Page MenuHome GnuPG
Feed All Stories

Nov 10 2017

aheinecke committed rOc3780cfaaf31: Improve debug output in parsecontroller (authored by aheinecke).
Improve debug output in parsecontroller
Nov 10 2017, 7:25 PM
aheinecke committed rO1815757181ff: Remove obsolete info from README (authored by aheinecke).
Remove obsolete info from README
Nov 10 2017, 7:25 PM
aheinecke changed the status of T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL from Open to Testing.
  1. Mails encrypted with S/MIME are stored with "No Data" in the sent EMail folder, but arrive properly at the recipients (you will recieve a readable copy, if you add yourself to the list of recipients). This Issue breaks the GpgOL Plugin after some time which is leading to the described Problem.
Nov 10 2017, 6:04 PM · gpg4win, gpgol, Bug Report
aheinecke changed the status of T3494: S/MIME Reversion broken after disabling S/MIME Support from Open to Testing.

Jochen can you please confirm that this works reliable for you too?

Nov 10 2017, 6:01 PM · gpg4win, gpgol
aheinecke created T3494: S/MIME Reversion broken after disabling S/MIME Support.
Nov 10 2017, 4:59 PM · gpg4win, gpgol
aheinecke triaged T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL as Unbreak Now! priority.

This indeed is a mixup of the protocol detection and likely a regression from a fix for exchange support. (On Exchange emails from exchange to exchange look the same as sent mails as both don't go through the MIME conversion)

Nov 10 2017, 4:07 PM · gpg4win, gpgol, Bug Report
werner added a comment to T3434: Mark Vista as unsupported during Gpg4win installation.

On Fri, 10 Nov 2017 13:17, noreply@dev.gnupg.org said:

Nov 10 2017, 4:04 PM · gpg4win, Bug Report
werner committed rG877e3073d731: Do not use C99 feature. (authored by Dario Niedermann <dario@darioniedermann.it>).
Do not use C99 feature.
Nov 10 2017, 3:52 PM
aheinecke committed rWdfaaae781616: Disable Kleo and Qt for < Win7 (authored by aheinecke).
Disable Kleo and Qt for < Win7
Nov 10 2017, 3:42 PM
aheinecke added a reverting change for rW5e0aec3be662: Update message during install, that Windows Vista is out of support: rW21b0b6aeb2c0: Revert Vista warning.
Nov 10 2017, 3:42 PM
aheinecke committed rW21b0b6aeb2c0: Revert Vista warning (authored by aheinecke).
Revert Vista warning
Nov 10 2017, 3:42 PM
aheinecke committed rW181b76fa0186: po: Remove strange creation date line (authored by aheinecke).
po: Remove strange creation date line
Nov 10 2017, 3:42 PM
bernhard reassigned T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL from bernhard to aheinecke.
Nov 10 2017, 3:12 PM · gpg4win, gpgol, Bug Report
aheinecke reopened T3441: GpgOL is displayed in Menu Ribbon, but doesn't work as intended as "Open".

This error looks like an element might be referenced that is not available in Outlook 2010. In that case the problem should be reproducible for users that have Developer Options -> Show Add-In Errors enabled.

< Here is the option in Windows

Nov 10 2017, 1:40 PM · gpgol, Bug Report
aheinecke reopened T3441: GpgOL is displayed in Menu Ribbon, but doesn't work as intended, a subtask of T3442: S/MIME - Encrypt Option produces broken Mails in Sent Folder and leads to crash of GpgOL, as Open.
Nov 10 2017, 1:40 PM · gpg4win, gpgol, Bug Report
aheinecke added a comment to T3434: Mark Vista as unsupported during Gpg4win installation.

Fwiw I don't want to patch KDE Librarys to work with older Qt Versions and don't want to patch Qt to support older Windows Versions. I think greying out is a good solution.

Nov 10 2017, 1:17 PM · gpg4win, Bug Report
aheinecke closed T3425: Gpg4win support for Windows Vista and XP for the Qt5 relevant parts (pinentry-qt and kleopatra) as Resolved.

Duplicated problem. Solution for the installer is described in: T3434

Nov 10 2017, 1:15 PM · Windows, Bug Report
aheinecke reopened T3434: Mark Vista as unsupported during Gpg4win installation as "Open".

Indeed the notes for QT 5.9 do not anymore show Vista as supported. Stupid decision if you ask me.

In light of this I would suggest to tweak the installer to grey out QT applications for all platforms older than Windows 7. We also need to make pinentry-gtk the default in this case. Of course there should also be notes in the docs about these restrictions. And that should be done immediately.

Nov 10 2017, 1:15 PM · gpg4win, Bug Report
werner added a comment to T3493: Timestamp.

@aa: From the mail address associated with @t62q7_aa I assume that this is an alias of your. If that is really the case please delete this alias and do not create another one. That would not be acceptable use.

Nov 10 2017, 8:14 AM · Feature Request
aa added a comment to T3493: Timestamp.

if you're do not have an infinite time, at CERN we're about experimenting stuff at plank scale ...

Nov 10 2017, 2:43 AM · Feature Request
aa added a comment to T3493: Timestamp.

do you have infinite time, just asking ...

Nov 10 2017, 2:38 AM · Feature Request
gniibe closed T3493: Timestamp as Invalid.

This is not an issue of GnuPG. Sorry.

Nov 10 2017, 2:27 AM · Feature Request
aa added a comment to T3493: Timestamp.
Nov 10 2017, 2:07 AM · Feature Request
t62q7_aa created T3493: Timestamp.
Nov 10 2017, 12:06 AM · Feature Request

Nov 9 2017

jbtule added a comment to T3378: gpg-agent.exe hanging after left to idle for a while.

Both my coworker and I have the same issue. We just started using gpg for git commit signing. Works the first time. Then sometime later, no window pops up and will hang git indefinitely because it's waiting on the agent. Kill the agent and gpg process let git error out. try again, gpg-agent window prompting for password shows up and works.

Nov 9 2017, 6:47 PM · Windows, libassuan, gpgagent, Bug Report
werner created T3492: The Recent Commit list does not show the used branch.
Nov 9 2017, 8:49 AM · dev.gnupg.org
werner added a comment to T2923: trust signature domain restrictions don't work.

It might be easier to include a regexp implementation in GnUPG proper. This way we have a well defined behaviour and it will work also on Windows. The gpg-check-pattern tool might slightly change its behaviour, though.

Nov 9 2017, 8:44 AM · gnupg (gpg14), Bug Report
werner added a comment to T3491: FIPS-enabled libgcrypt traps gnome-keyring daemon in an infinite loop.

Right, we can't do anything in Libgcrypt except for adding a way to return the open fds. This is the usual problem with libraries and the required closing of fds before an exec. Anyway the FIPS mode is questionable because it has not been adjusted for many years and does not take account newer requirements.

Nov 9 2017, 8:37 AM · libgcrypt
gniibe merged T2284: tsign behavior does not achieve what dkg says it should into T2923: trust signature domain restrictions don't work.
Nov 9 2017, 7:44 AM · gnupg (gpg14), Bug Report
gniibe merged task T2284: tsign behavior does not achieve what dkg says it should into T2923: trust signature domain restrictions don't work.
Nov 9 2017, 7:44 AM · Bug Report, gnupg
gniibe reopened T2923: trust signature domain restrictions don't work as "Open".
Nov 9 2017, 7:44 AM · gnupg (gpg14), Bug Report
gniibe added a comment to T2923: trust signature domain restrictions don't work.

No, I was not accurate. EXAMPLE.COM works, while example.com doesn't work.

Nov 9 2017, 7:43 AM · gnupg (gpg14), Bug Report
gniibe merged task T2923: trust signature domain restrictions don't work into T2284: tsign behavior does not achieve what dkg says it should.
Nov 9 2017, 7:41 AM · gnupg (gpg14), Bug Report
gniibe merged T2923: trust signature domain restrictions don't work into T2284: tsign behavior does not achieve what dkg says it should.
Nov 9 2017, 7:41 AM · Bug Report, gnupg
gniibe added a comment to T2284: tsign behavior does not achieve what dkg says it should.

I confirmed this is same bug in T2923: trust signature domain restrictions don't work, I am closing this one as duplicate.

Nov 9 2017, 7:41 AM · Bug Report, gnupg
gniibe committed rGccf3ba92087e: g10: Fix regexp sanitization. (authored by gniibe).
g10: Fix regexp sanitization.
Nov 9 2017, 7:39 AM
gniibe added a comment to T2923: trust signature domain restrictions don't work.

Henry Spencer wrote three implementations (old, BSD, and Tcl): https://garyhouston.github.io/regex/
Indeed, for the one in old library and BSD library, \ + CHAR means that single CHAR.
For one in Tcl library, \s, \S, \w, \W is supported (just like GNU), and \d, \D (digit) is also supported.

Nov 9 2017, 5:40 AM · gnupg (gpg14), Bug Report
gniibe added a comment to T3223: gcry_mpi_ec_mul with Montgomery curves produces segfault.

ECDH on Curve25519 is fully supported in libgcrypt. You can see GnuPG supports ECDH on Curve25519.
Lower layer routines (point addition and point duplication) are not implemented, though.
That's because ECDH only requires point multiplication and it is better to implement point multiplication by Montgomery Ladder for Curve25519.

Nov 9 2017, 3:16 AM · libgcrypt, Bug Report
gniibe committed rCda127f7505ff: Fix secmem test for machine with larger page. (authored by gniibe).
Fix secmem test for machine with larger page.
Nov 9 2017, 3:04 AM
gniibe committed rC621f5c4e8373: Fix secmem test for machine with larger page. (authored by gniibe).
Fix secmem test for machine with larger page.
Nov 9 2017, 3:04 AM
gniibe changed the status of T3351: libgcrypt: t_secmem fails on system with large page size (ppc64) from Open to Testing.

Fixed both for master and 1.8 branch.

Nov 9 2017, 3:03 AM · libgcrypt, Bug Report
gniibe claimed T3351: libgcrypt: t_secmem fails on system with large page size (ppc64).
Nov 9 2017, 3:01 AM · libgcrypt, Bug Report
gniibe merged T3375: t-secmem test failure on ppc64le / musl c-library into T3351: libgcrypt: t_secmem fails on system with large page size (ppc64).
Nov 9 2017, 3:00 AM · libgcrypt, Bug Report
gniibe merged task T3375: t-secmem test failure on ppc64le / musl c-library into T3351: libgcrypt: t_secmem fails on system with large page size (ppc64).
Nov 9 2017, 3:00 AM · libgcrypt, Bug Report

Nov 8 2017

civ created T3491: FIPS-enabled libgcrypt traps gnome-keyring daemon in an infinite loop.
Nov 8 2017, 10:17 PM · libgcrypt
werner triaged T3488: support specialized numeric9x4 format for symmetric passphrase as Normal priority.
Nov 8 2017, 7:01 PM · Feature Request
werner added a comment to T3488: support specialized numeric9x4 format for symmetric passphrase.

Please take discussions to the mailing list. A bug tracker is not a good place for it because only a few will see that.

Nov 8 2017, 7:01 PM · Feature Request
werner committed rD4bb81e5ae794: tools: Add descriptions to directory listings. (authored by werner).
tools: Add descriptions to directory listings.
Nov 8 2017, 6:41 PM
dkg committed rG0471ff9d3bf8: assuan: Reorganize waiting for socket. (authored by dkg).
assuan: Reorganize waiting for socket.
Nov 8 2017, 5:56 PM
dkg committed rG149041b0b917: assuan: Use exponential decay for first 1s of spinlock. (authored by dkg).
assuan: Use exponential decay for first 1s of spinlock.
Nov 8 2017, 5:56 PM
dkg added a comment to T3490: "gpgconf --launch gpg-agent" should not take a full second if the agent isn't already started.

OK, i've pushed 0471ff9d3bf8d6b9a359f3c426d70d0935066907 and 149041b0b917f4298239fe18b5ebd5ead71584a6 to branch T3490-proposal1. It cuts GnuPG's own simple test suite down from about 3 minutes to 1.5 minutes for me. I haven't tested the speedup for the full test suite yet.

Nov 8 2017, 5:48 PM · gnupg (gpg22)
dkg committed rGceac6e9e6c08: assuan: Use exponential decay for first 1s of spinlock. (authored by dkg).
assuan: Use exponential decay for first 1s of spinlock.
Nov 8 2017, 5:46 PM
dkg committed rG1fe8fc56f246: assuan: Reorganize waiting for socket. (authored by dkg).
assuan: Reorganize waiting for socket.
Nov 8 2017, 5:46 PM
dkg added a comment to T3490: "gpgconf --launch gpg-agent" should not take a full second if the agent isn't already started.

To clarify, i'll push them to a separate branch for you to decide whether to merge.

Nov 8 2017, 5:27 PM · gnupg (gpg22)
dkg added a comment to T3490: "gpgconf --launch gpg-agent" should not take a full second if the agent isn't already started.

I'll push some patches for proposal 1.

Nov 8 2017, 5:26 PM · gnupg (gpg22)
werner added a comment to T3378: gpg-agent.exe hanging after left to idle for a while.

The thing is that I don't see this bug with verbose logging enabled. So we need to do more code starring or instrument the code

Nov 8 2017, 4:57 PM · Windows, libassuan, gpgagent, Bug Report
werner closed T3489: Missing 2.2.2 version tag in git as Resolved.
Nov 8 2017, 4:56 PM · Bug Report
werner triaged T3490: "gpgconf --launch gpg-agent" should not take a full second if the agent isn't already started as Wishlist priority.

gpg-connect-agent is used by gpgconf to make things easier. Adding socket playing games is the opposite of simplifying things.

Nov 8 2017, 4:54 PM · gnupg (gpg22)
werner committed rD8fc663510f8a: tools: Remove bashism in the ftp-listener example (authored by werner).
tools: Remove bashism in the ftp-listener example
Nov 8 2017, 4:31 PM
werner committed rD3d80b1935f07: tools: Improve the ftp indexer. (authored by werner).
tools: Improve the ftp indexer.
Nov 8 2017, 4:18 PM
dkg created T3490: "gpgconf --launch gpg-agent" should not take a full second if the agent isn't already started.
Nov 8 2017, 3:51 PM · gnupg (gpg22)
HB1000 added a comment to T3378: gpg-agent.exe hanging after left to idle for a while.

Is there a more detailed logging that i can switch on? Perhaps i can help you to get diagnostic files. Nearly every day i notice this bug. In the log (with "verbose" in gpg-agent.conf) are the same entries i already posted.

Nov 8 2017, 3:32 PM · Windows, libassuan, gpgagent, Bug Report
werner committed rD07cf6d628c4f: tools: First take on a new FTP indexer (authored by werner).
tools: First take on a new FTP indexer
Nov 8 2017, 1:39 PM
aa added a comment to rD084ff18fc464: web: Add 4 new icons..

the UP arrow can be trick ... it reminds me the whole thing about Apollo Missions ... the navigation system;

Nov 8 2017, 1:30 PM
werner committed rD084ff18fc464: web: Add 4 new icons. (authored by werner).
web: Add 4 new icons.
Nov 8 2017, 12:20 PM
gniibe claimed T2923: trust signature domain restrictions don't work.
Nov 8 2017, 9:06 AM · gnupg (gpg14), Bug Report
wiktor-k added a comment to T2923: trust signature domain restrictions don't work.

For what is worth I think sanitize_regexp was programmed while reading 4880 because the RFC allows backslash + any character (section 8: Regular Expressions):

Nov 8 2017, 8:15 AM · gnupg (gpg14), Bug Report
gniibe added a comment to T2923: trust signature domain restrictions don't work.

It might be not a regression. The possibilities are: (1) it was tested by using non-GNU operating system. (2) Tests didn't cover characters (b, B, w, W, s, and S).

Nov 8 2017, 4:13 AM · gnupg (gpg14), Bug Report
akerl created T3489: Missing 2.2.2 version tag in git.
Nov 8 2017, 1:08 AM · Bug Report

Nov 7 2017

wiktor-k added a comment to T2923: trust signature domain restrictions don't work.

For the reference sanitize_regexp was introduced in this commit from 2007 to "Protect against malloc bombs.": and I see no changes to it (except typo correction) in git blame in trustdb.c.

Nov 7 2017, 9:30 PM · gnupg (gpg14), Bug Report
JochenSaalfeld committed rWbab26a58c600: update News as well to new GnuPG Version (authored by JochenSaalfeld).
update News as well to new GnuPG Version
Nov 7 2017, 1:58 PM
JochenSaalfeld committed rW9c0e665d4337: update gnupg version (authored by JochenSaalfeld).
update gnupg version
Nov 7 2017, 1:56 PM
Valodim added a comment to T3488: support specialized numeric9x4 format for symmetric passphrase.

Well, I gues it's complex enough to warrant strategic discussion, which can be done in this ticket :)

Nov 7 2017, 1:31 PM · Feature Request
wiz added a comment to T3056: gpgme-1.8.0: test failures on NetBSD.

I built gnupg 2.2.1 with the patch from D450, but that didn't help.
I even got an additional error:

Nov 7 2017, 1:05 PM · gpgme (gpgme 1.23.x), gpgagent, gnupg (gpg23)
dkg added a comment to T3488: support specialized numeric9x4 format for symmetric passphrase.

In the autocrypt spec, this is called a "setup code", not a "backup code" :)

Nov 7 2017, 12:55 PM · Feature Request
werner committed rD05d2896101de: verein: Add new member (authored by werner).
verein: Add new member
Nov 7 2017, 12:37 PM
werner committed rD926243fc33c1: web: Release announcement for GnuPG 2.2.2. (authored by werner).
web: Release announcement for GnuPG 2.2.2.
Nov 7 2017, 12:29 PM
werner committed rDb556dad0c74d: swdb: Release of gnupg 2.2.2 (authored by werner).
swdb: Release of gnupg 2.2.2
Nov 7 2017, 12:26 PM
Valodim created T3488: support specialized numeric9x4 format for symmetric passphrase.
Nov 7 2017, 11:48 AM · Feature Request
bernhard added a comment to T3487: Check ldap timeout for CMS certificate search.

So maybe there is also a display problem, as I saw 0:00 in Kleo. I have to recheck.

Nov 7 2017, 11:30 AM · Windows, dirmngr, gpg4win
werner committed rG68284e150949: doc: Include NEWS from the 2.2.2 release (authored by werner).
doc: Include NEWS from the 2.2.2 release
Nov 7 2017, 11:24 AM
werner committed rG6530aff6923b: Post release updates. (authored by werner).
Post release updates.
Nov 7 2017, 11:21 AM
werner committed rG5bd515005032: Release 2.2.2 (authored by werner).
Release 2.2.2
Nov 7 2017, 11:21 AM
werner committed rG30f21f8b0fa6: dirmngr: Reduce default LDAP timeout to 15 seconds. (authored by werner).
dirmngr: Reduce default LDAP timeout to 15 seconds.
Nov 7 2017, 11:21 AM
gniibe added a comment to T3472: gpgme-1.9.0 test suite hangs on OpenBSD.

Yes, it will be in 2.2.3. It's too late for 2.2.2.

Nov 7 2017, 10:38 AM · gpgagent, gnupg (gpg22), gpgme
werner committed rGab7ac827041b: dirmngr: Reduce default LDAP timeout to 15 seconds. (authored by werner).
dirmngr: Reduce default LDAP timeout to 15 seconds.
Nov 7 2017, 10:08 AM
werner added a comment to T3487: Check ldap timeout for CMS certificate search.

The default for the timeout are 100 seconds. I will chnage that to 15 seconds which is the same what we use for keyservers.

Nov 7 2017, 10:04 AM · Windows, dirmngr, gpg4win
werner committed rG23bfac6d1a8b: speedo: Include software versions in the W32 README (authored by werner).
speedo: Include software versions in the W32 README
Nov 7 2017, 10:00 AM
werner committed rG1941287c9d2c: po: Update Russian translation (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation
Nov 7 2017, 10:00 AM
vext01 added a comment to T3472: gpgme-1.9.0 test suite hangs on OpenBSD.

So is 380bce13d94f the correct fix? If so, I will update the OpenBSD port including this as a local patch.

Nov 7 2017, 9:47 AM · gpgagent, gnupg (gpg22), gpgme
werner committed rGf9f72ffbfa9f: speedo: Include software versions in the W32 README (authored by werner).
speedo: Include software versions in the W32 README
Nov 7 2017, 9:30 AM
gniibe added a task to D450: clock_gettime if CLOCK_THREAD_CPUTIME_ID is available.: T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.
Nov 7 2017, 9:28 AM
gniibe added a revision to T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel: D450: clock_gettime if CLOCK_THREAD_CPUTIME_ID is available..
Nov 7 2017, 9:28 AM · Bug Report
gniibe changed the status of T3056: gpgme-1.8.0: test failures on NetBSD from Open to Testing.

I believe this is due to the bug of gpg-agent. So, I put this report as a sub task under T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.

Nov 7 2017, 9:27 AM · gpgme (gpgme 1.23.x), gpgagent, gnupg (gpg23)
gniibe changed the status of T3056: gpgme-1.8.0: test failures on NetBSD, a subtask of T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel, from Open to Testing.
Nov 7 2017, 9:27 AM · Bug Report
gniibe added a parent task for T3056: gpgme-1.8.0: test failures on NetBSD: T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.
Nov 7 2017, 9:25 AM · gpgme (gpgme 1.23.x), gpgagent, gnupg (gpg23)
gniibe added a subtask for T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel: T3056: gpgme-1.8.0: test failures on NetBSD.
Nov 7 2017, 9:25 AM · Bug Report
gniibe added a subtask for T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel: T3472: gpgme-1.9.0 test suite hangs on OpenBSD.
Nov 7 2017, 9:24 AM · Bug Report
gniibe added a parent task for T3472: gpgme-1.9.0 test suite hangs on OpenBSD: T3276: the calibrate_get_time() function depends on a system that has a non-tickless kernel.
Nov 7 2017, 9:24 AM · gpgagent, gnupg (gpg22), gpgme
gniibe triaged T3472: gpgme-1.9.0 test suite hangs on OpenBSD as Normal priority.
Nov 7 2017, 9:23 AM · gpgagent, gnupg (gpg22), gpgme