Page MenuHome GnuPG
Feed Advanced Search

May 26 2020

werner committed rG20090886706e: scd: Fix Yubikey app switching problem (authored by werner).
scd: Fix Yubikey app switching problem
May 26 2020, 4:24 PM
werner committed rG11f0700282c1: scd:openpgp: Add attribute "UIF" for convenience. (authored by werner).
scd:openpgp: Add attribute "UIF" for convenience.
May 26 2020, 4:24 PM

May 19 2020

werner updated the task description for T4943: Release LibKSBA 1.4.0.
May 19 2020, 4:49 PM · libksba, Release Info
werner closed T4920: Support ECDH in Libksba as Resolved.
May 19 2020, 4:49 PM · libksba, Feature Request, S/MIME
werner closed T4920: Support ECDH in Libksba, a subtask of T4098: GpgSM: Add ECC support, as Resolved.
May 19 2020, 4:49 PM · gnupg (gpg23), Feature Request, S/MIME
werner updated the task description for T4943: Release LibKSBA 1.4.0.
May 19 2020, 4:47 PM · libksba, Release Info
werner committed rDd81e9c937cd6: swdb: Libksba 1.4.0 (authored by werner).
swdb: Libksba 1.4.0
May 19 2020, 4:29 PM
werner closed T4943: Release LibKSBA 1.4.0 as Resolved.
May 19 2020, 4:28 PM · libksba, Release Info
werner committed rKf30f604700d3: Release 1.4.0 (authored by werner).
Release 1.4.0
May 19 2020, 4:26 PM
werner committed rK48ea53e940da: Post release updates (authored by werner).
Post release updates
May 19 2020, 4:26 PM
werner updated the task description for T4943: Release LibKSBA 1.4.0.
May 19 2020, 3:44 PM · libksba, Release Info
werner updated the task description for T4943: Release LibKSBA 1.4.0.
May 19 2020, 3:43 PM · libksba, Release Info
werner updated the task description for T4943: Release LibKSBA 1.4.0.
May 19 2020, 3:42 PM · libksba, Release Info
werner added a comment to T4943: Release LibKSBA 1.4.0.
May 19 2020, 3:41 PM · libksba, Release Info
werner changed the status of T4104: gpgsm/ksba removes leading zeros from signature byte array from Open to Testing.

Seems to be fixed now.

May 19 2020, 3:13 PM · Restricted Project, libksba, S/MIME, Bug Report
werner lowered the priority of T4896: ksba: Ed25519 support from High to Normal.

Parsing and creating of certs does now work. I was not able to find sample CMS objects so this part is not yet finished.

May 19 2020, 3:12 PM · Info Needed, libksba, Feature Request, S/MIME
werner closed T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed, a subtask of T4888: GpgSM: Support ECC key generation by gpgsm_genkey, as Resolved.
May 19 2020, 2:43 PM · Restricted Project, Feature Request, S/MIME
werner closed T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed as Resolved.
May 19 2020, 2:43 PM · Restricted Project, Feature Request, S/MIME
werner added a comment to T4888: GpgSM: Support ECC key generation by gpgsm_genkey.

Finished if an existing key is used. See rG6dc3846d78192e393be73c16c72750734a9174d1 for examples.

May 19 2020, 2:42 PM · Restricted Project, Feature Request, S/MIME
werner added a comment to T4098: GpgSM: Add ECC support.

See rG6dc3846d78192e393be73c16c72750734a9174d1 for examples on how to create a cert

May 19 2020, 2:41 PM · gnupg (gpg23), Feature Request, S/MIME
werner committed rG44676819f287: sm: Create ECC certificates with AKI and SKI by default. (authored by werner).
sm: Create ECC certificates with AKI and SKI by default.
May 19 2020, 2:37 PM
werner committed rG3cd9dac7e097: common: New function to extract Q from an ECC key. (authored by werner).
common: New function to extract Q from an ECC key.
May 19 2020, 2:37 PM
werner committed rG6dc3846d7819: sm: Support creation of EdDSA certificates. (authored by werner).
sm: Support creation of EdDSA certificates.
May 19 2020, 2:37 PM
werner committed rGb18fb0264abd: agent: Allow to use SETHASH for arbitrary data. (authored by werner).
agent: Allow to use SETHASH for arbitrary data.
May 19 2020, 2:37 PM
werner created T4951: Support point compression in Libgcrypt.
May 19 2020, 2:25 PM · Feature Request, libgcrypt

May 18 2020

werner committed rK71a2f1e87790: Finish creation of ECDSA and EdDSA certificates. (authored by werner).
Finish creation of ECDSA and EdDSA certificates.
May 18 2020, 7:34 PM
werner committed rK2605a994a2c7: Allow direct construction of encapsulated octet and bit strings. (authored by werner).
Allow direct construction of encapsulated octet and bit strings.
May 18 2020, 7:34 PM
werner added a comment to T4947: Build of documentation from tarball not deterministic.

Okay, makes sense.

May 18 2020, 8:32 AM · gnupg, Documentation, Bug Report
werner added a comment to T4947: Build of documentation from tarball not deterministic.

SOURCE_DATE_EPOCH is NixOS specific?

May 18 2020, 7:46 AM · gnupg, Documentation, Bug Report

May 17 2020

werner committed rD4d349fd24fa2: drafts,openpgp-webkey-service: Fix typo (authored by werner).
drafts,openpgp-webkey-service: Fix typo
May 17 2020, 6:58 PM
werner added a comment to T4947: Build of documentation from tarball not deterministic.

Looking at the rules I do not understand why we have a problem here, the rule

May 17 2020, 5:47 PM · gnupg, Documentation, Bug Report
werner claimed T4947: Build of documentation from tarball not deterministic.

I think an option to ignore certain files is a better way to do this. I'll give it a try.

May 17 2020, 5:22 PM · gnupg, Documentation, Bug Report

May 14 2020

werner committed rK0e0fad9335ba: Publish constants for the DER builder. (authored by werner).
Publish constants for the DER builder.
May 14 2020, 9:29 PM
werner committed rK88647cd33059: Simplify the ksba_keyinfo_from_sexp function. (authored by werner).
Simplify the ksba_keyinfo_from_sexp function.
May 14 2020, 6:59 PM
werner committed rK289a86aab1b5: tests: Move test file around and make cert-basic silent. (authored by werner).
tests: Move test file around and make cert-basic silent.
May 14 2020, 6:59 PM
werner committed rKfae738f23b5b: Fold duplicated code in keyinfo.c into one function. (authored by werner).
Fold duplicated code in keyinfo.c into one function.
May 14 2020, 6:59 PM
werner committed rK31c42e7568a7: Fix DER builder to a allow a single primitive element. (authored by werner).
Fix DER builder to a allow a single primitive element.
May 14 2020, 6:59 PM
werner committed rK517a6053da6e: tests: Move another test file and make more test silent. (authored by werner).
tests: Move another test file and make more test silent.
May 14 2020, 6:59 PM
werner committed rK9a19e02e467c: Add curve aliases X25519, Ed448, and X448. (authored by werner).
Add curve aliases X25519, Ed448, and X448.
May 14 2020, 6:59 PM
werner created T4943: Release LibKSBA 1.4.0.
May 14 2020, 12:36 PM · libksba, Release Info
werner removed a subtask for T4098: GpgSM: Add ECC support: T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed.
May 14 2020, 10:50 AM · gnupg (gpg23), Feature Request, S/MIME
werner removed a parent task for T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed: T4098: GpgSM: Add ECC support.
May 14 2020, 10:50 AM · Restricted Project, Feature Request, S/MIME
werner added a parent task for T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed: T4888: GpgSM: Support ECC key generation by gpgsm_genkey.
May 14 2020, 10:50 AM · Restricted Project, Feature Request, S/MIME
werner added a subtask for T4888: GpgSM: Support ECC key generation by gpgsm_genkey: T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed.
May 14 2020, 10:50 AM · Restricted Project, Feature Request, S/MIME
werner added a subtask for T4098: GpgSM: Add ECC support: T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed.
May 14 2020, 10:47 AM · gnupg (gpg23), Feature Request, S/MIME
werner added a parent task for T4092: Certificate requests generated from card-based ECDSA keys are incorrectly marked as RSA-signed: T4098: GpgSM: Add ECC support.
May 14 2020, 10:47 AM · Restricted Project, Feature Request, S/MIME
werner closed T4487: libksba: please refresh ASN.1 components from more recent RFCs with BSD licensing as Wontfix.

Won't fix because there is no need for it. ASN.1 modules are the formal description of a protocol and as such not copyrightable.

May 14 2020, 9:45 AM · libksba, Feature Request
werner closed T4801: libksba reproducible builds as Resolved.

Thanks. Applied. Will go into 1.4.0

May 14 2020, 9:38 AM · libksba, Bug Report
werner committed rKcdbced98819d: Fix qsort handler to reproducible sort the string table. (authored by hudson).
Fix qsort handler to reproducible sort the string table.
May 14 2020, 9:37 AM

May 13 2020

werner committed rGb1694987bb64: sm: Support import and verification of EdDSA certificates. (authored by werner).
sm: Support import and verification of EdDSA certificates.
May 13 2020, 9:24 PM
werner committed rCd0f995afe2e0: ecc: Detect the use of a Montgomery curve earlier in ecc_verify. (authored by werner).
ecc: Detect the use of a Montgomery curve earlier in ecc_verify.
May 13 2020, 7:49 PM
werner committed rC534a74401810: oops: I meant RFC-8410 (authored by werner).
oops: I meant RFC-8410
May 13 2020, 6:44 PM
werner committed rC9fa1f1527abf: ecc: Add OIDs from RFC-4880 as aliases for Ed25519 and Curve25519. (authored by werner).
ecc: Add OIDs from RFC-4880 as aliases for Ed25519 and Curve25519.
May 13 2020, 6:43 PM
werner committed rC72726c07cc63: ecc: Remove not yet supported Ed448 and make X25519 an alias. (authored by werner).
ecc: Remove not yet supported Ed448 and make X25519 an alias.
May 13 2020, 11:23 AM
werner committed rC72061833f747: ecc: Make 1.3.101.112 and alias for Ed25519 (authored by werner).
ecc: Make 1.3.101.112 and alias for Ed25519
May 13 2020, 10:58 AM

May 12 2020

werner committed rGc6324ee07a9f: common: Change argument order of log_printhex. (authored by werner).
common: Change argument order of log_printhex.
May 12 2020, 6:54 PM
werner committed rCc750b784d2be: ecc: Temporary hack to enable Ed25519 as specified by rfc8410. (authored by werner).
ecc: Temporary hack to enable Ed25519 as specified by rfc8410.
May 12 2020, 1:34 PM
werner committed rC75a7b17878e0: ecc: Initialize a dummy parameter. (authored by werner).
ecc: Initialize a dummy parameter.
May 12 2020, 1:34 PM
werner committed rK9ceb64d8515a: doc: Fix OID of Ed448. (authored by werner).
doc: Fix OID of Ed448.
May 12 2020, 12:10 PM
werner committed rK30d35448cd58: New API to construct arbitrary DER objects in memory. (authored by werner).
New API to construct arbitrary DER objects in memory.
May 12 2020, 12:04 PM
werner committed rK60943d9f1816: Allow parsing of EdDSA certificates. (authored by werner).
Allow parsing of EdDSA certificates.
May 12 2020, 12:04 PM

May 11 2020

werner claimed T4896: ksba: Ed25519 support.
May 11 2020, 7:50 PM · Info Needed, libksba, Feature Request, S/MIME
werner committed rGf44d395bdfec: sm: Support signing using ECDSA. (authored by werner).
sm: Support signing using ECDSA.
May 11 2020, 7:02 PM
werner changed the status of T4098: GpgSM: Add ECC support from Open to Testing.

Signing using ECDSA does now also work. Tested with 3 in disk keys: nistp256, nistp384 and RSA and verified using gpgsm and Governikus Signer.

May 11 2020, 6:46 PM · gnupg (gpg23), Feature Request, S/MIME
werner committed rKcda81bec2e14: Support creation of ECDSA signed data. (authored by werner).
Support creation of ECDSA signed data.
May 11 2020, 6:23 PM

May 8 2020

werner added a project to T4098: GpgSM: Add ECC support: gnupg (gpg23).
May 8 2020, 6:16 PM · gnupg (gpg23), Feature Request, S/MIME
werner renamed T4098: GpgSM: Add ECC support from GpgSM: Add ECC support (Option to create an X.509/ECDSA key) to GpgSM: Add ECC support.
May 8 2020, 6:15 PM · gnupg (gpg23), Feature Request, S/MIME
werner added a comment to T4098: GpgSM: Add ECC support.

Basic en- and decryption test against Governikus_Signer has now been done. Beware: I had to add a debug option to gpgsm to workaround non-compliance in algorithm support of Governikus; see the rG68b857df13c8a4e6cae5e3a29fd065bf90764547 for details.

May 8 2020, 6:14 PM · gnupg (gpg23), Feature Request, S/MIME
werner committed rG68b857df13c8: sm: Allow decryption using dhSinglePass-stdDH-sha1kdf-scheme. (authored by werner).
sm: Allow decryption using dhSinglePass-stdDH-sha1kdf-scheme.
May 8 2020, 6:11 PM
werner committed rG439c9b5cb550: sm: Print algorithm infos in data decryption mode. (authored by werner).
sm: Print algorithm infos in data decryption mode.
May 8 2020, 6:11 PM
werner committed rG34b628db4618: sm: Cleanup the use of GCRY_PK_ECC and GCRY_PK_ECDSA. (authored by werner).
sm: Cleanup the use of GCRY_PK_ECC and GCRY_PK_ECDSA.
May 8 2020, 6:11 PM
werner committed rGa759fa963a42: sm: Improve readability of the data verification output. (authored by werner).
sm: Improve readability of the data verification output.
May 8 2020, 6:11 PM
werner committed rM004fdf61c8b9: core: Make sure the keygrip is available in WITH_SECRET mode. (authored by werner).
core: Make sure the keygrip is available in WITH_SECRET mode.
May 8 2020, 11:33 AM

May 7 2020

werner committed rG1f6a39092fe4: scd:nks: Add framework to support IDKey cards. (authored by werner).
scd:nks: Add framework to support IDKey cards.
May 7 2020, 7:47 PM
werner committed rG949663474526: card: Allow listing of NKS cards. (authored by werner).
card: Allow listing of NKS cards.
May 7 2020, 7:47 PM
werner committed rGPA49c53193aba4: Make the card manager work again with gnupg devel (2.3) (authored by werner).
Make the card manager work again with gnupg devel (2.3)
May 7 2020, 4:16 PM
werner committed rGaecc008acb64: scd:nks: Get the PIN prompts right for the Signature Card (authored by werner).
scd:nks: Get the PIN prompts right for the Signature Card
May 7 2020, 2:08 PM
werner committed rG549998d1d057: sm: Fix annoying warning about not yet implemented --attribute. (authored by werner).
sm: Fix annoying warning about not yet implemented --attribute.
May 7 2020, 2:08 PM
werner committed rG5c29d25e6c7c: sm: Print the key types as standard key algorithm strings. (authored by werner).
sm: Print the key types as standard key algorithm strings.
May 7 2020, 9:51 AM
werner committed rGaf45d884aa1c: scd:nks: Support decryption using ECDH. (authored by werner).
scd:nks: Support decryption using ECDH.
May 7 2020, 8:20 AM
werner committed rGee6d29f1797e: sm: Support decryption of ECDH data using a smartcard. (authored by werner).
sm: Support decryption of ECDH data using a smartcard.
May 7 2020, 8:20 AM
werner committed rG314859d7e7de: scd: Extend an internal function to also return the algo. (authored by werner).
scd: Extend an internal function to also return the algo.
May 7 2020, 8:20 AM
werner created T4938: Support Signature Card V2.0 (NKS15).
May 7 2020, 8:18 AM · eIDAS, scd, Feature Request, S/MIME

May 6 2020

werner committed rCfd61a77dd571: doc: Really minor fixes. (authored by werner).
doc: Really minor fixes.
May 6 2020, 9:27 PM
werner committed rC79e196a610b1: tests/benchmark.c: fix error message for invalid MAC algo (authored by lumag).
tests/benchmark.c: fix error message for invalid MAC algo
May 6 2020, 9:27 PM

May 4 2020

werner added a comment to T4933: Incorrect expiration time of created subkey.

Moscow time is 3 hours ahead of UTC, so we are talking about midnight 2022-01-01 00:00:00 aka 2021-12-31 24:00:00 . This is way we say we are 1 minute off. But I now see the problem, AWK's strftime needs another arg to to print in UTC. I am not so used strftime because I always use a my tool epoch2iso to convert Epoch times.

gpg -k --with-colons <anotherkeyid> | awk -F: '$1=="pub" { print strftime("%F %T", $7, 1) }'
May 4 2020, 10:27 PM · gnupg (gpg22), Bug Report
werner triaged T4933: Incorrect expiration time of created subkey as Low priority.

So we are a minute off. The expiration timestamp is not stored in the key, instead the difference to the creation timestamp is give. This makes it a bit challenging to get it always right. Did you tried

May 4 2020, 7:32 PM · gnupg (gpg22), Bug Report
werner claimed T4936: Fixes for multiple issues found in Coverity scan of gnupg-2.2.20.

Thanks

May 4 2020, 7:17 PM · gnupg, Bug Report
werner closed T4935: online libgcrypt manual 1.8.5 2020-05-04 has false UPDATED date as Resolved.

Nope, that is correct, the last update of the manual was

May 4 2020, 7:14 PM · Not A Bug, libgcrypt
werner committed rG1e72a1a21849: scd:nks: Add do_with_keygrip and implement a cache. (authored by werner).
scd:nks: Add do_with_keygrip and implement a cache.
May 4 2020, 7:02 PM
werner assigned T4934: Returning automatic variable buffer from a function to gniibe.

@gniibe, will you be so kind and look into this?

May 4 2020, 3:06 PM · dirmngr, Restricted Project, Bug Report
werner changed the status of T4920: Support ECDH in Libksba, a subtask of T4098: GpgSM: Add ECC support, from Open to Testing.
May 4 2020, 3:05 PM · gnupg (gpg23), Feature Request, S/MIME
werner changed the status of T4920: Support ECDH in Libksba from Open to Testing.

It works for me(tm).

May 4 2020, 3:05 PM · libksba, Feature Request, S/MIME
werner committed rGd5051e31a8fc: sm: Support encryption using ECDH keys. (authored by werner).
sm: Support encryption using ECDH keys.
May 4 2020, 3:02 PM
werner committed rG9bc9d0818b0e: doc: Typo fixes in code comments (authored by werner).
doc: Typo fixes in code comments
May 4 2020, 3:02 PM
werner committed rKbe1b4416afc3: Add a dedicated BIT STRING function to the new DER builder. (authored by werner).
Add a dedicated BIT STRING function to the new DER builder.
May 4 2020, 2:55 PM
werner committed rK8ade151b1048: Support creation of ECDH enveloped data object (part 2 of 2) (authored by werner).
Support creation of ECDH enveloped data object (part 2 of 2)
May 4 2020, 2:55 PM
werner added a comment to T4933: Incorrect expiration time of created subkey.
gpg -k --with-colons KEYID | awk -F: '$1=="pub" {print $7}'
May 4 2020, 11:25 AM · gnupg (gpg22), Bug Report
werner added a comment to T4933: Incorrect expiration time of created subkey.

Right, we do have this option only in master (devel version).

May 4 2020, 11:13 AM · gnupg (gpg22), Bug Report

May 1 2020

werner committed rK0ddfbb464e0a: Support creation of ECDH enveloped data object (part 1) (authored by werner).
Support creation of ECDH enveloped data object (part 1)
May 1 2020, 5:17 PM