Page MenuHome GnuPG
Feed Advanced Search

Mar 27 2018

werner claimed T3816: please expose "change-usage" subcommand for --edit-key.
Mar 27 2018, 6:25 PM · gnupg (gpg22), Feature Request
werner triaged T3867: [DIRMNGR] Key server should be tried if passed with --keyserver, regardless of the "dead" mark as Normal priority.

You can do a

Mar 27 2018, 6:18 PM · Feature Request, dirmngr

Mar 25 2018

BenM added a comment to T3211: [website] Atom/RSS feed for releases, news and/or blog.

This does not require org-feed.el as far as I can tell, but it does require components of current Org Mode HTML export and publishing features which do not appear to be available in the current gnupg.org website build system.

Mar 25 2018, 2:07 PM · Feature Request

Mar 24 2018

BenM added a comment to T3211: [website] Atom/RSS feed for releases, news and/or blog.

A more recent request for this feature has been made via the devel mailing list:

Mar 24 2018, 1:25 AM · Feature Request

Mar 22 2018

steve added a comment to T3730: Add support to HTTP Basic Auth for Keyservers.

Hi Werner. Did you by any chance already find the time to look into the changes?

Mar 22 2018, 2:37 PM · gnupg24, Feature Request

Mar 15 2018

aheinecke closed T2266: Gpg4win: Migrate Keyring to Keybox as Wontfix.

I looked into it a bit. As bulk import is highly inefficient copying the keyring lots and lots of times the migration of a keyring with 1000keys takes around 6 Minutes.

Mar 15 2018, 1:01 PM · Feature Request, gnupg, gpg4win

Mar 14 2018

bernhard added a comment to T3277: decrypting data symmetrically doesn't reliably convey confidentiality property.

The use case that @Valodim and @dkg are thinking of probably is using a setup-code that humans use to transfer from one device do another to decrypt a symmetrically encrypted setup-package, this issue is linked from:

https://autocrypt.org/level1.html#setup-message-import
Mar 14 2018, 5:30 PM · Feature Request, gnupg (gpg22)

Mar 8 2018

werner created T3831: Extend GPGME's offline mode to the OpenPGP engine.
Mar 8 2018, 1:33 PM · gpgme, Feature Request

Mar 2 2018

bernhard added a comment to T3734: Extract signature key ID with gpgme.

There was a second person asking for a list-packets feature to verify if a file is encrypted correctly at gnupg-devel.

Mar 2 2018, 5:22 PM · gpgme, Feature Request

Mar 1 2018

aheinecke renamed T3798: GpgOL: Memoryhole integration from Memoryhole integration to GpgOL: Memoryhole integration.
Mar 1 2018, 5:19 PM · gpgol, Feature Request
aheinecke triaged T3798: GpgOL: Memoryhole integration as Wishlist priority.

I'm not a fan of memoryhole. To say my criticism in one sentence: "Memoryhole is trying to sell the hide of the boar before it has been hunted."

Mar 1 2018, 5:13 PM · gpgol, Feature Request

Feb 27 2018

werner triaged T3816: please expose "change-usage" subcommand for --edit-key as High priority.
Feb 27 2018, 9:50 PM · gnupg (gpg22), Feature Request

Feb 26 2018

werner triaged T3808: Unable to safely delete IDs with shared secret keys as Normal priority.
Feb 26 2018, 9:48 AM · Feature Request
cvhc edited projects for T3808: Unable to safely delete IDs with shared secret keys, added: Feature Request; removed Bug Report.

Ok, I understand it. Project tag changed :)

Feb 26 2018, 9:18 AM · Feature Request

Feb 24 2018

stm created T3807: Mandatory OpenPGP Primary Key Binding Signature (sigclass 0x19).
Feb 24 2018, 9:44 AM · Documentation, gnupg

Feb 22 2018

tjarosch added a comment to T1621: Support multiple cards (not just readers).

I also struggled to get two cards running at the same time. Host system is Fedora 26 with gnupg 2.2.4.

Feb 22 2018, 11:59 PM · gnupg, Feature Request
werner closed T1967: GnuPG should select a key for signing without trying to use missing subkeys as Resolved.

Will go into 2.2.5

Feb 22 2018, 10:56 AM · gnupg (gpg22), Feature Request
werner claimed T1967: GnuPG should select a key for signing without trying to use missing subkeys.
Feb 22 2018, 10:51 AM · gnupg (gpg22), Feature Request
werner triaged T3622: --export-options export-minimal,export-clean includes unusable subkeys as Normal priority.
Feb 22 2018, 10:37 AM · Feature Request, gnupg (gpg22)

Feb 19 2018

werner added a comment to T3458: Add sha224sum.exe / sha384sum.exe / sha512sum.exe to Gpg4win installation.

Note that there is no standard for this. In particular the encoding of filenames with special characters are different in almost all implementations. I tried to find a common ground for our implementation.

Feb 19 2018, 5:05 PM · gpg4win, Feature Request
aheinecke added a comment to T3458: Add sha224sum.exe / sha384sum.exe / sha512sum.exe to Gpg4win installation.

Just to be clear I think this issue is valid and we should add more checksum tools in the future. But I would want them to use libgcrypt and confirm to the standard *sum command line arguments like -c.

Feb 19 2018, 12:04 PM · gpg4win, Feature Request

Feb 16 2018

werner added a project to T3798: GpgOL: Memoryhole integration: gpgol.
Feb 16 2018, 5:54 PM · gpgol, Feature Request
blu-IT added a comment to T3798: GpgOL: Memoryhole integration.

Hi Werner,

Feb 16 2018, 12:46 PM · gpgol, Feature Request
werner added a comment to T3798: GpgOL: Memoryhole integration.

This is a MUA thing. Do you ask whether we plan to add it to GpgOL?

Feb 16 2018, 11:19 AM · gpgol, Feature Request
blu-IT created T3798: GpgOL: Memoryhole integration.
Feb 16 2018, 10:45 AM · gpgol, Feature Request
werner closed T3797: Allow Monero donations as Wontfix.

See T3796

Feb 16 2018, 8:55 AM · Feature Request
werner closed T3796: Allow Bitcoin Cash donations as Wontfix.

Sorry, we won't do this any time soon. We may even shut the Bitcoin thing down. I was too troublesome from a bookkeeping POV.

Feb 16 2018, 8:53 AM · Feature Request
authentication created T3797: Allow Monero donations.
Feb 16 2018, 6:18 AM · Feature Request
authentication created T3796: Allow Bitcoin Cash donations.
Feb 16 2018, 5:46 AM · Feature Request

Feb 14 2018

werner triaged T3775: enable mixed hidden/non-hidden recipients during encryption as Normal priority.

I don't think that -R is a good way to implement BCC - it would be better to encrypt it separately. But people may have different ideas on this.

Feb 14 2018, 5:44 PM · gpgme, Feature Request

Feb 6 2018

wltjr added a comment to T2905: EFL-based pinentry.

No clue what their problem is, I have a few projects scanned by Coverity. Most are forks that I took over, but one is not really. Not sure why they took such issues here.

Feb 6 2018, 4:46 PM · pinentry, Feature Request
werner added a comment to T2905: EFL-based pinentry.

Okay. Thanks for the report. I once looked at Coverty but decided not to use it because of their rules which would not allow me to document and fix a possible security vulnerability without following their process. If there is a security problem I will fix it according to my schedule and not allow anyone to delay it.

Feb 6 2018, 11:40 AM · pinentry, Feature Request

Feb 5 2018

wltjr added a comment to T2905: EFL-based pinentry.

After fighting with Coverity over a fork of pinentry that has EFL. I setup to have Coverity scan. Which found some like 22 defects. Coverity unable to identify that I have any affiliation, after I spent/wasted hours getting a build to upload to Coverity to scan. Just to fight with some unhelpful person basically standing in the way of FOSS project, a wonderful Mel Llaguno. Decided for security reasons I be denied ability to use Coverity to scan pinentry for defects, even in the EFL interface I made and am the author of. Which also means I cannot fix other issues with pinentry or aide further in development....

Feb 5 2018, 11:39 PM · pinentry, Feature Request

Feb 4 2018

dkg created T3775: enable mixed hidden/non-hidden recipients during encryption.
Feb 4 2018, 10:08 PM · gpgme, Feature Request

Feb 1 2018

Valodim added a comment to T3766: GnuPG should reject keys that are subkeys of itself.

Sorry, I don't understand. Can you describe your use case in more detail?

Feb 1 2018, 12:47 PM · gnupg (gpg22), Feature Request
werner added a comment to T3766: GnuPG should reject keys that are subkeys of itself.

You have a token with one spare key which you want to use for encryption and certification. And being able to replace the encryption subkey eventually.

Feb 1 2018, 9:28 AM · gnupg (gpg22), Feature Request
werner triaged T3767: simplify sharing dirmngr's across multiple GNUPGHOMEs as High priority.

Originally dirmngr was designed to be a system service for the reason that CRLs are not user specific. However, the majority of systems today are used by a single user and thus we dropped that feature when integrating dirmngr into gnupg.

Feb 1 2018, 9:26 AM · Documentation, Feature Request, gnupg, dirmngr

Jan 31 2018

Valodim added a comment to T3766: GnuPG should reject keys that are subkeys of itself.

a key that is signed as its own subkey, in a construct where the key and subkey have the same fingerprint? what ever could be a valid use case for such a scenario?

Jan 31 2018, 8:06 PM · gnupg (gpg22), Feature Request
dkg created T3767: simplify sharing dirmngr's across multiple GNUPGHOMEs in the S1 Public space.
Jan 31 2018, 7:56 PM · Documentation, Feature Request, gnupg, dirmngr
werner triaged T3766: GnuPG should reject keys that are subkeys of itself as Normal priority.

I can't see why this should be out-of-spec. In fact I did this my self several times to create keys from other keys.

Jan 31 2018, 6:03 PM · gnupg (gpg22), Feature Request

Jan 24 2018

wltjr added a comment to T2905: EFL-based pinentry.

Your welcome, I can remake another unified patch if need be. I was starting to prepare things to be a stand alone fork. Did an initial .travis.yml file, and initial stuff for Coverity. Though never did get a build uploaded to Coverity. Not sure if you have ever run pinentry through Coverity or other GnuPG stuff, may be a good idea just to see if it catches anything.

Jan 24 2018, 7:35 PM · pinentry, Feature Request
werner raised the priority of T2905: EFL-based pinentry from Normal to High.

Thanks for the long explanation. I think it should go into pinentry proper. I will have a closer look on it.

Jan 24 2018, 7:27 PM · pinentry, Feature Request

Jan 23 2018

wltjr added a comment to T2905: EFL-based pinentry.

@werner no problem with re-opening. I closed as it seemed it was not of interest or wanted. I wasn't get any responses like asking why it was left out of 1.1.0 release. To my knowledge other than preferences of GnuPG devs, changes to suit your needs, grabbing, libsecret, etc. It should be good to go without any issues. Thus I was waiting next release, assuming it was already committed . May have confused it with some other PR that was committed. But there should not be any outstanding issues preventing it from inclusion. If there are it was never relayed to me. It should be ready for inclusion, less any requested changes.

Jan 23 2018, 7:26 PM · pinentry, Feature Request
wltjr added a comment to T2905: EFL-based pinentry.

@werner no clue, I thought it was merged in at some point. I could have sworn something happened there. I went on advising others like the TQT interface assuming EFL was already added. I was shocked it was not when release came out and no explanation as to why it was excluded.

Jan 23 2018, 7:20 PM · pinentry, Feature Request

Jan 19 2018

werner reopened T2905: EFL-based pinentry as "Open".

Oh yes, I should re-open this because we should keep on tracking the status - either for an included EFL version or an external version.

Jan 19 2018, 8:54 AM · pinentry, Feature Request
werner updated subscribers of T2905: EFL-based pinentry.

I have not followed this bug for the last 6 months and meanwhile @justus and @neal moved on to the pEp company and are not any longer available to work on this. Although, I made the last pinentry release I do no closely follow the development. What I noticed is that we still don't have an EFL based pinentry despite that I explained them several times that I would like to see EFL in pinentry proper. I can't remember what the Mike Blumenkrantz version is or that there have been two pending versions at all. The thread is pretty long and I have note read it in its full length.

Jan 19 2018, 8:53 AM · pinentry, Feature Request

Jan 18 2018

wltjr added a comment to T2905: EFL-based pinentry.

Proceeding with a fork, and likely will remove other interfaces and just maintain another version of pinentry for EFL. Maybe renamed to pinentry-efl, and only have that and tty and curses interfaces in addition to EFL.

Jan 18 2018, 8:13 PM · pinentry, Feature Request

Jan 16 2018

aa added a comment to P5 bak.

'bit commit',

Jan 16 2018, 4:10 PM · Feature Request
aa created P5 bak in the S1 Public space.
Jan 16 2018, 4:06 PM · Feature Request

Jan 15 2018

werner reopened T1967: GnuPG should select a key for signing without trying to use missing subkeys as "Open".
Jan 15 2018, 8:28 AM · gnupg (gpg22), Feature Request

Jan 14 2018

theirix added a comment to T1967: GnuPG should select a key for signing without trying to use missing subkeys.

@gniibe just checking – any news for 2.2 support? Should I reopen this bug or report a new one against 2.2?

Jan 14 2018, 3:39 PM · gnupg (gpg22), Feature Request

Jan 11 2018

dkg created T3734: Extract signature key ID with gpgme.
Jan 11 2018, 2:46 PM · gpgme, Feature Request
lukele added a comment to T3730: Add support to HTTP Basic Auth for Keyservers.

Thanks for having a look :)

Jan 11 2018, 12:43 PM · gnupg24, Feature Request
werner triaged T3730: Add support to HTTP Basic Auth for Keyservers as Normal priority.

Thanks for the patch. The "fixme" indicates that I probably was just too lazy to add and test support.

Jan 11 2018, 12:29 PM · gnupg24, Feature Request

Jan 7 2018

madman_xxx added a project to T3719: List keys in colon-separated format, i.e. make --list-only respect --with-colons: gnupg.
Jan 7 2018, 10:49 PM · gnupg, Feature Request
madman_xxx created T3719: List keys in colon-separated format, i.e. make --list-only respect --with-colons.
Jan 7 2018, 10:46 PM · gnupg, Feature Request
stm edited projects for T3390: Showing complete OpenPGP key flags, added: gnupg (gpg23); removed gnupg.
Jan 7 2018, 10:19 AM · gnupg24, patch, Feature Request
stm added projects to T3390: Showing complete OpenPGP key flags: gnupg, patch.
Jan 7 2018, 10:18 AM · gnupg24, patch, Feature Request
stm added a comment to T3390: Showing complete OpenPGP key flags.

I have attached a small patch to show this two additional key flags with "--list-keys":

Jan 7 2018, 9:48 AM · gnupg24, patch, Feature Request

Dec 29 2017

werner added a comment to T2103: Improve the pinentry password quality indication.

Using an external process as an option is fine. However adding more dependencies to gnupg should be avoided.

Dec 29 2017, 8:32 PM · gnupg (gpg23), Feature Request
gouttegd added a comment to T2103: Improve the pinentry password quality indication.

So… Is there any interest in the approach I drafted in D442?

Dec 29 2017, 8:14 PM · gnupg (gpg23), Feature Request

Dec 12 2017

werner closed T3473: gnupg agent configurable backlog for sockets as Resolved.

Okay, lets try with a default of 64. Note that for many concurrent ssh sessions you may also need the option --auto-expand-secmem which will come with Libgcrypt 1.8.2 and GnuPG 2.2.4

Dec 12 2017, 2:21 PM · gpgagent, Feature Request
aheinecke added a comment to T2266: Gpg4win: Migrate Keyring to Keybox.

Debian has this with migrate-pubring-from-classic-gpg ( https://sources.debian.org/src/gnupg2/2.2.3-1/debian/migrate-pubring-from-classic-gpg/ )

Dec 12 2017, 1:59 PM · Feature Request, gnupg, gpg4win
aheinecke renamed T2266: Gpg4win: Migrate Keyring to Keybox from Keyring access extremely slow on Windows to Gpg4win: Migrate Keyring to Keybox.
Dec 12 2017, 1:56 PM · Feature Request, gnupg, gpg4win

Dec 7 2017

theirix added a comment to T1967: GnuPG should select a key for signing without trying to use missing subkeys.

Could we please merge it to the stable branch (2.2.3 does not have this patch yet) or it is not tested enough? Existing subkey sellection strategy doesn't play well with mail signing and affects GPGTools/GPGMail users as well as any other users with multiple signing subkeys. Thanks!

Dec 7 2017, 8:05 PM · gnupg (gpg22), Feature Request
wltjr closed T2905: EFL-based pinentry as Wontfix.

Moving on, I will just look to make a stand along project for efl-pinentry interface. I withdraw my previous submission. Welcome to resume and move forward with Mike Blumenkrantz version. Thanks!

Dec 7 2017, 7:38 PM · pinentry, Feature Request
werner triaged T3526: Missing function to calculate wkdhash as Low priority.

Frankly, I doubt that this belongs into gpgme.

Dec 7 2017, 6:34 PM · Feature Request, gpgme

Dec 6 2017

aheinecke closed T2732: unregisterd file types like *.skr as Resolved.

With Gpg4win 3.0 we registered associations for S/MIME and OpenPGP Files:

Dec 6 2017, 2:34 PM · Feature Request, gpg4win

Dec 4 2017

werner added a parent task for T1756: gpg-agent doesn't accept ssh certificates: T3574: gpg-agent doesn't pick up ssh certificates.
Dec 4 2017, 8:05 PM · gnupg, Feature Request
jordan added a comment to T1756: gpg-agent doesn't accept ssh certificates.
Dec 4 2017, 5:17 PM · gnupg, Feature Request

Dec 3 2017

wltjr added a comment to T2905: EFL-based pinentry.

Not sure this should remain open. Months later a release was done excluding this. Originally mentioned on list in October 2016. Over a year later still not included. Very discouraging. I guess I can just see about having this external for myself. Shocking that FLTK and QTK see more usage than EFL which is part of Tizen OS. Clearly issues with either me, or EFL. Some reason it was excluded and being ignored. Seems nothing I can do either way. Oh well, I did all I could for months. On a very small contribution...

Dec 3 2017, 8:57 PM · pinentry, Feature Request

Nov 28 2017

aheinecke closed T2173: Change hash algorithms in GUI as Wontfix.

Kleopatra will only expose the values that are settable through gpgconf. Messing with preferred hash algorithms is nothing a user should do as the defaults are thought through and discussed. Mostly such changes come from bad recommendations. So the GUI / gpgconf does not offer this prominently as we don't want to create problems for users.

Nov 28 2017, 3:52 PM · Feature Request, gpg4win
aheinecke closed T1643: gpgex context menu should allow symmetric encryption as Resolved.

As GpgEX only queries a UI Server (GPA or Kleopatra) this is a Kleopatra or GPA problem.
With Gpg4win-3.0 Kleopatra got the option "Encrypt with password" in the file encryption dialog, which does symmetric encryption. GPA does not offer this but as Kleopatra is our main UI for GpgEX I think this feature request is done.

Nov 28 2017, 3:49 PM · gpgex, Feature Request

Nov 24 2017

werner added a comment to T3530: Option to auto-increase secmem in gpg-agent.

Somehow I expected such a report (too many open fds). We will need to replace our select based code by poll. However, I think this is more related to T3529.

Nov 24 2017, 10:13 AM · Feature Request, gpgagent
aheinecke triaged T3520: Change "encrypt to myself" to the same changed key as "sign as" when signing and encrypting files with Kleopatra as Wishlist priority.
Nov 24 2017, 9:52 AM · kleopatra, gpg4win, Feature Request
fisgtm-amul added a comment to T3530: Option to auto-increase secmem in gpg-agent.

THANK YOU! Once you push those changes, I'll see about back-porting the patches to Debian stable/Ubuntu LTS.

Nov 24 2017, 9:48 AM · Feature Request, gpgagent

Nov 23 2017

werner added a comment to T3530: Option to auto-increase secmem in gpg-agent.

Thanks for your patches. I decided to do this similar but I need to take several branches in account.

Nov 23 2017, 9:26 PM · Feature Request, gpgagent
fisgtm-amul added a comment to T3530: Option to auto-increase secmem in gpg-agent.

The attached patches make the necessary changes to libgcrypt and gpg-agent. A word about my change to libgcrypt. Since all of the *_secure allocation operations were hardcoded to set xhint to zero, I simply replaced that hardcoded value with a static variable. In the patches I have some sample documentation for both changes. My scheme skills are quite old, so I did not write a test case.

Nov 23 2017, 2:24 PM · Feature Request, gpgagent
fisgtm-amul added a comment to T3530: Option to auto-increase secmem in gpg-agent.

Here is the test case that I wrote a while back (Follow-up to Crashes with gpg-agent 2.1.18). It is written with bash in mind and creates a stand-alone GNUPGHOME directory with a pinentry routine that supplies the password (I guess I could have preset the passphrase) and then starts 200 concurrent gpg decryption requests. With GPG 2.1.18 and up, this usually exposes the out of memory situation very fast.

Nov 23 2017, 9:40 AM · Feature Request, gpgagent

Nov 22 2017

werner edited projects for T3526: Missing function to calculate wkdhash, added: Feature Request; removed Bug Report.
Nov 22 2017, 8:49 PM · Feature Request, gpgme
werner created T3530: Option to auto-increase secmem in gpg-agent.
Nov 22 2017, 8:39 PM · Feature Request, gpgagent
werner created T3529: Connection limit for gpg-agent.
Nov 22 2017, 8:33 PM · Feature Request, gnupg (gpg23), gpgagent

Nov 21 2017

JochenSaalfeld closed T2162: keyserver does not work with authenticating proxy as Resolved.
Nov 21 2017, 1:05 PM · Feature Request, gpg4win
JochenSaalfeld updated the task description for T3520: Change "encrypt to myself" to the same changed key as "sign as" when signing and encrypting files with Kleopatra.
Nov 21 2017, 11:11 AM · kleopatra, gpg4win, Feature Request
JochenSaalfeld assigned T3520: Change "encrypt to myself" to the same changed key as "sign as" when signing and encrypting files with Kleopatra to aheinecke.
Nov 21 2017, 10:52 AM · kleopatra, gpg4win, Feature Request
JochenSaalfeld created T3520: Change "encrypt to myself" to the same changed key as "sign as" when signing and encrypting files with Kleopatra.
Nov 21 2017, 10:52 AM · kleopatra, gpg4win, Feature Request

Nov 20 2017

werner triaged T3513: Change of trust of new uid not immediately reflected in user interface as Normal priority.

To compute the key validity (trust) more information may be needed and we can only do that after the changes have been saved. Further, no-auto-chec-trustdb will anyway delay that computation until "gpg --check-trustdb" is run (e.g. by a cron job).

Nov 20 2017, 8:44 AM · gnupg24, OpenPGP, Feature Request

Nov 15 2017

aheinecke added a comment to T3458: Add sha224sum.exe / sha384sum.exe / sha512sum.exe to Gpg4win installation.

Not possible to replace it through config as we can't "check" like with sha1sum and the format differs.

Nov 15 2017, 10:41 AM · gpg4win, Feature Request
aheinecke claimed T3458: Add sha224sum.exe / sha384sum.exe / sha512sum.exe to Gpg4win installation.

In Kleopatra this should be possible through the Checksum definition config without any code changes. I'll look into it.

Nov 15 2017, 9:12 AM · gpg4win, Feature Request
werner created T3505: Port GPGME's Python bindings to Windows.
Nov 15 2017, 9:11 AM · Feature Request, gpgme, Python

Nov 14 2017

werner added a comment to T3497: mnemonic phrase based backup for OpenPGP / GnuPG / gpg keys.

That is the same as a key generated from a passphrase. We have already have a task T169 for this. Thus I merge them.

Nov 14 2017, 11:28 AM · Feature Request
werner merged T3497: mnemonic phrase based backup for OpenPGP / GnuPG / gpg keys into T169: Add a way to generate keypairs from a passphrase.
Nov 14 2017, 11:26 AM · gnupg, Feature Request
werner merged task T3497: mnemonic phrase based backup for OpenPGP / GnuPG / gpg keys into T169: Add a way to generate keypairs from a passphrase.
Nov 14 2017, 11:26 AM · Feature Request

Nov 13 2017

aheinecke closed T3486: ASCII armor option missing from gpgEX as of gpg4win 3.0.0 as Wontfix.

This is intentional with the rationale being that users either want ascii armor for some reason for all their usecases or they don't want it.
And most users won't even know what ASCII Armor means (Adding "Armor" sounds like additional protection). So we moved this setting into configuration and renamed it.

Nov 13 2017, 9:44 AM · Feature Request, gpg4win, kleopatra
adrelanos created T3497: mnemonic phrase based backup for OpenPGP / GnuPG / gpg keys.
Nov 13 2017, 1:53 AM · Feature Request

Nov 12 2017

dkg added a comment to T3277: decrypting data symmetrically doesn't reliably convey confidentiality property.

So, to protect against this attack, the client needs to do both of the following:

Nov 12 2017, 9:14 PM · Feature Request, gnupg (gpg22)
dkg added a comment to T3277: decrypting data symmetrically doesn't reliably convey confidentiality property.

Here are two examples:

Nov 12 2017, 9:13 PM · Feature Request, gnupg (gpg22)
dkg added a comment to T3277: decrypting data symmetrically doesn't reliably convey confidentiality property.

@werner suggests using an ephemeral home directory. this is an important point.

Nov 12 2017, 9:08 PM · Feature Request, gnupg (gpg22)
dkg added a comment to T3277: decrypting data symmetrically doesn't reliably convey confidentiality property.

@justus asked for examples.

Nov 12 2017, 9:05 PM · Feature Request, gnupg (gpg22)
werner triaged T3495: The --list-keys should account for groups that are defined as Normal priority.
Nov 12 2017, 8:25 PM · gnupg, Feature Request