Page MenuHome GnuPG
Feed All Stories

Dec 2 2020

aheinecke committed rW0940417f9a56: Install gpgme-w32-spawn.exe also to bin_64 (authored by aheinecke).
Install gpgme-w32-spawn.exe also to bin_64
Dec 2 2020, 10:13 AM
aheinecke set Version to master on T5164: GpgOL: Check that verify errors still show a decrypted message on decrypt & verify.
Dec 2 2020, 9:50 AM · Info Needed, gpgol
aheinecke created T5164: GpgOL: Check that verify errors still show a decrypted message on decrypt & verify.
Dec 2 2020, 9:49 AM · Info Needed, gpgol
gniibe added a comment to T5161: scd: For NetKey cards KEYINFO with keygrip fails.

I can't see how it occurs. "SCE KEYINFO" and "SCD READKEY" with keygrip both goes exactly same code path (the difference is only the "action" argument).

Dec 2 2020, 9:13 AM · Restricted Project, scd
werner added a reviewer for D512: Adds Microsoft Edge (Chromium) browser support: aheinecke.
Dec 2 2020, 9:07 AM
gniibe added a comment to T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.

You better wipe ecc_d_padded or use xtrymalloc_secure.

Dec 2 2020, 9:07 AM · Restricted Project, gnupg, scd, Bug Report
werner added a comment to D513: Support macOS build with SIP by using posix_spawn in tests/random.

Given that this is limited to macOS I have neither objections for 1.8 nor for master

Dec 2 2020, 9:04 AM
werner added a comment to T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.

You better wipe ecc_d_padded or use xtrymalloc_secure.

Dec 2 2020, 8:45 AM · Restricted Project, gnupg, scd, Bug Report
gniibe triaged T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card as High priority.
Dec 2 2020, 4:07 AM · Restricted Project, gnupg, scd, Bug Report
gniibe added a comment to T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.

Here is a patch:

Dec 2 2020, 4:06 AM · Restricted Project, gnupg, scd, Bug Report
gniibe claimed T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.
Dec 2 2020, 3:32 AM · Restricted Project, gnupg, scd, Bug Report
gniibe added a comment to T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.

In future, please try to minimize your log. Your log actually includes information of the session of keytocard before setting key attributes correctly.

Dec 2 2020, 3:31 AM · Restricted Project, gnupg, scd, Bug Report
gniibe removed a project from T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac: Info Needed.

I created D513: Support macOS build with SIP by using posix_spawn in tests/random, which is more conservative; It only affects build under macOS.

Dec 2 2020, 2:22 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe created D513: Support macOS build with SIP by using posix_spawn in tests/random.
Dec 2 2020, 2:17 AM
jeffb255 added a comment to T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14).

I created a different user on the same machine.
I logged with the addons enabled and disabled.

Dec 2 2020, 1:57 AM · Bug Report

Dec 1 2020

pedrolamas created D512: Adds Microsoft Edge (Chromium) browser support.
Dec 1 2020, 10:45 PM
ikloecker committed rLIBKLEOeb0d72f84a01: Merge branch 'work/static-analysis' into 'master' (authored by ikloecker).
Merge branch 'work/static-analysis' into 'master'
Dec 1 2020, 9:58 PM
ikloecker committed rLIBKLEOe81142a39b77: Enable static analysis jobs on Gitlab CI (authored by ikloecker).
Enable static analysis jobs on Gitlab CI
Dec 1 2020, 9:58 PM
mbirth added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

Put

extern char **environ;

after the the include directives.

Dec 1 2020, 9:44 PM · Restricted Project, MacOS, libgcrypt, Bug Report
ikloecker committed rLIBKLEO7a93c1f05f00: Follow invent's move to Qt 5.15 (authored by ikloecker).
Follow invent's move to Qt 5.15
Dec 1 2020, 8:51 PM
werner added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

Put

extern char **environ;

after the the include directives.

Dec 1 2020, 8:51 PM · Restricted Project, MacOS, libgcrypt, Bug Report
ikloecker committed rKLEOPATRA5fc298c5411e: Follow invent's move to Qt 5.15 (authored by ikloecker).
Follow invent's move to Qt 5.15
Dec 1 2020, 8:50 PM
werner added projects to T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card: Bug Report, scd, gnupg (gpg22).
Dec 1 2020, 8:49 PM · Restricted Project, gnupg, scd, Bug Report
mbirth added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

After applying @gniibe 's patch:

Dec 1 2020, 7:05 PM · Restricted Project, MacOS, libgcrypt, Bug Report
ikloecker committed rKLEOPATRA9b6cb5afd835: Use oidForAttributeName() from libkleo (authored by ikloecker).
Use oidForAttributeName() from libkleo
Dec 1 2020, 5:37 PM
ikloecker committed rLIBKLEObea0c29c398e: Add oidForAttributeName() (authored by ikloecker).
Add oidForAttributeName()
Dec 1 2020, 5:34 PM
aheinecke committed rO0d09905c3bb0: Add gpgrt based std::string printf function (authored by aheinecke).
Add gpgrt based std::string printf function
Dec 1 2020, 5:32 PM
aheinecke committed rO3154ae7a8e41: Read compliance name from libkleopatrarc (authored by aheinecke).
Read compliance name from libkleopatrarc
Dec 1 2020, 5:32 PM
aheinecke committed rOf957b44dbaac: Unify icons for OpenPGP and S/MIME (authored by aheinecke).
Unify icons for OpenPGP and S/MIME
Dec 1 2020, 5:32 PM
aheinecke committed rO04ba931792ab: Add oomhelper for folder picker (authored by aheinecke).
Add oomhelper for folder picker
Dec 1 2020, 5:32 PM
szszszsz-nitrokey updated the task description for T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card.
Dec 1 2020, 2:23 PM · Restricted Project, gnupg, scd, Bug Report
aheinecke triaged T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14) as Low priority.

Changing this to priority low until I see a second report from a different user with a similar log.
This looks more like a broken Outlook setup on this users account then a problem where we can actually help.

Dec 1 2020, 2:16 PM · Bug Report
szszszsz-nitrokey created T5163: Cannot import NIST-P521 key to OpenPGP v3.3 smart card in the S1 Public space.
Dec 1 2020, 2:14 PM · Restricted Project, gnupg, scd, Bug Report
aheinecke added a comment to T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14).

No, which addons are active is a user property. So maybe you can try disabling all others but GpgOL, and then basically bisect which one it is that is conflicting.

Dec 1 2020, 2:12 PM · Bug Report
werner committed rG4f9ac5dac093: doc: Add parameters for batch generation of ECC keys. (authored by Jens Meißner <meissner@b1-systems.de>).
doc: Add parameters for batch generation of ECC keys.
Dec 1 2020, 10:02 AM
werner committed rGa3f95a29b97d: doc: Add parameters for batch generation of ECC keys. (authored by Jens Meißner <meissner@b1-systems.de>).
doc: Add parameters for batch generation of ECC keys.
Dec 1 2020, 9:59 AM
werner created T5162: Import problem due to disabled brainpool curves.
Dec 1 2020, 9:35 AM · Bug Report, libgcrypt, gnupg (gpg22)
werner added a comment to T5141: GnuPG: Make quick-gen-key work for keys on PIV cards.

Go ahead (but w/o the /*if (keytime*)*/ line ;-)

Dec 1 2020, 9:11 AM · gnupg (gpg23)
werner added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

The problem is that posix_spawn is not portable enough for libgcrypt. It is really time that we move the spawn functions from gnupg to gpgrt so that we can use them also in Libgcrypt.

Dec 1 2020, 9:08 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe closed T5151: GPGME++ : bad passphrase problems as Resolved.
Dec 1 2020, 5:34 AM · segv, gpgme, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

BTW, I'm not sure if the claim in T5009#136688 is correct.

Dec 1 2020, 4:18 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

See also: https://dev.gnupg.org/T5009#136688

Dec 1 2020, 3:16 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

See my comment in: https://dev.gnupg.org/T5024#139701

Dec 1 2020, 3:10 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5024: libtool problem for some platforms for 'make check' (program built with -no-install won't work without installation).

For macOS, with SIP, some program like libgcrypt/tests/random fails, because the hack for DYLD_LIBRARY_PATH by libtool doesn't work for child process:
https://developer.apple.com/library/archive/documentation/Security/Conceptual/System_Integrity_Protection_Guide/RuntimeProtections/RuntimeProtections.html

Dec 1 2020, 3:09 AM · toolchain

Nov 30 2020

ikloecker added a comment to T5141: GnuPG: Make quick-gen-key work for keys on PIV cards.

The following (probably not entirely correct) patch fixes the problem because it marks the PIV card key as pCARDKEY even though keytime is 0.

diff --git a/g10/keygen.c b/g10/keygen.c
index b510525e3..03c929c0b 100644
--- a/g10/keygen.c
+++ b/g10/keygen.c
@@ -4720,7 +4720,8 @@ quick_generate_keypair (ctrl_t ctrl, const char *uid, const char *algostr,
Nov 30 2020, 9:48 PM · gnupg (gpg23)
mbirth added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

After disabling SIP, now all checks pass without having the library symlinked to /usr/local/lib. So it might be T2056: libgcrypt: make check fails "random" test on OS X 10.11 with link error after all.

Nov 30 2020, 9:03 PM · Restricted Project, MacOS, libgcrypt, Bug Report
mbirth added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

After doing:

Nov 30 2020, 8:32 PM · Restricted Project, MacOS, libgcrypt, Bug Report
jeffb255 added a comment to T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14).

Wouldn't the incompatibility cause all the users to have the same problem, rather than one not and all others to have the problem?
Attached is the file that you requested.

Nov 30 2020, 8:13 PM · Bug Report
bernhard added a comment to T5056: About Kleopatra showing unknown version number.

@s7r Thanks for testing and letting us know!

Nov 30 2020, 5:20 PM · kleopatra
aheinecke added a comment to T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14).

In general there always might be problems with incompatibilities of other addins installed on a system.

Nov 30 2020, 4:23 PM · Bug Report
werner updated subscribers of T5141: GnuPG: Make quick-gen-key work for keys on PIV cards.
Nov 30 2020, 3:31 PM · gnupg (gpg23)
werner added a comment to T5141: GnuPG: Make quick-gen-key work for keys on PIV cards.

The error comes form using READKEY which is processed by gpg-agent. At this time the agent does not yet know the stub key and thus returns ENOENT. At the places before we used "SCD READKEY" which works directly with scdameon and does not need a stub file. We need to review the new(?) way of creating stub files, describe that and then fix this by either making sure tha the stub key is created first or that we use SCD READKEY there too.

Nov 30 2020, 3:30 PM · gnupg (gpg23)
ikloecker closed T5139: Kleopatra keypair creation wizard improvement as Resolved.

Done.

Nov 30 2020, 3:05 PM · Feature Request, kleopatra
ikloecker committed rKLEOPATRAf6527c5e5c96: Remove option to add email address to DN (authored by ikloecker).
Remove option to add email address to DN
Nov 30 2020, 3:03 PM
aheinecke added a comment to T5066: Multiple smartcard (reader) / app support in Kleopatra.

I am running in a setup where my GnuPG 2.3 is connected to a gpg-agent / scdaemon running at GnuPG 2.2.12.

Nov 30 2020, 2:18 PM · kleopatra
aheinecke committed rWacb4f933b067: web: Minor fix to NEWS (authored by aheinecke).
web: Minor fix to NEWS
Nov 30 2020, 12:06 PM
GPF awarded T2291: Smartcard interaction improvement (was: Shadowed private key design (for smartcard)) a Love token.
Nov 30 2020, 11:30 AM · Restricted Project, gnupg, Feature Request
ikloecker created T5161: scd: For NetKey cards KEYINFO with keygrip fails.
Nov 30 2020, 10:57 AM · Restricted Project, scd
aheinecke created T5160: Pinentry: Improved generate support.
Nov 30 2020, 10:57 AM · gpgagent, pinentry
aheinecke triaged T5091: Kleopatra: Close all tabs except this one as Wishlist priority.

Okay, I usually only keep hitting crl+w in that case. But I see the point when doing imports this can be annoying.

Nov 30 2020, 10:53 AM · kleopatra, Feature Request
aheinecke triaged T5082: Kleopatra crashed with qwindows.dll. as Normal priority.
Nov 30 2020, 10:52 AM · kleopatra, gpg4win, Bug Report
aheinecke changed the status of T5082: Kleopatra crashed with qwindows.dll. from Open to Testing.

there was an issue that has been fixed in 3.1.14 which was creating problems / crashes when the home directory of a user had a unicode character in it. So maybe your one user had such a username?

Nov 30 2020, 10:51 AM · kleopatra, gpg4win, Bug Report
werner committed rG806547d9d243: scd:nks: Minor additions to the basic IDLM application support. (authored by werner).
scd:nks: Minor additions to the basic IDLM application support.
Nov 30 2020, 10:19 AM
ikloecker added a comment to T5150: scd: For NetKey cards READKEY with keygrip fails.

Seems to work now. I'm not sure whether I should close this issue because it's marked for backport.

Nov 30 2020, 10:19 AM · backport, gnupg (gpg23), scd
ikloecker closed T5144: scd: Fails/crashes on SCD LEARN --keypairinfo for NetKey cards as Resolved.

Works now. Thanks.

Nov 30 2020, 10:05 AM · Restricted Project, gnupg (gpg23), scd
ikloecker closed T5144: scd: Fails/crashes on SCD LEARN --keypairinfo for NetKey cards, a subtask of T5128: Kleopatra: Generate OpenPGP public key for NetKey card key, as Resolved.
Nov 30 2020, 10:05 AM · kleopatra
jukivili added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

Another issue that comes in to mind is that current ARM/ARM64 HW feature detection most likely wont work on MacOS. Thus HW accelerated AES&SHA&GHASH implementation wont be used.

Nov 30 2020, 8:54 AM · toolchain, MacOS, libgcrypt, Bug Report
werner added a subtask for T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac: T5157: libgcrypt: ARM64 Builds on macOS fail.
Nov 30 2020, 8:47 AM · Restricted Project, MacOS, libgcrypt, Bug Report
werner added a parent task for T5157: libgcrypt: ARM64 Builds on macOS fail: T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.
Nov 30 2020, 8:47 AM · toolchain, MacOS, libgcrypt, Bug Report
gniibe added projects to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac: MacOS, Info Needed.

IIUC, for the build of Homebrew, it is the issue of in: https://github.com/Homebrew/homebrew-core/commit/e7da1e2157b2e8373c3b39ea6398f51588ea537c

Nov 30 2020, 7:30 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

Please have a look at T5024: libtool problem for some platforms for 'make check' (program built with -no-install won't work without installation), if make check works after the installation of libgcrypt.

Nov 30 2020, 7:11 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.

See T2056: libgcrypt: make check fails "random" test on OS X 10.11 with link error, if test with 'random' fails.

Nov 30 2020, 7:09 AM · Restricted Project, MacOS, libgcrypt, Bug Report
jukivili added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

HAVE_COMPATIBLE_GCC_AMD64_PLATFORM_AS is never defined on ARM64 as it depends on "$mpi_cpu_arch" == "x86". Instead I think new check for GCC assembly ELF directives would be needed in configure.ac, similar to HAVE_GCC_ASM_CFI_DIRECTIVES check. Following check should work, but I have not yet tested it:

Nov 30 2020, 6:49 AM · toolchain, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.
Nov 30 2020, 2:51 AM · Restricted Project, MacOS, libgcrypt, Bug Report
gniibe added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

ARM64 has been only tested on platforms which support ELF.

Nov 30 2020, 2:48 AM · toolchain, MacOS, libgcrypt, Bug Report

Nov 29 2020

s7r closed T5056: About Kleopatra showing unknown version number as Resolved.

I confirm I have tried with latest 3.1.14 on two different computers (Windows) where I had this "Unknown version" bug going on and they both properly show 3.1.14 version as it should.

Nov 29 2020, 7:49 PM · kleopatra
s7r added a comment to T5056: About Kleopatra showing unknown version number.
Nov 29 2020, 7:42 PM · kleopatra
jeffb255 added a comment to T5155: GPGol: Will work for one user and not another on the same machine. Windows 10 Outlook 2016 GPGOL 2.4.8 (gpg4win-3.1.14).

I am quite aware of that each user has there own keys and configurations.
I added a third user to the computer, configured them the same as the first user, and was not able to sign or encrypt any emails.
When I clicked on the lock nothing happened.

Nov 29 2020, 5:39 PM · Bug Report
patrick added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

Yes, I did. Identical result.

Nov 29 2020, 5:12 PM · toolchain, MacOS, libgcrypt, Bug Report
werner added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

Why the hell do they that? The standard compiler on a system is called cc which may translated to whatever the system installs for it. gcc is a specific implementation with certain properties. Di you try CC=clang to override this?

Nov 29 2020, 4:41 PM · toolchain, MacOS, libgcrypt, Bug Report
patrick added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

And the arm64 cross-compiler:

Nov 29 2020, 3:06 PM · toolchain, MacOS, libgcrypt, Bug Report
patrick added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

Sorry, I forgot to mention that Apple ships a gcc-wrapper for clang. It just accepts gcc command lines parameters and translates them to clang parameters.
Here is the output of gcc --version:

Nov 29 2020, 2:54 PM · toolchain, MacOS, libgcrypt, Bug Report
werner added a comment to T5157: libgcrypt: ARM64 Builds on macOS fail.

You say that you build using clang but the log shows that you invoke gcc.

Nov 29 2020, 1:22 PM · toolchain, MacOS, libgcrypt, Bug Report
werner added projects to T5157: libgcrypt: ARM64 Builds on macOS fail: libgcrypt, MacOS, toolchain.
Nov 29 2020, 1:21 PM · toolchain, MacOS, libgcrypt, Bug Report
werner closed T5158: E-Mails will not be decrypted as Resolved.
Nov 29 2020, 1:19 PM · Support
mbirth updated the task description for T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.
Nov 29 2020, 1:14 PM · Restricted Project, MacOS, libgcrypt, Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEO5c40c6df31ff: GIT_SILENT: prepare 5.16.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.16.0
Nov 29 2020, 10:57 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRAb74f6c32cafe: GIT_SILENT: prepare 5.16.0 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.16.0
Nov 29 2020, 10:54 AM

Nov 28 2020

mbirth created T5159: make check fails for libgcrypt on Apple Silicon / ARM Mac.
Nov 28 2020, 11:43 PM · Restricted Project, MacOS, libgcrypt, Bug Report
Heinrich added a comment to T5158: E-Mails will not be decrypted.

The problem is meanwhile solved. Thanks a lot
Heinrich

Nov 28 2020, 3:48 PM · Support
Heinrich created T5158: E-Mails will not be decrypted.
Nov 28 2020, 3:00 PM · Support
patrick created T5157: libgcrypt: ARM64 Builds on macOS fail.
Nov 28 2020, 11:27 AM · toolchain, MacOS, libgcrypt, Bug Report

Nov 27 2020

werner closed T4427: Windows 10 update KB4489899 stops gpg-agent launching as Resolved.

No more problems reported, so I assume like @aheinecke that it has been resolved in Windows.

Nov 27 2020, 6:36 PM · Info Needed, Windows, gpgagent, Bug Report
werner claimed T4398: Rework Console and command line handling on Windows.
Nov 27 2020, 6:33 PM · Feature Request, gnupg (gpg23)
werner closed T5038: UTF-8 handling in the command line, a subtask of T4398: Rework Console and command line handling on Windows, as Resolved.
Nov 27 2020, 6:33 PM · Feature Request, gnupg (gpg23)
werner closed T5038: UTF-8 handling in the command line as Resolved.

This has been fixed for Unix on 2.2 and 2.3. The command line fix for Windows is a larger thing already tracked by T4398.

Nov 27 2020, 6:33 PM · gnupg
werner closed T5038: UTF-8 handling in the command line, a subtask of T1514: charset weirdness with non-ascii User IDs under non-UTF-8 locales, as Resolved.
Nov 27 2020, 6:33 PM · Bug Report, gnupg
werner renamed T4398: Rework Console and command line handling on Windows from Rework Console handling on Windows to Rework Console and command line handling on Windows.
Nov 27 2020, 6:31 PM · Feature Request, gnupg (gpg23)
werner closed T1514: charset weirdness with non-ascii User IDs under non-UTF-8 locales as Resolved.

We changed the fallback to utf-8 in 2.2 and 2.3 and thus this bug can be closed. On Windows there is still the problem with the command line. However, this is better tracked with T5038 and its related tasks.

Nov 27 2020, 6:30 PM · Bug Report, gnupg
werner added a parent task for T5038: UTF-8 handling in the command line: T4398: Rework Console and command line handling on Windows.
Nov 27 2020, 6:26 PM · gnupg