Page MenuHome GnuPG
Feed Advanced Search

Oct 20 2017

werner edited projects for T3299: scd: support key algorithm attribute change UI, added: gnupg (gpg23); removed gnupg (gpg21).

We can later decide whether to backport this to 2.2

Oct 20 2017, 1:38 PM · gnupg (gpg23)
werner edited projects for T3300: scd: Support multiple readers by PC/SC driver, added: gnupg (gpg23); removed gnupg (gpg21).
Oct 20 2017, 1:36 PM · Restricted Project, gnupg (gpg23), scd

Sep 28 2017

gniibe added a comment to T3429: defer use of new signing subkeys.

For workaround (master branch with rG0a7661129499), moving the private key file to *.key.bak can do that.

Sep 28 2017, 12:48 AM · gnupg24, gnupg (gpg23), Feature Request

Sep 27 2017

werner triaged T3429: defer use of new signing subkeys as Normal priority.
Sep 27 2017, 10:06 AM · gnupg24, gnupg (gpg23), Feature Request

Sep 26 2017

dkg created T3429: defer use of new signing subkeys.
Sep 26 2017, 10:15 PM · gnupg24, gnupg (gpg23), Feature Request

Sep 21 2017

werner edited projects for T2923: trust signature domain restrictions don't work, added: gnupg (gpg23); removed gnupg (gpg21).
Sep 21 2017, 3:49 PM · gnupg (gpg14), Bug Report

Sep 19 2017

werner triaged T3415: GnuPG should refuse to encrypt using 64-bit block ciphers by default as High priority.
Sep 19 2017, 11:24 PM · gnupg (gpg23), Bug Report
werner edited projects for T3415: GnuPG should refuse to encrypt using 64-bit block ciphers by default, added: gnupg (gpg23); removed gnupg (gpg22).

But not for 2.2

Sep 19 2017, 11:21 PM · gnupg (gpg23), Bug Report

Sep 18 2017

werner edited projects for T2912: command line keytocard, added: gnupg (gpg23); removed gnupg (gpg22), gnupg.
Sep 18 2017, 4:30 PM · gnupg (gpg23), Feature Request
werner edited projects for T3305: GPGSM should support default-new-key-algo like GnuPG, added: gnupg (gpg23); removed gnupg (gpg22).
Sep 18 2017, 4:28 PM · gnupg24, gnupg (gpg23), S/MIME

Sep 12 2017

dkg added a comment to T3398: fingerprint-based import screener is no defense against malice.

I've changed the text of this report from "filter" to "screener" to match the preferred terminology. thanks for the clarification.

Sep 12 2017, 2:16 PM · gnupg24, gnupg (gpg23), Feature Request
dkg renamed T3398: fingerprint-based import screener is no defense against malice from fingerprint-based import filters are no defense against malice to fingerprint-based import screener is no defense against malice.
Sep 12 2017, 2:13 PM · gnupg24, gnupg (gpg23), Feature Request
werner triaged T3398: fingerprint-based import screener is no defense against malice as Normal priority.
Sep 12 2017, 9:49 AM · gnupg24, gnupg (gpg23), Feature Request
werner edited projects for T3398: fingerprint-based import screener is no defense against malice, added: Feature Request, gnupg (gpg23); removed gnupg (gpg22), Bug Report.

I still consider the import screener (the term filter is used in a different way now) a big mess. Using the import feature to maintain the idea of a curated keyring is a bad idea because gpg has not been designed with this in mind. We spent so much time on this screener already and problems pop up again and again.

Sep 12 2017, 9:44 AM · gnupg24, gnupg (gpg23), Feature Request
werner triaged T3389: canonical OpenPGP certificate export as Normal priority.
Sep 12 2017, 9:29 AM · gnupg, Feature Request

Sep 8 2017

dkg added a comment to T3389: canonical OpenPGP certificate export.

I am not proposing changing the order of the *hashed* subpackets in a signature. I'm proposing removing/changing/canonicalizing the *unhashed* subpackets in a signature. Sorry if i didn't make that clear enough in the initial message.

Sep 8 2017, 4:22 PM · gnupg, Feature Request
werner added a comment to T3389: canonical OpenPGP certificate export.

But wait. Does my idea really help with comparing? I doubt it because a signature also includes a date and other variable stuff and thus they are already binary identical or it is a different signature.

Sep 8 2017, 11:38 AM · gnupg, Feature Request
werner added a comment to T3389: canonical OpenPGP certificate export.

Right we can't change the order of signature subpackets after they have been created. Given that we create subpackets by directly appending them to a memory buffer instead of keeping a list of subpackets to create, the least invasive method would be a function to shuffle that memory buffer right before the signature is computed.

Sep 8 2017, 11:32 AM · gnupg, Feature Request
dkg added a comment to T3389: canonical OpenPGP certificate export.

I thoroughly agree that this is not required by the specs.

Sep 8 2017, 8:30 AM · gnupg, Feature Request
werner added a comment to T3389: canonical OpenPGP certificate export.

That is not required by the specs. Another way is to provide a tool to compare keys. That seems to be easier to me. Also consider the cases that there are new new packets or signature subpackets with unknown properties to the current implementations. What about different encodings in signed key material?

Sep 8 2017, 7:56 AM · gnupg, Feature Request

Sep 7 2017

dkg created T3389: canonical OpenPGP certificate export.
Sep 7 2017, 1:12 AM · gnupg, Feature Request

Aug 7 2017

werner edited projects for T2103: Improve the pinentry password quality indication, added: gnupg (gpg23); removed gnupg.
Aug 7 2017, 9:55 AM · gnupg (gpg23), Feature Request

Jul 31 2017

werner edited projects for T3193: --symmetric --multifile, added: gnupg (gpg23); removed gnupg (gpg22).
Jul 31 2017, 10:57 AM · gnupg24, gnupg (gpg23), Feature Request

Jul 13 2017

marcus edited projects for T2186: --encrypt-to ambiguous with a expired and revoked key, added: gnupg (gpg23); removed gnupg.
Jul 13 2017, 4:17 PM · gnupg24, Feature Request

May 3 2017

justus placed T2290: Allow gpgv2 to use armored GPG keys as keyring file with trusted keys up for grabs.
May 3 2017, 10:34 AM · gnupg24, Feature Request

Mar 30 2017

admin created gnupg (gpg23).
Mar 30 2017, 6:42 PM

Mar 6 2017

werner added projects to T2987: Remove the socket redirect feature: gnupg (gpg23), Feature Request, gnupg.
Mar 6 2017, 12:21 PM · gnupg24, Feature Request, gnupg (gpg23)

Feb 15 2017

werner added a project to T2958: Extend --unwrap to also remove a compression layer.: gnupg (gpg23).
Feb 15 2017, 9:04 PM · gnupg24, Feature Request, gnupg (gpg23)

Jan 6 2017

werner added a project to T2907: make DNS look ups more parallel: gnupg (gpg23).
Jan 6 2017, 7:20 PM · Feature Request, gnupg

Dec 9 2016

dkg added a comment to T2862: support session key extraction and overriding for gpgsm.

This would emit the "content-encryption key", as specified in
https://tools.ietf.org/html/rfc5652#section-6.3

Dec 9 2016, 5:18 AM · gnupg24, Feature Request, gnupg (gpg23)

Dec 5 2016

dkg added projects to T2862: support session key extraction and overriding for gpgsm: gnupg (gpg23), Feature Request, gnupg.
Dec 5 2016, 7:38 PM · gnupg24, Feature Request, gnupg (gpg23)

Dec 1 2016

werner added a project to T2836: dirmngr: wakes up periodically: gnupg.
Dec 1 2016, 10:39 AM · gnupg, gnupg (gpg23), Bug Report, dirmngr

Nov 29 2016

werner added a project to T2836: dirmngr: wakes up periodically: gnupg (gpg23).
Nov 29 2016, 2:56 PM · gnupg, gnupg (gpg23), Bug Report, dirmngr

Nov 28 2016

werner added a project to T2850: auto-key-locate is annoying: gnupg (gpg23).
Nov 28 2016, 10:26 AM · gnupg (gpg23), gnupg, Feature Request

Sep 28 2016

werner removed a project from T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface): gnupg (gpg21).
Sep 28 2016, 9:55 AM · gnupg (gpg23), gnupg, Debian, Feature Request
werner removed Version on T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface).
Sep 28 2016, 9:55 AM · gnupg (gpg23), gnupg, Debian, Feature Request
werner added a project to T1089: Please store requests in a cache to avoid sending out duplicate requests (mailto: interface): gnupg (gpg23).
Sep 28 2016, 9:55 AM · gnupg (gpg23), gnupg, Debian, Feature Request

Apr 7 2016

justus added a project to T2290: Allow gpgv2 to use armored GPG keys as keyring file with trusted keys: gnupg (gpg23).
Apr 7 2016, 11:43 AM · gnupg24, Feature Request
justus removed a project from T2290: Allow gpgv2 to use armored GPG keys as keyring file with trusted keys: Won't Fix.
Apr 7 2016, 11:43 AM · gnupg24, Feature Request