project to T3357: pinentry no longer floating: pinentry.
Aug 21 2017, 9:46 AM · pinentry, Bug Report
JochenSaalfeld added a comment to T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related).

- Contains an example *.mbox file. The Password to decrypt the text is "123".

Aug 21 2017, 9:45 AM · gpgol, Bug Report
gouttegd added a comment to T3357: pinentry no longer floating.

I suspect this is a duplicate of T3253, where the same behavior (non-floating pinentry dialog) was observed under both the i3 and the Awesome tiling window managers. This bug has been fixed in master and the fix will be part of the upcoming pinentry-1.1.0 release.

Aug 21 2017, 9:45 AM · pinentry, Bug Report
JochenSaalfeld created T3359: git.gnupg.org down in the S1 Public space.
Aug 21 2017, 9:41 AM
gniibe committed rC9e8f32241358: ecc: Add field specific computation methods. (authored by gniibe).
ecc: Add field specific computation methods.
Aug 21 2017, 8:13 AM
gniibe created T3358: Curve specific field computation routines.
Aug 21 2017, 7:29 AM · libgcrypt

Aug 20 2017

rcorre created T3357: pinentry no longer floating.
Aug 20 2017, 10:36 PM · pinentry, Bug Report
jukivili removed a member for libgcrypt: jukivili.
Aug 20 2017, 8:25 PM
jukivili removed a watcher for libgcrypt: jukivili.
Aug 20 2017, 8:25 PM

Aug 19 2017

ouroboros added a comment to T2748: ssh-agent emulation should provide the primary User ID of any keys offered via ssh.

I would also like this feature. I currently use a pair of subkeys (one for work one for personal projects) and it would be much easier if I could configure gpg-agent to append comments to the keys rather than displaying (none). Perhaps a flag could be added to sshcontrol which allows you to specify and arbitrary comment?

Aug 19 2017, 10:25 PM · gnupg, Feature Request

Aug 18 2017

marcus committed rK457d2f0c6a1f: Fix non-maintainer build. (authored by marcus).
Fix non-maintainer build.
Aug 18 2017, 8:16 PM
marcus committed rK982faa2c354a: Fix all compiler warnings. (authored by marcus).
Fix all compiler warnings.
Aug 18 2017, 8:16 PM
bernhard updated the task description for T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related).
Aug 18 2017, 2:49 PM · gpgol, Bug Report
bernhard renamed T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related) from GpgOL should decrypt base64 encrypted PGP/INLINE messages to GpgOL should decrypt OpenPGP NO-MIME mails that come with a superfluous base64 transfer encoding.
Aug 18 2017, 2:48 PM · gpgol, Bug Report
dkg created T3356: gpgme test suite failure in lang/qt/tests/t-config.cpp on mipsel.
Aug 18 2017, 2:07 PM · Too Old, gpgme, Bug Report
JochenSaalfeld updated subscribers of T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related).
Aug 18 2017, 1:34 PM · gpgol, Bug Report
JochenSaalfeld assigned T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related) to aheinecke.
Aug 18 2017, 1:33 PM · gpgol, Bug Report
JochenSaalfeld created T3355: GpgOL does not detect some OpenPGP NO-MIME mail body and attachments (multipart/related).
Aug 18 2017, 1:30 PM · gpgol, Bug Report
JochenSaalfeld committed rWd50579052a41: Adding 2017s Sponsors till Juli (authored by JochenSaalfeld).
Adding 2017s Sponsors till Juli
Aug 18 2017, 11:55 AM
dkg added a comment to T3354: gpgme only builds against two versions of python at once.

this is also https://bugs.debian.org/866555

Aug 18 2017, 6:31 AM · Python, gpgme, Bug Report
dkg created T3354: gpgme only builds against two versions of python at once.
Aug 18 2017, 4:42 AM · Python, gpgme, Bug Report
gniibe created T3353: Session env vars and environment variables for gpg.
Aug 18 2017, 3:49 AM · gnupg (gpg22), Documentation, Bug Report
dkg created T3352: python: Support parallel build in tests.
Aug 18 2017, 2:50 AM · gpgme, Bug Report

Aug 17 2017

marcus added a project to T3313: Gpgconf --apply-profile fails if scdaemon is not installed: gnupg.
Aug 17 2017, 4:29 PM · gnupg (gpg22)
marcus renamed T2919: fix gpgme/gpgsm pipe server session with use_descriptor_passing (was: mutt + gpgme problems with some Outlook S/MIME emails) from mutt + gpgme problems with some Outlook S/MIME emails to fix gpgme/gpgsm pipe server session with use_descriptor_passing (was: mutt + gpgme problems with some Outlook S/MIME emails).
Aug 17 2017, 3:06 PM · gpgme, Bug Report
marcus added a project to T3348: gpgsm: should default to --disable-crl-checks: gnupg.
Aug 17 2017, 3:03 PM · gpgme, gnupg, S/MIME
peterglen created D445: Libgcrypt examples.
Aug 17 2017, 4:55 AM · libgcrypt

Aug 16 2017

marcus closed T3137: Document API changes also in the GPGME manual as Resolved.

I guess for older releases it is less relevant to have very accurate version information. From now on this is more a regular maintenance task than a unit of work, so I am closing it.

Aug 16 2017, 11:16 PM · gpgme (gpgme 1.23.x), Documentation
marcus added a comment to T3137: Document API changes also in the GPGME manual.

Gave it a head-start.

Aug 16 2017, 11:13 PM · gpgme (gpgme 1.23.x), Documentation
marcus committed rMb9b08e46934e: doc: Add version information. (authored by marcus).
doc: Add version information.
Aug 16 2017, 11:13 PM
dkg added a comment to T3348: gpgsm: should default to --disable-crl-checks.

i think it's strictly worse, even when the certificates are "trusted" in sense (1) -- with OpenPGP keyserver lookups, at least it is the client who decides which keyserver to use, on what protocol, to look up the given issuer fingerprint.

Aug 16 2017, 10:33 PM · gpgme, gnupg, S/MIME
marcus moved T3137: Document API changes also in the GPGME manual from Backlog to QA for next release on the gpgme board.
Aug 16 2017, 5:29 PM · gpgme (gpgme 1.23.x), Documentation
marcus placed T3258: clean up note on bug reporting form up for grabs.
Aug 16 2017, 5:16 PM · gpgweb, dev.gnupg.org, Bug Report
marcus placed T3110: Jenkins Improvements up for grabs.
Aug 16 2017, 5:15 PM · g10code Sprint, CI
marcus renamed T3258: clean up note on bug reporting form from https://dev.gnupg.org/ -- clean up IMPORTANT note on bug reporting form to clean up note on bug reporting form.
Aug 16 2017, 5:15 PM · gpgweb, dev.gnupg.org, Bug Report
marcus changed the status of T3114: Integrate Jenkins into Phabricator, a subtask of T3110: Jenkins Improvements, from Resolved to Wontfix.
Aug 16 2017, 5:13 PM · g10code Sprint, CI
marcus changed the status of T3114: Integrate Jenkins into Phabricator from Resolved to Wontfix.
Aug 16 2017, 5:13 PM · g10code Sprint, CI
marcus closed T3114: Integrate Jenkins into Phabricator, a subtask of T3110: Jenkins Improvements, as Resolved.
Aug 16 2017, 5:11 PM · g10code Sprint, CI
marcus closed T3114: Integrate Jenkins into Phabricator as Resolved.

Without a committment to code review workflows, this is meaningless.

Aug 16 2017, 5:11 PM · g10code Sprint, CI
marcus added a comment to T2919: fix gpgme/gpgsm pipe server session with use_descriptor_passing (was: mutt + gpgme problems with some Outlook S/MIME emails).

This is probably broken since Werner enabled descriptor passing by default in 5090f6f24. The analysis in https://dev.gnupg.org/T2919#99901 is correct, but it's not enough to put the operational error in the right place. Also, the calls to _gpgme_wait_one have to be replaced by _gpgme_wait_one_ext. The change overall will be somewhat destabilizing.

Aug 16 2017, 4:50 PM · gpgme, Bug Report
marcus closed T3215: gpgme_op_import_keys() -- unclear documentation, problematic behavior as Resolved.
Aug 16 2017, 3:42 PM · gpgme, Bug Report
marcus committed rM0ee7f4f17828: doc: Clarify import keys operation further. (authored by marcus).
doc: Clarify import keys operation further.
Aug 16 2017, 3:42 PM
marcus closed T3112: Move Jenkins Master to Al-Kindi, a subtask of T3110: Jenkins Improvements, as Wontfix.
Aug 16 2017, 3:35 PM · g10code Sprint, CI
marcus closed T3112: Move Jenkins Master to Al-Kindi as Wontfix.

Won't fix in favor of decentralisation.

Aug 16 2017, 3:35 PM · g10code Sprint, CI
marcus triaged T3351: libgcrypt: t_secmem fails on system with large page size (ppc64) as Normal priority.
Aug 16 2017, 3:24 PM · libgcrypt, Bug Report
t8m added a comment to T3351: libgcrypt: t_secmem fails on system with large page size (ppc64).

proposed patch to fix it

Aug 16 2017, 3:20 PM · libgcrypt, Bug Report
t8m created T3351: libgcrypt: t_secmem fails on system with large page size (ppc64).
Aug 16 2017, 3:06 PM · libgcrypt, Bug Report
thomas closed T3342: Re-enable wiki.gnupg.org login with local passwords as Resolved.

I have enabled login again and added the following login hint:
"Login via your Roundup account on bugs.gnupg.org has been disabled due to the migration to Phabricator. We apologise for any inconvenience caused. If you have previously used your Roundup account in this wiki, you can request a new password using the link above."

Aug 16 2017, 2:38 PM · Documentation, Feature Request
bernhard added a comment to T3349: jabber.gnupg.org connection fails 2017-08-14.

Retested today: Works again. So I can confirm the resolution of this task.
Thanks @marcus !

Aug 16 2017, 9:08 AM · dev.gnupg.org
marcus committed rM3244d4daff89: gpgconf: Fix some warnings. (authored by marcus).
gpgconf: Fix some warnings.
Aug 16 2017, 1:52 AM
marcus awarded rBOOK2024ea6912a1: Add key creation chapter. a 100 token.
Aug 16 2017, 1:07 AM
marcus committed rM97a1abe72e73: gpgconf: Fix symbol export. (authored by marcus).
gpgconf: Fix symbol export.
Aug 16 2017, 1:02 AM

Aug 15 2017

neal committed rBOOK2024ea6912a1: Add key creation chapter. (authored by neal).
Add key creation chapter.
Aug 15 2017, 10:01 PM
guillem added a comment to T3350: gpgv should emit a status line with full issuer fingerprint, if it is present in the key..

As part of switching debsig-verify from using --list-packets to gpg with --list-keys --with-colons and gpgv, it would be helpful to eventually be able to get the fingerprint instead of the keyid. This is needed because debsig-verify uses the keyid to select which one of its policy files it has to load, to apply for the subsequent actual verification of the .deb package.

Aug 15 2017, 8:12 PM · gpgv, Feature Request
marcus committed rMfa3918598de3: NEWS: Add missing entry. (authored by marcus).
NEWS: Add missing entry.
Aug 15 2017, 8:00 PM
marcus closed T3018: Assuan: No obvious way to connect to gpg-agent with non-standard homedir as Resolved.
Aug 15 2017, 7:56 PM · gpgme (gpgme 1.23.x), Bug Report
marcus added a comment to T3018: Assuan: No obvious way to connect to gpg-agent with non-standard homedir.

Now you can do this:

Aug 15 2017, 7:56 PM · gpgme (gpgme 1.23.x), Bug Report
marcus committed rM9f24e6c9010e: gpgconf: Add access to --list-dirs for non-default engine. (authored by marcus).
gpgconf: Add access to --list-dirs for non-default engine.
Aug 15 2017, 7:53 PM
marcus added a comment to T3202: add support for illumos to our version of libtool.

I know exactly what you mean, but werner disagrees so that's not going to happen.

Aug 15 2017, 7:12 PM · Info Needed, gpgrt, Bug Report
marcus added a comment to D443: Add SHA384WithECDSA OID to ciphers.

The patch was accepted, not abandoned, but the phabricator review workflow doesn't make it easy to change the state without using the arc command line tool. The quickest way to close the issue without review is to claim it myself and "abandon" it. Sorry for the confusion.

Aug 15 2017, 7:11 PM
svenihoney added a comment to D443: Add SHA384WithECDSA OID to ciphers.

What was the reason for abandoning this?

Aug 15 2017, 7:07 PM
dkg created T3350: gpgv should emit a status line with full issuer fingerprint, if it is present in the key..
Aug 15 2017, 6:30 PM · gpgv, Feature Request
andy_js added a comment to T3202: add support for illumos to our version of libtool.

Forgive me. I was biting my tongue.

Aug 15 2017, 6:04 PM · Info Needed, gpgrt, Bug Report
marcus closed T3113: Integrate gnupg commit message style in arc as Wontfix.

No new tools.

Aug 15 2017, 5:59 PM · g10code Sprint, dev.gnupg.org
marcus closed T3113: Integrate gnupg commit message style in arc, a subtask of T3069: Implement gnupg commit message style, as Wontfix.
Aug 15 2017, 5:59 PM · g10code Sprint, dev.gnupg.org
marcus added a comment to T3348: gpgsm: should default to --disable-crl-checks.

My comment was only in response to this:

Aug 15 2017, 5:53 PM · gpgme, gnupg, S/MIME
marcus added a comment to T3215: gpgme_op_import_keys() -- unclear documentation, problematic behavior.

gpgme_data_t are first class objects with an API to create and destroy them, and some articulated rules how to use them (only one thread at a time). gpgme_key_t objects can not be created but only be returned with gpgme_op_keylist_next.

Aug 15 2017, 5:50 PM · gpgme, Bug Report
dkg added a comment to T3348: gpgsm: should default to --disable-crl-checks.

I see at least two different kinds of "trust" here.

Aug 15 2017, 5:50 PM · gpgme, gnupg, S/MIME
marcus placed T2011: gnupg should notify cancellation of its operation to gpg-agent to kill pinentry up for grabs.
Aug 15 2017, 5:45 PM · Bug Report, gpgagent
marcus closed T3182: gnupg 1.4 built with gcc 7.0.1 fails the tests on ARM as Resolved.

It's been a month since last release, no error reports so far.

Aug 15 2017, 5:44 PM · gnupg (gpg14), asm, Bug Report
marcus abandoned D443: Add SHA384WithECDSA OID to ciphers.
Aug 15 2017, 5:41 PM
marcus commandeered D443: Add SHA384WithECDSA OID to ciphers.
Aug 15 2017, 5:41 PM
marcus added a comment to T3348: gpgsm: should default to --disable-crl-checks.

If the certificate is signed by a trusted root CA, doesn't that mean that we at least trust the URLs in the certificate chain for CRL and OCSP access?

Aug 15 2017, 5:40 PM · gpgme, gnupg, S/MIME
marcus closed T3202: add support for illumos to our version of libtool as Wontfix.

No response.

Aug 15 2017, 5:36 PM · Info Needed, gpgrt, Bug Report
kai closed T3346: CMS parser test leaks memory as Resolved.

Fixed in a1d9b046aec8cedda16a9e24eb8d2ed021f68d5d

Aug 15 2017, 5:05 PM · libksba
kai committed rKa1d9b046aec8: Fix memory leaks in ksba_cms_identify and tests. (authored by kai).
Fix memory leaks in ksba_cms_identify and tests.
Aug 15 2017, 4:34 PM
marcus closed T3349: jabber.gnupg.org connection fails 2017-08-14 as Resolved.

The server was replaced due to failure. New IP addresses are: 109.235.43.70 and 2001:678:340::70. I updated the DNS entries, and they seem to have propagated (but your local cache may still refer to the old entries).

Aug 15 2017, 4:30 PM · dev.gnupg.org
marcus added a comment to T3349: jabber.gnupg.org connection fails 2017-08-14.

Techniker ist informiert.

Aug 15 2017, 3:58 PM · dev.gnupg.org
bernhard created T3349: jabber.gnupg.org connection fails 2017-08-14 in the S1 Public space.
Aug 15 2017, 3:55 PM · dev.gnupg.org
AquaL1te closed T3347: gpg-agent at startup in order that my Yubikey can be used for ssh as Invalid.
Aug 15 2017, 9:19 AM · Documentation, gnupg, Bug Report
AquaL1te added a comment to T3347: gpg-agent at startup in order that my Yubikey can be used for ssh.

Perfect! This works exactly as I wanted. I indeed use Fedora 26, adding this line below to my .bash_profile works perfectly with the Yubikey to find the gpg keys on it and use it for ssh.
export SSH_AUTH_SOCK=$XDG_RUNTIME_DIR/gnupg/S.gpg-agent.ssh

Aug 15 2017, 9:19 AM · Documentation, gnupg, Bug Report
dkg added a comment to T3348: gpgsm: should default to --disable-crl-checks.

Making matters worse, i note that some CRLs, like those issued by MIT's Lincoln Lab are quick and easy to fetch over the Internet directly, but hang or timeout when fetched via Tor.

Aug 15 2017, 1:38 AM · gpgme, gnupg, S/MIME
bremner added a comment to T3348: gpgsm: should default to --disable-crl-checks.

Debian Bug 842291 shows some performance impact of the CRL checks (as well as the potential for privacy problems).

Aug 15 2017, 1:29 AM · gpgme, gnupg, S/MIME
dkg added a comment to T3215: gpgme_op_import_keys() -- unclear documentation, problematic behavior.

It wasn't a natural thing to do gpgme_op_import because i already had my gpgme_key_t object, which i was using to display an index of available keys to the user.

Aug 15 2017, 1:03 AM · gpgme, Bug Report

Aug 14 2017

dkg created T3348: gpgsm: should default to --disable-crl-checks in the S1 Public space.
Aug 14 2017, 11:14 PM · gpgme, gnupg, S/MIME
dkg added a comment to T3347: gpg-agent at startup in order that my Yubikey can be used for ssh.

Please use the systemd unit files as shipped upstream. This allows the agent to be launched automatically whenever someone tries to use one of its sockets, but doesn't pre-emptively launch the agent until needed.

Aug 14 2017, 7:36 PM · Documentation, gnupg, Bug Report
kristianf added a comment to T3331: gpg: Address family not supported by protocol if kernel doesn't support ipv6.

If you don't have a TCP enabled OS, you can use configure --disable-dirmngr.

Aug 14 2017, 11:22 AM · gnupg (gpg22), dirmngr, Bug Report
justus assigned T3347: gpg-agent at startup in order that my Yubikey can be used for ssh to dkg.

Hi. You can start gpg-agent using gpgconf --launch gpg-agent. I'll delegate the systemd questions to Daniel.

Aug 14 2017, 11:19 AM · Documentation, gnupg, Bug Report
AquaL1te created T3347: gpg-agent at startup in order that my Yubikey can be used for ssh.
Aug 14 2017, 10:54 AM · Documentation, gnupg, Bug Report
marcus placed T1128: gpg should detect ambigious keys specifications up for grabs.
Aug 14 2017, 10:38 AM · Feature Request, Debian, gnupg
marcus placed T1395: Write an architecture chapter for GnuPG up for grabs.
Aug 14 2017, 10:37 AM · gnupg, Documentation, Feature Request
marcus added a parent task for T1395: Write an architecture chapter for GnuPG: Unknown Object (Maniphest Task).
Aug 14 2017, 10:37 AM · gnupg, Documentation, Feature Request
marcus placed T2245: pinentry on wrong monitor up for grabs.
Aug 14 2017, 10:37 AM · Stalled, Feature Request, pinentry
marcus placed T2812: TOFU very slow on Windows up for grabs.
Aug 14 2017, 10:36 AM · Stalled, Bug Report, gnupg, Windows 32, TOFU, Windows
marcus placed T2815: TOFU conflict not part of GpgME's sigsum up for grabs.
Aug 14 2017, 10:36 AM · Stalled, Bug Report, gnupg, TOFU
marcus placed T2859: TOFU not affected by Key deletion up for grabs.
Aug 14 2017, 10:35 AM · Stalled, Bug Report, gnupg
kai created T3346: CMS parser test leaks memory.
Aug 14 2017, 10:10 AM · libksba
aheinecke reassigned T3339: Add an encrypting filter to enigmail from aheinecke to kai.

IMO this would be the first step to have the options we need for EasyGPG.

Aug 14 2017, 9:43 AM · Enigmail
aheinecke reassigned T3338: Extending enigmail filter options from aheinecke to kai.

Kai, as you can see from


I did not get anything real done here. I started to add a filter line and then would have tried to add encryption similar to the decryptPermanently stuff but the current diff is basically nothing (and will error out because the keyring package is not properly imported)
As we need this for a Project I have to hand this task over to you as I don't know if / how much I can work in the next weeks.

Aug 14 2017, 9:43 AM · Enigmail