Page MenuHome GnuPG
Feed All Stories

Sep 30 2019

werner committed rGec81c437e71b: gpg: Fix expand GPG groups when resolving a key (authored by werner).
gpg: Fix expand GPG groups when resolving a key
Sep 30 2019, 2:13 PM
werner edited projects for T4708: gpg cannot retrieve key via wkd from http2 server, added: Documentation, FAQ; removed Bug Report.
Sep 30 2019, 9:39 AM · FAQ, Documentation, dirmngr
werner renamed T3053: Change license for the website to CC BY-SA 4.0 from Chnage license for the website to CC BY-SA 4.0 to Change license for the website to CC BY-SA 4.0.
Sep 30 2019, 9:31 AM · Stalled, Verein, legal, gpgweb
werner placed T3811: New website design up for grabs.
Sep 30 2019, 9:30 AM · gpgweb, Verein
werner added a comment to T4714: Gnupg can't import or generate private key as root.

You should always run gpg with --verbose if you run into an unknown error. It shows more information; in your case info about the requested pinentry. The strace does not show this. You probably have no permission to launch the X version opf the pinentry because the xauth does not work. As a quick test use ssh -X root@localhost instead.

Sep 30 2019, 8:27 AM · Bug Report

Sep 29 2019

bionade24 added a comment to T4714: Gnupg can't import or generate private key as root.
sysconfdir:/etc/gnupg
bindir:/usr/bin
libexecdir:/usr/lib/gnupg
libdir:/usr/lib/gnupg
datadir:/usr/share/gnupg
localedir:/usr/share/locale
socketdir:/root/.gnupg
dirmngr-socket:/root/.gnupg/S.dirmngr
agent-ssh-socket:/root/.gnupg/S.gpg-agent.ssh
agent-extra-socket:/root/.gnupg/S.gpg-agent.extra
agent-browser-socket:/root/.gnupg/S.gpg-agent.browser
agent-socket:/root/.gnupg/S.gpg-agent
homedir:/root/.gnupg
Sep 29 2019, 7:54 PM · Bug Report
bionade24 updated the task description for T4714: Gnupg can't import or generate private key as root.
Sep 29 2019, 7:52 PM · Bug Report
werner added a comment to T4714: Gnupg can't import or generate private key as root.

Please provide a full description of what you did. What command line did you use, have you su-ed or logged in regular.? What is the output of "gpgcof --list-dirs" ?

Sep 29 2019, 7:40 PM · Bug Report
bionade24 created T4714: Gnupg can't import or generate private key as root.
Sep 29 2019, 11:21 AM · Bug Report
gniibe created T4713: Bug in get_best_pubkey_byname.
Sep 29 2019, 10:44 AM · Restricted Project, gnupg (gpg23)

Sep 28 2019

gniibe added a project to T4620: no support for multiple (yubikey) smartcards plugged in at the same time: Restricted Project.
Sep 28 2019, 6:53 PM · Restricted Project, Bug Report
Laurent Montel <montel@kde.org> committed rKLEOPATRA53a068e7fe13: Fix hidpi support (authored by Laurent Montel <montel@kde.org>).
Fix hidpi support
Sep 28 2019, 5:53 PM
asv awarded T4620: no support for multiple (yubikey) smartcards plugged in at the same time a Like token.
Sep 28 2019, 4:36 PM · Restricted Project, Bug Report
werner committed rC3de8991c8543: ecc: Add a keygrip testcase for cv25519. (authored by werner).
ecc: Add a keygrip testcase for cv25519.
Sep 28 2019, 12:04 PM
werner committed rCf67b6492e0b0: ecc: Fix regression in keygrip computation for cv25519. (authored by werner).
ecc: Fix regression in keygrip computation for cv25519.
Sep 28 2019, 11:12 AM
werner lowered the priority of T4712: Keygrip broken in master for cv25519 from Unbreak Now! to Normal.
Sep 28 2019, 11:08 AM · Restricted Project, Bug Report, libgcrypt
werner created T4712: Keygrip broken in master for cv25519.
Sep 28 2019, 10:56 AM · Restricted Project, Bug Report, libgcrypt

Sep 27 2019

werner committed rG9698761933f7: Merge branch 'switch-to-gpgk' into master (authored by werner).
Merge branch 'switch-to-gpgk' into master
Sep 27 2019, 4:00 PM
werner committed rGb966a7c142ab: gpg: Fix a recently introduced printf format buglet. (authored by werner).
gpg: Fix a recently introduced printf format buglet.
Sep 27 2019, 4:00 PM
werner committed rG8e5741304821: kbx: Fix error code return in keyboxd. (authored by werner).
kbx: Fix error code return in keyboxd.
Sep 27 2019, 2:29 PM
werner committed rG0af1c6447dc0: kbx: Store the UBIB in the blob. (authored by werner).
kbx: Store the UBIB in the blob.
Sep 27 2019, 2:29 PM
gniibe renamed T4563: gpg-agent fails to sign request of PKISSH from gpg-agent fails to sign request to gpg-agent fails to sign request of PKISSH.
Sep 27 2019, 1:45 PM · Feature Request, gpgagent
werner closed T4711: Misleading error messages and debug logs for DNS failures while fetching via WKD as Resolved.

Do not use this legacy debug stuff. Use --debug CATEGORY. For example

Sep 27 2019, 10:52 AM · FAQ
gniibe edited projects for T4563: gpg-agent fails to sign request of PKISSH, added: Feature Request; removed Info Needed, Bug Report.
Sep 27 2019, 10:17 AM · Feature Request, gpgagent
werner committed rG280e9c9cfac3: kbx: First take on a cache for the keyboxd. (authored by werner).
kbx: First take on a cache for the keyboxd.
Sep 27 2019, 10:08 AM
werner committed rG4be79b5abeae: kbx,gpg: Allow lookup using a UBID. (authored by werner).
kbx,gpg: Allow lookup using a UBID.
Sep 27 2019, 10:08 AM
werner committed rGd38f877bd88c: doc: Minor doc updates and a typo fix. (authored by werner).
doc: Minor doc updates and a typo fix.
Sep 27 2019, 10:08 AM
werner committed rG1f987516f6b1: tests: Add two user-id parsing test cases. (authored by werner).
tests: Add two user-id parsing test cases.
Sep 27 2019, 10:08 AM
gniibe added a comment to T4563: gpg-agent fails to sign request of PKISSH.

OK, I identify the problem.

Sep 27 2019, 8:23 AM · Feature Request, gpgagent

Sep 26 2019

jukivili updated the task description for T4460: libgcrypt performance TODOs.
Sep 26 2019, 9:09 PM · libgcrypt
jukivili committed rC4bebafb7bae8: Add stitched ChaCha20-Poly1305 ARMv8/AArch64 implementation (authored by jukivili).
Add stitched ChaCha20-Poly1305 ARMv8/AArch64 implementation
Sep 26 2019, 8:24 PM
jukivili committed rC96b91e164160: Small tweak for PowerPC Chacha20-Poly1305 round loop (authored by jukivili).
Small tweak for PowerPC Chacha20-Poly1305 round loop
Sep 26 2019, 8:24 PM
jukivili committed rC664370ea02df: Reduce size of x86-64 stitched Chacha20-Poly1305 implementations (authored by jukivili).
Reduce size of x86-64 stitched Chacha20-Poly1305 implementations
Sep 26 2019, 8:23 PM
mgorny created T4711: Misleading error messages and debug logs for DNS failures while fetching via WKD.
Sep 26 2019, 2:12 PM · FAQ

Sep 25 2019

martin.von.wittich added a comment to T4710: Cannot use Secure PIN Entry for Reset Code.

For pinpadtest.py, you need to offer an option --add (adding dummy byte), when you are using Cherry ST-2xxx.

Sep 25 2019, 2:55 PM · Not A Bug, Documentation, OpenPGP, scd, Bug Report
gniibe added a comment to T4710: Cannot use Secure PIN Entry for Reset Code.

For pinpadtest.py, you need to offer an option --add (adding dummy byte), when you are using Cherry ST-2xxx.

Sep 25 2019, 1:39 PM · Not A Bug, Documentation, OpenPGP, scd, Bug Report
martin.von.wittich added a comment to T4710: Cannot use Secure PIN Entry for Reset Code.

It is not supported, by CCID protocol itself. So, it is not supported by scdaemon, and by any of card readers (which I know of), either.

Sep 25 2019, 1:26 PM · Not A Bug, Documentation, OpenPGP, scd, Bug Report
gniibe claimed T4710: Cannot use Secure PIN Entry for Reset Code.

It is not supported, by CCID protocol itself. So, it is not supported by scdaemon, and by any of card readers (which I know of), either.

Sep 25 2019, 12:09 PM · Not A Bug, Documentation, OpenPGP, scd, Bug Report
werner triaged T4710: Cannot use Secure PIN Entry for Reset Code as Normal priority.
Sep 25 2019, 9:23 AM · Not A Bug, Documentation, OpenPGP, scd, Bug Report

Sep 24 2019

martin.von.wittich created T4710: Cannot use Secure PIN Entry for Reset Code.
Sep 24 2019, 3:12 PM · Not A Bug, Documentation, OpenPGP, scd, Bug Report
gniibe committed rEf73605e03949: Fix gpg-error.c for preprocessor use. (authored by gniibe).
Fix gpg-error.c for preprocessor use.
Sep 24 2019, 1:39 PM

Sep 23 2019

omega12 created T4709: kleopatra silently fails to overwrite existing exported secret key.
Sep 23 2019, 11:43 AM · kleopatra, Bug Report, gpg4win

Sep 22 2019

Laurent Montel <montel@kde.org> committed rLIBKLEO766f7252dbfd: GIT_SILENT: Time to increase dependancy. Use new macro for generating designer… (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Time to increase dependancy. Use new macro for generating designer…
Sep 22 2019, 9:40 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA976709fde397: GIT_SILENT: Time to increase dependancy. Use new macro for generating designer… (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: Time to increase dependancy. Use new macro for generating designer…
Sep 22 2019, 9:25 AM

Sep 21 2019

werner added a comment to T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication).

It is not just about being annoying but for security reasons. It would be too easy for other applications *think webbrowser or Acrobat) to take a screenshot and pop up a modified version of that screenshot with data entries to act as a MitM.

Sep 21 2019, 11:00 AM · pinentry, Bug Report, gpg4win

Sep 20 2019

deep42thought added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

$ gpg-connect-agent --dirmngr 'getinfo version' /bye
D 2.2.17
OK

Sep 20 2019, 7:44 PM · FAQ, Documentation, dirmngr
mgn awarded T4123: Pinentry-qt does not always become active foreground window (especially when requesting pin for authentication) a Like token.
Sep 20 2019, 1:49 PM · pinentry, Bug Report, gpg4win
werner added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

Can you check which dirmngr version you are running

gpg-connect-agent --dirmngr 'getinfo version' /bye
Sep 20 2019, 1:19 PM · FAQ, Documentation, dirmngr
deep42thought added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

thanks for the dns explanation - IMHO, there should be added something about that in the wiki
When it does not work for you on http1 either, then I guess, it's really just some outdatedness of my gpg/dirmngr and this ticket can be closed.

Sep 20 2019, 9:59 AM · FAQ, Documentation, dirmngr
werner added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

It does not work either. Your problem is the use of a wildcard DNS for archlinux32.org:

Sep 20 2019, 9:50 AM · FAQ, Documentation, dirmngr
werner added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

The test above was with gpg master but I got the same result with current 2.2:

Sep 20 2019, 9:27 AM · FAQ, Documentation, dirmngr
deep42thought added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

ok, I disabled it again. btw: why do we need openpgpkey.archlinux32.org in the cert? Is this standard or did I misconfigure something?

Sep 20 2019, 9:23 AM · FAQ, Documentation, dirmngr
werner triaged T4708: gpg cannot retrieve key via wkd from http2 server as Normal priority.
Sep 20 2019, 9:16 AM · FAQ, Documentation, dirmngr
werner added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

Thanks. Here is a dirmngr log:

Sep 20 2019, 9:16 AM · FAQ, Documentation, dirmngr
gniibe committed rGbb5ed9fe1abf: build: Build gpg-pair-tool only when there is newer libgcrypt. (authored by gniibe).
build: Build gpg-pair-tool only when there is newer libgcrypt.
Sep 20 2019, 7:21 AM

Sep 19 2019

deep42thought added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

I set archlinux32.org back to http2 - so you can see for yourself, how gpg fails to retrieve the key for buildmaster@archlinux32.org

Sep 19 2019, 6:02 PM · FAQ, Documentation, dirmngr
deep42thought added a comment to T4708: gpg cannot retrieve key via wkd from http2 server.

I believe, it means, that it may fall back to http1.1 - the documentation is not clear to me on this.
A simple test however shows, that at least curl has no problems to use http1.1 or http1.0 with the http2 enabled nginx.

Sep 19 2019, 6:01 PM · FAQ, Documentation, dirmngr
werner added a project to T4708: gpg cannot retrieve key via wkd from http2 server: dirmngr.

Does your ngix configuration mean that there is no fallback to standard http?

Sep 19 2019, 5:07 PM · FAQ, Documentation, dirmngr
deep42thought created T4708: gpg cannot retrieve key via wkd from http2 server.
Sep 19 2019, 3:44 PM · FAQ, Documentation, dirmngr
gniibe committed rG7c81e5cb97c7: tools: Fix gpg-pair-tool to follow new API. (authored by gniibe).
tools: Fix gpg-pair-tool to follow new API.
Sep 19 2019, 11:37 AM
gniibe committed rGf22a00416149: tools: Use new API of libgcrypt for gpg-pair-tool. (authored by gniibe).
tools: Use new API of libgcrypt for gpg-pair-tool.
Sep 19 2019, 11:37 AM
gniibe committed rGb928de70e072: tools: Don't prepare G in gpg-pair-tool. (authored by gniibe).
tools: Don't prepare G in gpg-pair-tool.
Sep 19 2019, 11:37 AM
gniibe changed the status of T4620: no support for multiple (yubikey) smartcards plugged in at the same time from Open to Testing.

And it is merged into master.
Along with the support of multiple readers/token, the parts which assumes Windows 32-bit are fixed, too.

Sep 19 2019, 1:30 AM · Restricted Project, Bug Report

Sep 18 2019

gniibe added a comment to T4698: Results from clang analyzer.

For argparse.c, it can be only stopped with nonnull attribute for the API, I suppose.

Sep 18 2019, 10:50 AM · gpgrt, Bug Report
gniibe committed rE46bb7eb8c554: tests: Fix deallocation of buffer in t-b64.c. (authored by gniibe).
tests: Fix deallocation of buffer in t-b64.c.
Sep 18 2019, 10:48 AM
gniibe committed rE4b8e8ba9f60c: gpgrt_setenv: Define behavior when value=NULL. (authored by gniibe).
gpgrt_setenv: Define behavior when value=NULL.
Sep 18 2019, 10:48 AM
gniibe committed rEf41991480aaa: estream: Care about erroneous case for stream close. (authored by gniibe).
estream: Care about erroneous case for stream close.
Sep 18 2019, 10:48 AM
gniibe committed rE521aeecf1e41: logging: Fix the case of using socket_dir_cb which may return NULL. (authored by gniibe).
logging: Fix the case of using socket_dir_cb which may return NULL.
Sep 18 2019, 10:48 AM
gniibe claimed T4698: Results from clang analyzer.

I take this so that libgpg-error can be released soon.

Sep 18 2019, 9:21 AM · gpgrt, Bug Report
werner committed rD2cdfc7f2e38b: web: Change address of Jabber MUC (authored by werner).
web: Change address of Jabber MUC
Sep 18 2019, 8:35 AM

Sep 17 2019

gniibe committed rG49671b76eae2: scd,pcsc: Use HANDLE for context and card. (authored by gniibe).
scd,pcsc: Use HANDLE for context and card.
Sep 17 2019, 1:12 PM

Sep 16 2019

jukivili committed rC5516072451d4: Add PowerPC extra CFLAGS also for chacha20-ppc and crc-ppc (authored by jukivili).
Add PowerPC extra CFLAGS also for chacha20-ppc and crc-ppc
Sep 16 2019, 7:10 PM

Sep 15 2019

jukivili committed rC0486b85bd1fb: Add PowerPC vpmsum implementation of CRC (authored by jukivili).
Add PowerPC vpmsum implementation of CRC
Sep 15 2019, 10:31 PM
jukivili committed rC557702f0d53a: Add PowerPC vector implementation of ChaCha20 (authored by jukivili).
Add PowerPC vector implementation of ChaCha20
Sep 15 2019, 10:31 PM
jukivili committed rC0564757b934d: poly1305: add fast addition macro for ppc64 (authored by jukivili).
poly1305: add fast addition macro for ppc64
Sep 15 2019, 10:31 PM
jukivili updated the task description for T4460: libgcrypt performance TODOs.
Sep 15 2019, 10:13 PM · libgcrypt
jukivili claimed T4460: libgcrypt performance TODOs.
Sep 15 2019, 10:13 PM · libgcrypt
gouttegd added a comment to T3428: pinentry-curses should be able to avoid showing *s when user enters passphrase.

The feature has been implemented for the -qt, -tqt, -gtk, and -curses pinentries.

Sep 15 2019, 3:26 PM · pinentry, Feature Request

Sep 14 2019

werner closed T4707: No secret key as Invalid.

The message has not been encrypted to you. Ask the sender to encrypt to you.

Sep 14 2019, 11:40 AM · Bug Report, gpg4win

Sep 13 2019

Scalibur added a comment to T4707: No secret key.

How to fix "failed: no secret key

Sep 13 2019, 10:46 PM · Bug Report, gpg4win
Scalibur created T4707: No secret key.
Sep 13 2019, 10:44 PM · Bug Report, gpg4win
Yuri Chornoivan <yurchor@ukr.net> committed rKLEOPATRA18dc0475720d: Fix minor typos (authored by Yuri Chornoivan <yurchor@ukr.net>).
Fix minor typos
Sep 13 2019, 7:14 AM
gouttegd closed T4697: Release Scute 1.6.0 as Resolved.
Sep 13 2019, 12:19 AM · Release Info, scute

Sep 12 2019

aheinecke closed T4706: RSA4096 option disabled in Kleopatra on newer smartcards as Resolved.

This is generally the better tracker to report Gpg4win / Kleopatra issues. The git systems are linked in a way that I can both automatically add a commit here and in the KDE tracker.
I just noticed the KDE report a bit quicker because there is less traffic, but I would have seen it here within the day.

Sep 12 2019, 3:10 PM · kleopatra, Bug Report, gpg4win
aheinecke added a comment to T2300: Second crlDP is not used if first is unavailable.

Ah nevermind. I think myself that this is nobug and current behavior is correct.

Sep 12 2019, 2:20 PM · g10code, Feature Request, dirmngr
aheinecke reopened T2300: Second crlDP is not used if first is unavailable as "Open".

To implement / test the "not literally RFC compliant but in practice better" behavior let us call this now a wish and feature request as there are certificates in the wild other then intevation's and customers in large institutions run into that.

Sep 12 2019, 2:12 PM · g10code, Feature Request, dirmngr
aheinecke committed rKLEOPATRAd0ceec5c69a4: Pretty up and remove nag in certify dialog (authored by aheinecke).
Pretty up and remove nag in certify dialog
Sep 12 2019, 2:03 PM
aheinecke committed rKLEOPATRAd989c281a64d: Fix version check for pgp cards (authored by aheinecke).
Fix version check for pgp cards
Sep 12 2019, 2:03 PM
mrmekon created T4706: RSA4096 option disabled in Kleopatra on newer smartcards.
Sep 12 2019, 1:21 PM · kleopatra, Bug Report, gpg4win
gniibe committed rGc569e49d1764: scd,pcsc: Remove the restriction of no-scanning in PC/SC. (authored by gniibe).
scd,pcsc: Remove the restriction of no-scanning in PC/SC.
Sep 12 2019, 2:38 AM
gniibe committed rG980d0234d316: scd: Remove old fallback logic from CCID to PC/SC. (authored by gniibe).
scd: Remove old fallback logic from CCID to PC/SC.
Sep 12 2019, 2:38 AM
gniibe committed rG6d750fe7fc42: scd,pcsc: Support "reader-port" option for PC/SC reader. (authored by gniibe).
scd,pcsc: Support "reader-port" option for PC/SC reader.
Sep 12 2019, 2:38 AM

Sep 11 2019

werner committed rD8b70557f194a: web: Fix new scute entry on the integrity page. (authored by werner).
web: Fix new scute entry on the integrity page.
Sep 11 2019, 4:53 PM
werner committed rDdb458f8600cf: web: Mark libgcrypt 1.7 as end-of-life. (authored by werner).
web: Mark libgcrypt 1.7 as end-of-life.
Sep 11 2019, 4:53 PM
werner committed rDb678b7cdb1d6: web: Add download info scute. (authored by werner).
web: Add download info scute.
Sep 11 2019, 4:53 PM
gouttegd committed rScbaa7c4663d8: Post-release updates. (authored by gouttegd).
Post-release updates.
Sep 11 2019, 2:17 PM
gouttegd committed rSbed3c9ba3f82: Release 1.6.0. (authored by gouttegd).
Release 1.6.0.
Sep 11 2019, 2:17 PM
werner closed T4705: GPG symmetric encryption is using old OpenPGP packet formats as Invalid.

There is no need to use the new CTB format for a packet with tag 3. OpenPGP implementations need to support all packet header encodings. We do not plan to make this configurable.

Sep 11 2019, 1:22 PM · Bug Report
l10n daemon script <scripty@kde.org> committed rLIBKLEO597e0f7b74a5: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Sep 11 2019, 9:12 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA6b22be291ac8: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Sep 11 2019, 7:58 AM