Page MenuHome GnuPG
Feed Advanced Search

Jul 8 2020

werner committed rGeace4bbe1ded: agent: New option --newsymkey for GET_PASSPHRASE (authored by werner).
agent: New option --newsymkey for GET_PASSPHRASE
Jul 8 2020, 2:45 PM
werner committed rGa6a4bbf6debd: gpg: Use integrated passphrase repeat entry also for -c. (authored by werner).
gpg: Use integrated passphrase repeat entry also for -c.
Jul 8 2020, 2:45 PM
werner committed rG9ee975d588ee: gpgsm: Replace all assert calls by log_assert. (authored by werner).
gpgsm: Replace all assert calls by log_assert.
Jul 8 2020, 2:45 PM

Jul 7 2020

werner committed rG6864bba78e76: gpg: Fix flaw in symmetric algorithm selection in mixed mode. (authored by werner).
gpg: Fix flaw in symmetric algorithm selection in mixed mode.
Jul 7 2020, 1:00 PM

Jul 6 2020

werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2020q3/000445.html on T4985: Release Libgcrypt 1.8.6.
Jul 6 2020, 6:46 PM · libgcrypt, Release Info
werner committed rD77bb6be9879a: swdb: libgcrypt 1.8.6 (authored by werner).
swdb: libgcrypt 1.8.6
Jul 6 2020, 6:42 PM
werner added a project to T4985: Release Libgcrypt 1.8.6: libgcrypt.
Jul 6 2020, 4:10 PM · libgcrypt, Release Info
werner closed T4869: constant-time mpi_invm as Resolved.
Jul 6 2020, 4:10 PM · libgcrypt
werner closed T4818: libgcrypt build failures on several platforms as Resolved.
Jul 6 2020, 4:09 PM · Solaris, libgcrypt, Bug Report
werner closed T4985: Release Libgcrypt 1.8.6 as Resolved.
Jul 6 2020, 4:09 PM · libgcrypt, Release Info
werner committed rC31bb4f3210df: mpi: Consider +0 and -0 the same in mpi_cmp. (authored by werner).
mpi: Consider +0 and -0 the same in mpi_cmp.
Jul 6 2020, 3:57 PM
werner committed rCc917ebb48d1b: Post release updates (authored by werner).
Post release updates
Jul 6 2020, 3:57 PM
werner committed rCcfdc44bf08a3: Release 1.8.6 (authored by werner).
Release 1.8.6
Jul 6 2020, 3:57 PM
werner committed rC1f3a92e103d4: mpi: Consider +0 and -0 the same in mpi_cmp. (authored by werner).
mpi: Consider +0 and -0 the same in mpi_cmp.
Jul 6 2020, 12:50 PM
werner created T4986: Libgcrypt bug in GCM for arm64 troubles OMEMO.
Jul 6 2020, 11:10 AM
werner created T4985: Release Libgcrypt 1.8.6.
Jul 6 2020, 10:58 AM · libgcrypt, Release Info
werner closed T4833: libgcrypt: bug in _gcry_poly1305_armv7_neon_init_ext as Resolved.
Jul 6 2020, 10:54 AM · libgcrypt, Bug Report
werner added a comment to T4951: Support point compression in Libgcrypt.

We will need this for 1.9

Jul 6 2020, 10:49 AM · Feature Request, libgcrypt
werner added a comment to T4966: Jitter entropy RNG disable on non-x86?.

Yes please.

Jul 6 2020, 10:45 AM · libgcrypt, Bug Report
werner added a comment to T4694: manage first-party attestations.

Yes, its on my agenda.

Jul 6 2020, 9:13 AM · Keyserver, Feature Request

Jul 3 2020

werner committed rG4a36adaa6431: sm: Exclude rsaPSS from de-vs compliance mode. (authored by werner).
sm: Exclude rsaPSS from de-vs compliance mode.
Jul 3 2020, 5:11 PM
werner committed rG969abcf40cdf: sm: Exclude rsaPSS from de-vs compliance mode. (authored by werner).
sm: Exclude rsaPSS from de-vs compliance mode.
Jul 3 2020, 4:18 PM

Jul 2 2020

werner added a comment to T4981: internationalization (support UNICODE/UTF-8 character set).

Your welcome.

Jul 2 2020, 9:19 PM · i18n, FreeBSD, Feature Request
werner committed rGc1663c690b29: scd:nks: Implement writecert for the Signature card v2. (authored by werner).
scd:nks: Implement writecert for the Signature card v2.
Jul 2 2020, 6:36 PM
werner committed rGdaca1a011b0e: dirmngr: Silence annoying warning for missing default ldap server file. (authored by werner).
dirmngr: Silence annoying warning for missing default ldap server file.
Jul 2 2020, 4:22 PM
werner committed rGf55a05a69ba0: dirmngr: Silence annoying warning for missing default ldap server file. (authored by werner).
dirmngr: Silence annoying warning for missing default ldap server file.
Jul 2 2020, 4:19 PM
werner closed T4758: gnupg-2.2.18/dirmngr/ldap-parse-uri.c:57:27: style: Same expression on both sides of '||'. as Resolved.

Fixed; In master the code already uses our generic scheme parser.

Jul 2 2020, 4:10 PM · LDAP, dirmngr, Bug Report
werner committed rG0795ab1c8f95: dirmngr: Fix case handling of "ldapi" scheme. (authored by werner).
dirmngr: Fix case handling of "ldapi" scheme.
Jul 2 2020, 4:07 PM
werner committed rGd70b8769c888: Support a history file in gpg-card and gpg-connect-agent. (authored by werner).
Support a history file in gpg-card and gpg-connect-agent.
Jul 2 2020, 3:54 PM

Jul 1 2020

werner closed T4618: DANE OpenPGP certificate retrieval does not verify DNSSEC signatures as Wontfix.
Jul 1 2020, 2:10 PM · dns, dirmngr
werner added a comment to T4618: DANE OpenPGP certificate retrieval does not verify DNSSEC signatures.

DANE for OpenPGP is an experimental RFC (RFC-7929) and it is likely that we will remove the support because it is too hard for most users to add keys to a zone. Further a validating resolver on the desktop is too hard to maintain and the cause of too many other failures. And no, unbound etc is not an option because it is not usable by the majority of GnuPG users.

Jul 1 2020, 2:10 PM · dns, dirmngr

Jun 30 2020

werner committed rG07aef873ebc7: scd:nks: Fix certificate read problem with TCOS signature card v2. (authored by werner).
scd:nks: Fix certificate read problem with TCOS signature card v2.
Jun 30 2020, 2:42 PM
werner committed rGfb10b6cba43f: card: Better detect removed cards. Add TCOS PIN menu. (authored by werner).
card: Better detect removed cards. Add TCOS PIN menu.
Jun 30 2020, 2:42 PM
werner committed rG58b091df831f: scd: Change how the removed card flag is set. (authored by werner).
scd: Change how the removed card flag is set.
Jun 30 2020, 2:42 PM

Jun 29 2020

werner renamed T4982: [PATCH] qt libraries should be linked with -fPIC instead of -fpic from [PATCH] qt libraries should be linked with -fPIC instead of -fPIC to [PATCH] qt libraries should be linked with -fPIC instead of -fpic.
Jun 29 2020, 7:53 PM · Debian, gpgme
werner committed rG4f1c257c0366: sm: Fix regression in Friday's commit (authored by werner).
sm: Fix regression in Friday's commit
Jun 29 2020, 3:06 PM
werner committed rG9b6f57492854: scd: Shorten cardio debug output for all zeroes. (authored by werner).
scd: Shorten cardio debug output for all zeroes.
Jun 29 2020, 3:06 PM
werner added projects to T4981: internationalization (support UNICODE/UTF-8 character set): FreeBSD, i18n.
Jun 29 2020, 1:27 PM · i18n, FreeBSD, Feature Request
werner added a comment to T4981: internationalization (support UNICODE/UTF-8 character set).

My FreeBSD box is currently not up, so I can't test right now. You may want to look into gnupg/common/utf8conv.c and there set_native_charset(). For historical reasons we start off with latin-1 but then swicth to the selected charset and intialize iconv accordingly. In the case of an error we sometimes fallback to utf-8. You may want to add some debug code (log_debug ("foo bar string=%s\n", some_string);)

Jun 29 2020, 1:25 PM · i18n, FreeBSD, Feature Request
werner added projects to T4967: Right Click for encryption on file doesn't work : gpg4win, gpgex.
Jun 29 2020, 9:25 AM · gpgex, gpg4win, Bug Report

Jun 28 2020

werner added a comment to T4981: internationalization (support UNICODE/UTF-8 character set).

OpenPGP specifies the use of UTF-8 for all meta data (ie. everything except for the signed/encrypted data). GnuPG has always supported this. I don't known on which OS you are but some don't have UTF-8 support on the command line or tty so you need to tweak your environment first.

Jun 28 2020, 4:30 PM · i18n, FreeBSD, Feature Request
werner closed T4980: Libgpg-Error compilation fails if grep_options are enabled as Wontfix.
Jun 28 2020, 4:17 PM · toolchain, MacOS, Bug Report
werner added a comment to T4980: Libgpg-Error compilation fails if grep_options are enabled.

I don't know about macOS but the commonly used GNU tools state:

Jun 28 2020, 4:15 PM · toolchain, MacOS, Bug Report

Jun 26 2020

werner committed rE3413489d2557: estream: Add gpgrt_fcancel (authored by werner).
estream: Add gpgrt_fcancel
Jun 26 2020, 4:25 PM
werner committed rGad6bf5d67f58: sm: Print the serial number of a cert also in decimal. (authored by werner).
sm: Print the serial number of a cert also in decimal.
Jun 26 2020, 3:28 PM
werner committed rGccbb0cfeefed: sm: Try not to output a partial new message after an error. (authored by werner).
sm: Try not to output a partial new message after an error.
Jun 26 2020, 3:26 PM
werner committed rG208a90197317: sm: Print the serial number of a cert also in decimal. (authored by werner).
sm: Print the serial number of a cert also in decimal.
Jun 26 2020, 1:01 PM

Jun 25 2020

werner committed rG28c069db3bb5: card: Add password change menu for NKS cards. (authored by werner).
card: Add password change menu for NKS cards.
Jun 25 2020, 11:28 AM
werner committed rG2429e8559844: scd:nks: Fix remaining tries warning in --reset mode. (authored by werner).
scd:nks: Fix remaining tries warning in --reset mode.
Jun 25 2020, 11:28 AM
werner committed rG17a25c14f1ed: sm: Fix support verification of nistp521 signatures. (authored by werner).
sm: Fix support verification of nistp521 signatures.
Jun 25 2020, 9:50 AM

Jun 24 2020

werner added a comment to T4980: Libgpg-Error compilation fails if grep_options are enabled.

What do you mean by grep_options?

Jun 24 2020, 10:04 PM · toolchain, MacOS, Bug Report
werner committed rG2d8f060679ba: gpgconf: Fix regression in --launch and --kill from March (authored by werner).
gpgconf: Fix regression in --launch and --kill from March
Jun 24 2020, 12:45 PM
werner committed rGf541e1d95a91: agent: separate out daemon handling infrastructure for reuse (authored by James Bottomley <James.Bottomley@HansenPartnership.com>).
agent: separate out daemon handling infrastructure for reuse
Jun 24 2020, 12:45 PM
werner committed rG0e3b2955aee2: agent: expose shadow key type (authored by James Bottomley via Gnupg-devel <gnupg-devel@gnupg.org>).
agent: expose shadow key type
Jun 24 2020, 10:13 AM
werner added a comment to T4979: enable-ssh-support in windows is broken..

estream_t does not necessary work with stdio or posix calls; that is an implementation detail. For example if you use the mode flag "nonblock" Read/WriteFile are used on Windows.

Jun 24 2020, 10:02 AM · ssh, Duplicate, Bug Report

Jun 22 2020

werner added a comment to T4978: On Windows 10, gpg-connect-agent needs 2 trials to launch gpg-agent.

You may start the gpg-agent by hand:

Jun 22 2020, 10:19 PM · Bug Report
werner added a comment to T4977: dirmngr not working with linux kernel parameter ipv6.disable=1.

The problem is that I have not yet found a _portable_ way to detect proper working v6 or v4 networking without doing a test connection. For privacy reasons we don't want to do that.

Jun 22 2020, 3:32 PM · Restricted Project, gnupg (gpg22), dirmngr, Bug Report
werner added projects to T4977: dirmngr not working with linux kernel parameter ipv6.disable=1: dirmngr, gnupg (gpg22).
Jun 22 2020, 3:20 PM · Restricted Project, gnupg (gpg22), dirmngr, Bug Report
werner added a comment to T4978: On Windows 10, gpg-connect-agent needs 2 trials to launch gpg-agent.

The 5 second timeout is to give the agent time to get ready and accept connections. I can't say with this infor why it takes longer at your site. Can you please try without putty support?

Jun 22 2020, 3:18 PM · Bug Report

Jun 18 2020

werner closed T4976: Revocation Date after importing a Rev-Cert as Resolved.
Jun 18 2020, 10:33 AM · gnupg, Not A Bug
werner added a comment to T4976: Revocation Date after importing a Rev-Cert.

That is unfortunately not possible because there is no fixed link between the key and the rev cert. Instead they are linked via cryptographic signatures. The pre-generated rev certs are a fail stop measure in the case that the user lost access to the private key and can't create a revocation with a concrete reasons etc.

Jun 18 2020, 10:32 AM · gnupg, Not A Bug

Jun 17 2020

werner committed rGd1e1c622d55e: agent: Fix regression in 'd' fixup code for shadowed keys. (authored by werner).
agent: Fix regression in 'd' fixup code for shadowed keys.
Jun 17 2020, 3:09 PM
werner committed rG596212e71abf: sm: Support verification of nistp521 signatures. (authored by werner).
sm: Support verification of nistp521 signatures.
Jun 17 2020, 3:02 PM
werner committed rK486fb0257d08: Support TR-03111 plain format ECDSA signature verification. (authored by werner).
Support TR-03111 plain format ECDSA signature verification.
Jun 17 2020, 2:22 PM

Jun 13 2020

werner triaged T4974: timeout for pinentry too short for key-generation, losing previous entries as Wishlist priority.

5 or 10 minutes are not reasonable in this case. Users are expected to attend the key generation. Your idea of having a countdown after, say 30 seconds, makes sense and should be easy to implement in the pinentries.

Jun 13 2020, 3:05 PM · pinentry
werner triaged T4975: undefined-shift in block_filter as Normal priority.

Thanks for explaining; this may indeed lead to a followup processing error of correct data. However, I don't expect to ever see a fixed length header of 2GiB or more because the sender would have had to buffer all that data in the first place.

Jun 13 2020, 3:02 PM · gnupg (gpg22), Bug Report

Jun 12 2020

werner added a comment to T4975: undefined-shift in block_filter.

Please describe the problem and don't just paste compiler output.

Jun 12 2020, 11:05 PM · gnupg (gpg22), Bug Report

Jun 10 2020

werner assigned T4973: Cross build problem with v1.38 to gniibe.

Thanks for the report. It would be helpful if you can tell us your environment; in particular your build and target(host ) system.

Jun 10 2020, 10:05 AM · Restricted Project, gpgrt

Jun 9 2020

werner changed the status of T4735: Please provide an option to make --verify accept only signatures from specific trusted UID from Open to Testing.
Jun 9 2020, 6:31 PM · gnupg (gpg23), Feature Request
werner added a comment to T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.

Shall we backport this to 2.2 which is our LTS release?

Jun 9 2020, 6:31 PM · gnupg (gpg23), Feature Request
werner committed rGeeb599c9e261: gpg: Fix for new SOS changes when used with Libgcrypt < 1.8.6. (authored by werner).
gpg: Fix for new SOS changes when used with Libgcrypt < 1.8.6.
Jun 9 2020, 6:17 PM
werner committed rC47e8977d24e5: mpi: Fix flags in mpi_copy for opaque MPI. (authored by gniibe).
mpi: Fix flags in mpi_copy for opaque MPI.
Jun 9 2020, 6:10 PM
werner committed rG96f1ed546800: gpg: Extend the TRUST_ status lines. (authored by werner).
gpg: Extend the TRUST_ status lines.
Jun 9 2020, 11:16 AM
werner edited projects for T4971: Pass setrepeat to pinentry for symmetric encryption, too, added: gnupg (gpg22); removed gpgagent, gnupg.

It is actually used but for whatever reason only for signed and symmetric encrypted messages.

Jun 9 2020, 10:05 AM · gnupg (gpg22)

Jun 8 2020

werner added a comment to T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.

With the recent change the --sender option has an effect on the selection of the User ID used for the key validity check and the TRUST_ status lines:

Jun 8 2020, 8:43 PM · gnupg (gpg23), Feature Request
werner committed rG5c2080f4670a: gpg: If possible TRUST values now depend on signer's UID or --sender. (authored by werner).
gpg: If possible TRUST values now depend on signer's UID or --sender.
Jun 8 2020, 8:14 PM
werner committed rG61bb75d045a3: build: Fix recent commit for SOURCE_DATE_EPOCH. (authored by werner).
build: Fix recent commit for SOURCE_DATE_EPOCH.
Jun 8 2020, 8:14 PM
werner closed T4970: TLS certificate expired 2020-06-06 for chat.gnupg.org jabber.gnupg.org as Invalid.

Please don't report such things; we will notice this ourselve.

Jun 8 2020, 4:05 PM
werner committed rGc1c607a51c02: doc: Minor code comment fixes. (authored by werner).
doc: Minor code comment fixes.
Jun 8 2020, 3:24 PM

Jun 5 2020

werner committed rM728ead8ebd42: core: Fix setting of the chain_model signature result. (authored by werner).
core: Fix setting of the chain_model signature result.
Jun 5 2020, 4:06 PM
werner added a project to T4506: OpenPGP Key Certification Forgeries: gnupg (gpg22).
Jun 5 2020, 3:18 PM · gnupg (gpg22)
werner added a comment to D502: ECC change for SOS.

What parts of Libgcrypt 1.9 are needed? Can we consider to backport them?

Jun 5 2020, 2:59 PM
werner added a comment to T4966: Jitter entropy RNG disable on non-x86?.

Thanks for the info. So I guess me added that restrictions to be on the safe side regarding the VS-Nfd evaluation. For 1.9 we can and should lift that.

Jun 5 2020, 12:01 PM · libgcrypt, Bug Report
werner committed rC2dd3e27fc53c: mpicalc: fix typo (authored by lumag).
mpicalc: fix typo
Jun 5 2020, 10:41 AM
werner committed rCbf38e4f28109: doc: The shortest doc dot fix ever. (authored by werner).
doc: The shortest doc dot fix ever.
Jun 5 2020, 10:41 AM

Jun 4 2020

werner triaged T4735: Please provide an option to make --verify accept only signatures from specific trusted UID as High priority.
Jun 4 2020, 12:20 PM · gnupg (gpg23), Feature Request
werner updated subscribers of T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.
Jun 4 2020, 10:48 AM · gnupg (gpg23), Feature Request
werner added a comment to T4966: Jitter entropy RNG disable on non-x86?.

AFAIK, Stephan evaluated it only for x86, let me ask him ...

Jun 4 2020, 10:18 AM · libgcrypt, Bug Report

Jun 3 2020

werner added a comment to T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.

We already have the option --sender which does what @mgorny requests but only in the TOFU case. I need to revisit the system to see whether we can extend it to WoT and direct key signatures.

Jun 3 2020, 5:49 PM · gnupg (gpg23), Feature Request
werner claimed T4735: Please provide an option to make --verify accept only signatures from specific trusted UID.
Jun 3 2020, 5:45 PM · gnupg (gpg23), Feature Request
werner closed T4947: Build of documentation from tarball not deterministic as Resolved.

Done.

Jun 3 2020, 5:17 PM · gnupg, Documentation, Bug Report
werner committed rG5ade2b68db23: doc: Minor enhancement for reproducibility. (authored by werner).
doc: Minor enhancement for reproducibility.
Jun 3 2020, 5:17 PM
werner committed rG074ab108e768: doc: Minor enhancement for reproducibility. (authored by werner).
doc: Minor enhancement for reproducibility.
Jun 3 2020, 5:16 PM
werner committed rG4f6e0e12cbd3: card: Improve openpgp key writing in "writecert". (authored by werner).
card: Improve openpgp key writing in "writecert".
Jun 3 2020, 4:26 PM
werner committed rG48251cf9a7d3: gpg: Improve generation of keys stored on card (brainpool,cv25519). (authored by werner).
gpg: Improve generation of keys stored on card (brainpool,cv25519).
Jun 3 2020, 4:26 PM
werner committed rT821cd31a8727: Require a maintained version of libgcrypt. (authored by werner).
Require a maintained version of libgcrypt.
Jun 3 2020, 2:24 PM
werner added a comment to T4961: ship gpgrt.pc.

Let's wait with this until we ship a libgpgrt. I am not sure what the best way to migrate to another library name. By current idea is start with some release installing two libraries using the two names but with identical code. Some releases later we could require a configure option to install libgpg-error in addition to libgpgrt.

Jun 3 2020, 1:17 PM · Feature Request, gpgrt
werner committed rG7558128e16d7: sm: Fix recently introduced regression in CSR creation. (authored by werner).
sm: Fix recently introduced regression in CSR creation.
Jun 3 2020, 11:25 AM
werner closed T4962: ntbTLS configure dependencies as Resolved.

Thanks. I bumped it up to be in sync with GnuPG 2.2. It also does not make sense to require a Libgcrypt which has reached end-of-life; Thus we now need 1.8.

Jun 3 2020, 10:45 AM · ntbtls, Bug Report
werner committed rG4e3a7aa060f0: Prepare news for 2.2.21 (authored by werner).
Prepare news for 2.2.21
Jun 3 2020, 10:33 AM