Page MenuHome GnuPG
Feed All Stories

Jun 24 2021

Sanmilie requested changes to D534: scdaemon patch to support some situation with PCSC_SHARED (not all).

OK I have finally success to test... the master version has a problem with opening pcsc readers on windows I revert back on older version to able to correct this problem. For the current patch without yubikey reference. I suggest validating the interference in the first task for the maybe_switch app function.

Jun 24 2021, 6:40 PM · yubikey, scd
werner lowered the priority of T3958: GPGME: Qt Bindings and MacOS from Normal to Low.
Jun 24 2021, 6:31 PM · MacOS, qt, gpgme
werner moved T4276: Context.decrypt() throws an error if *any* signature is bad from Backlog to Python stuff on the gpgme board.
Jun 24 2021, 6:30 PM · gpgme, Python, Bug Report
werner added a member for Contributor: jap.
Jun 24 2021, 6:25 PM
werner renamed T5284: Allow gpgme to export w/o attributes from gpgme uses incorrect flags for minimal, no uid export of public keys to Allow gpgme to export w/o attributes.
Jun 24 2021, 6:24 PM · Feature Request, gpgme
werner moved T5353: gpgme: Implement keylist_data for gpgsm from Backlog to For a future release on the gpgme board.
Jun 24 2021, 6:21 PM · gnupg24, gnupg (gpg23), gpgme, Feature Request
werner moved T5438: gpgme_op_keylist_from_data_start ignores GPGME_KEYLIST_MODE_SIGS from Backlog to For a future release on the gpgme board.
Jun 24 2021, 6:21 PM · gpgme (gpgme 1.23.x), OpenPGP, Bug Report
werner moved T5500: gpgme: Test t-idiomatic.py fails with Python 3.8 from Backlog to Python stuff on the gpgme board.
Jun 24 2021, 6:00 PM · Python, gpgme, Bug Report
werner closed T4939: GPGME: Add KEYLIST_MODE_WITH_KEYGRIP as Resolved.

Was released with 1.14.0 see T4996

Jun 24 2021, 5:56 PM · gpgme (gpgme 1.23.x)
TRex58 added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Thanks werner. That helps us to know that such test failure is not a deep issue that would push us to not deliver this version of gnupg on AIX.

Jun 24 2021, 3:56 PM · gnupg, Fedora, libgcrypt, Bug Report
ikloecker moved T4717: Kleopatra: Changing expiry does not change expiry for subkeys from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 24 2021, 9:27 AM · Restricted Project, kleopatra, gpg4win
Laurent Montel <montel@kde.org> committed rLIBKLEO477d9946821a: Use "KSharedConfig::openStateConfig" for dialog layout settings (authored by Laurent Montel <montel@kde.org>).
Use "KSharedConfig::openStateConfig" for dialog layout settings
Jun 24 2021, 7:22 AM

Jun 23 2021

werner added members for Contributor: colemickens, KasparEtter, lbogdan, znull, Saturneric, wiktor-k, Chris91.
Jun 23 2021, 11:57 PM
werner added a member for Contributor: flok.
Jun 23 2021, 11:54 PM
werner added a member for Contributor: midipix.
Jun 23 2021, 11:53 PM
werner added a member for Contributor: orbea.
Jun 23 2021, 11:52 PM
werner added a member for Contributor: Angel.
Jun 23 2021, 11:52 PM
werner removed a member for Contributor: anderous.
Jun 23 2021, 11:51 PM
werner added a member for Contributor: anderous.
Jun 23 2021, 11:51 PM
werner added a member for Contributor: jukivili.
Jun 23 2021, 11:50 PM
werner added a member for Contributor: cbiedl.
Jun 23 2021, 11:50 PM
werner added a member for Contributor: Jakuje.
Jun 23 2021, 11:50 PM
werner added a member for Contributor: gouttegd.
Jun 23 2021, 11:50 PM
werner added a member for Contributor: gollo.
Jun 23 2021, 11:50 PM
werner added a member for Contributor: Suertzz.
Jun 23 2021, 11:49 PM
werner added a member for Contributor: dkg.
Jun 23 2021, 11:49 PM
werner added a member for Contributor: gniibe.
Jun 23 2021, 11:48 PM
werner added a member for Contributor: onickolay.
Jun 23 2021, 11:48 PM
werner edited Description on Contributor.
Jun 23 2021, 11:47 PM
werner changed the edit policy for Contributor.
Jun 23 2021, 11:46 PM
werner added a member for Contributor: bernhard.
Jun 23 2021, 11:46 PM
werner added a member for Contributor: ikloecker.
Jun 23 2021, 11:45 PM
werner added a member for Contributor: gnu.
Jun 23 2021, 11:45 PM
werner added a member for Contributor: aheinecke.
Jun 23 2021, 11:45 PM
werner added a member for Contributor: werner.
Jun 23 2021, 11:45 PM
werner removed a member for Contributor: werner.
Jun 23 2021, 11:45 PM
werner added a member for Contributor: werner.
Jun 23 2021, 11:44 PM
werner changed the edit policy for Contributor.
Jun 23 2021, 11:44 PM
werner changed the Default Edit Policy policy for application Maniphest from Custom Policy to Custom Policy.
Jun 23 2021, 11:41 PM
werner created Contributor.
Jun 23 2021, 11:40 PM
werner changed the Default Edit Policy policy for application Maniphest from All Users to Custom Policy.
Jun 23 2021, 11:37 PM
ikloecker added a project to T4717: Kleopatra: Changing expiry does not change expiry for subkeys: Restricted Project.
Jun 23 2021, 5:02 PM · Restricted Project, kleopatra, gpg4win
ikloecker changed the status of T5336: Kleopatra: Add expiry for certifications in certify dialog from Open to Testing.
Jun 23 2021, 4:58 PM · kleopatra, Restricted Project
ikloecker committed rKLEOPATRA0e3e95d00b3d: Allow specifying an expiration date for a certification (authored by ikloecker).
Allow specifying an expiration date for a certification
Jun 23 2021, 4:58 PM
ikloecker closed T5506: gpgme++, qgpgme: Allow specifying an expiration date for key signatures as Resolved.
Jun 23 2021, 4:58 PM · kleopatra, Restricted Project
ikloecker closed T5506: gpgme++, qgpgme: Allow specifying an expiration date for key signatures, a subtask of T5336: Kleopatra: Add expiry for certifications in certify dialog, as Resolved.
Jun 23 2021, 4:58 PM · kleopatra, Restricted Project
ikloecker closed T5505: gpgme: Allow specifying an expiration date for key signatures (gpgme_op_interact) as Resolved.
Jun 23 2021, 4:58 PM · gpgme, kleopatra, Restricted Project
ikloecker closed T5505: gpgme: Allow specifying an expiration date for key signatures (gpgme_op_interact), a subtask of T5336: Kleopatra: Add expiry for certifications in certify dialog, as Resolved.
Jun 23 2021, 4:58 PM · kleopatra, Restricted Project
ikloecker moved T5336: Kleopatra: Add expiry for certifications in certify dialog from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 23 2021, 4:57 PM · kleopatra, Restricted Project
ikloecker moved T5505: gpgme: Allow specifying an expiration date for key signatures (gpgme_op_interact) from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 23 2021, 4:57 PM · gpgme, kleopatra, Restricted Project
ikloecker moved T5506: gpgme++, qgpgme: Allow specifying an expiration date for key signatures from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 23 2021, 4:57 PM · kleopatra, Restricted Project
gniibe added a comment to T5483: Yubikey OpenPGP app.

For KDF setup (00F9), setting it to '' (null, to reset the DO) doesn't work, but it raises 6a80.
Once KDF is enabled, only factory-reset can reset the feature.

Jun 23 2021, 8:20 AM · yubikey
gniibe closed T5413: Unblock PIN by Reset Code as Resolved.
Jun 23 2021, 7:12 AM · Restricted Project, gnupg, scd
gniibe committed rGb90c55fa66db: scd:ccid: Handle LIBUSB_TRANSFER_OVERFLOW interrupt transfer. (authored by gniibe).
scd:ccid: Handle LIBUSB_TRANSFER_OVERFLOW interrupt transfer.
Jun 23 2021, 5:10 AM
gniibe committed rG25ae80b8eb6e: scd:ccid: Handle LIBUSB_TRANSFER_OVERFLOW interrupt transfer. (authored by gniibe).
scd:ccid: Handle LIBUSB_TRANSFER_OVERFLOW interrupt transfer.
Jun 23 2021, 5:09 AM
gniibe committed rG8e941e19b087: scd:ccid:spr532: Extend abort_cmd for initialization time. (authored by gniibe).
scd:ccid:spr532: Extend abort_cmd for initialization time.
Jun 23 2021, 4:24 AM

Jun 22 2021

werner committed rG2c6b62b3572f: tools: Extend ccidmon to print T=1 APDUs (authored by werner).
tools: Extend ccidmon to print T=1 APDUs
Jun 22 2021, 8:42 PM
ikloecker committed rMac4536990a4f: qt: Extend SignKeyJob to create signatures with expiration date (authored by ikloecker).
qt: Extend SignKeyJob to create signatures with expiration date
Jun 22 2021, 6:54 PM
werner renamed T5504: git commit signing fails due to git's included gpg version. from Commit signing fails to git commit signing fails due to git's included gpg version..
Jun 22 2021, 5:33 PM · FAQ, gpg4win
werner edited projects for T5504: git commit signing fails due to git's included gpg version., added: FAQ; removed Bug Report.

So let's close this task.

Jun 22 2021, 5:32 PM · FAQ, gpg4win
ikloecker moved T5506: gpgme++, qgpgme: Allow specifying an expiration date for key signatures from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 22 2021, 4:39 PM · kleopatra, Restricted Project
ikloecker moved T5505: gpgme: Allow specifying an expiration date for key signatures (gpgme_op_interact) from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jun 22 2021, 4:39 PM · gpgme, kleopatra, Restricted Project
ikloecker committed rM34d9defc42ba: core: Allow specifying an expiration date for key signatures (authored by ikloecker).
core: Allow specifying an expiration date for key signatures
Jun 22 2021, 4:39 PM
ikloecker triaged T5506: gpgme++, qgpgme: Allow specifying an expiration date for key signatures as Wishlist priority.
Jun 22 2021, 4:33 PM · kleopatra, Restricted Project
ikloecker triaged T5505: gpgme: Allow specifying an expiration date for key signatures (gpgme_op_interact) as Wishlist priority.
Jun 22 2021, 4:31 PM · gpgme, kleopatra, Restricted Project
redstonedesigner added a comment to T5504: git commit signing fails due to git's included gpg version..

Setting the gpg.program configuration value to "C:\\Program Files (x86)\\GnuPG\\bin\\gpg.exe" appears to resolve the issue.

Jun 22 2021, 1:23 PM · FAQ, gpg4win
redstonedesigner added a comment to T5504: git commit signing fails due to git's included gpg version..

It appears that Git ships with its own GnuPG program set, as can be seen in the attached image. I'll attempt to set the gpg.program setting in Git and see if that helps.

Jun 22 2021, 1:18 PM · FAQ, gpg4win
werner added a comment to T5504: git commit signing fails due to git's included gpg version..

That looks all fine.

Jun 22 2021, 1:13 PM · FAQ, gpg4win
redstonedesigner changed Version from 3.1.16 to gpg4win 3.1.16 | GnuPG 2.2.28 on T5504: git commit signing fails due to git's included gpg version..
Jun 22 2021, 12:57 PM · FAQ, gpg4win
werner closed T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1 as Resolved.

With the next release you will get only a warning:

gnupg-2.2/common/t-sexputil.c:467: test 0 failed: Unknown elliptic curve - ignored
This is likely due to a patched version of Libgcrypt with removed support for Brainpool curves
Jun 22 2021, 12:32 PM · gnupg, Fedora, libgcrypt, Bug Report
werner committed rG5df658233a3a: tests: Cope with broken Libgcrypt versions (authored by werner).
tests: Cope with broken Libgcrypt versions
Jun 22 2021, 12:31 PM
werner committed rGaf2fd9f0af25: tests: Cope with broken Libgcrypt versions (authored by werner).
tests: Cope with broken Libgcrypt versions
Jun 22 2021, 12:30 PM
redstonedesigner added a comment to T5504: git commit signing fails due to git's included gpg version..

The only download I have executed with regard to gpg4win is from the gpg4win website. You can see the output of the command you specified below.

Jun 22 2021, 11:51 AM · FAQ, gpg4win
werner added a comment to T5504: git commit signing fails due to git's included gpg version..

may give you some clues.

Jun 22 2021, 11:38 AM · FAQ, gpg4win
werner added a comment to T5504: git commit signing fails due to git's included gpg version..

You are not using gpg4win with its included GnuPG 2.2 but some broken gpg version. The error message
"invalid size of lockfile" can only be emitted by the Unix version of GnuPG. Check for other installed gpg versions - there are sites which allows the download of for example a Cygwin version - these version can't work properly on Windows.

Jun 22 2021, 11:37 AM · FAQ, gpg4win
werner changed the status of T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient. from Open to Testing.

I did some test on Windows 10 using gnupg 2.2 with this patch and things work.

Jun 22 2021, 11:33 AM · gnupg (gpg22), Windows, Bug Report
werner committed rGedfe9453be5f: w32: Add fallback in case the Windows console can't cope with Unicode. (authored by werner).
w32: Add fallback in case the Windows console can't cope with Unicode.
Jun 22 2021, 11:14 AM
werner committed rGe387cc97c823: scd:p15: Prepare AODF parsing for other authentication types. (authored by werner).
scd:p15: Prepare AODF parsing for other authentication types.
Jun 22 2021, 11:14 AM
werner committed rGe94dfa21d2c1: w32: Add fallback in case the Windows console can't cope with Unicode. (authored by werner).
w32: Add fallback in case the Windows console can't cope with Unicode.
Jun 22 2021, 11:09 AM
redstonedesigner created T5504: git commit signing fails due to git's included gpg version..
Jun 22 2021, 10:52 AM · FAQ, gpg4win
werner added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

For testing ion Windows 10 you need to switch to "Legacy Console" and reboot.

Jun 22 2021, 7:59 AM · gnupg (gpg22), Windows, Bug Report
gniibe added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

I think that a patch like following is needed:

diff --git a/common/ttyio.c b/common/ttyio.c
index c385700de..55468bdf0 100644
--- a/common/ttyio.c
+++ b/common/ttyio.c
@@ -236,7 +236,21 @@ w32_write_console (const char *string)
   n = wcslen (wstring);
Jun 22 2021, 7:24 AM · gnupg (gpg22), Windows, Bug Report
gniibe added a comment to T5482: Release GnuPG 2.2.28.

Regression with no-unicode font on Windows: T5491

Jun 22 2021, 6:10 AM · Release Info, gnupg (gpg22)
gniibe renamed T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient. from GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient. to Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..
Jun 22 2021, 6:08 AM · gnupg (gpg22), Windows, Bug Report
gniibe added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

When console font is not a Unicode font, it seems that the WriteConsoleW function may return ERROR_GEN_FAILURE.

Jun 22 2021, 4:58 AM · gnupg (gpg22), Windows, Bug Report
Reiner added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

Hello Mr. Koch,

Jun 22 2021, 1:45 AM · gnupg (gpg22), Windows, Bug Report

Jun 21 2021

Valodim added a comment to T4163: hkps://hkps.pool.sks-keyservers.net has to many bad servers to be a good default.

The sks pool is now officially gone.

Jun 21 2021, 11:50 PM · gnupg, Keyserver
werner added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Sorry for the expired certificate.

Jun 21 2021, 10:48 PM · gnupg, Fedora, libgcrypt, Bug Report
TRex58 added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Fix: "I Know so few about gnupg, thus I'm not sure I COULD add test cases, probably not. "

Jun 21 2021, 7:42 PM · gnupg, Fedora, libgcrypt, Bug Report
TRex58 added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Hi,
The site now shows: "NET::ERR_CERT_DATE_INVALID" and I have a limited access to the web page.
Thanks for you explanation. However, I now so few about gnupg, thus I'm not sure I cannot add test cases, probably not. I'll see later if we have to provide on AIX a behavior different than the one of RedHat. Meanwhile, about your last proposal, yes it would be very useful to detect the case, print a warning, and skip the test. That would be helpful. Moreover, if the test deals with smartcards, we do not have on AIX, thus this test is very probably not useful in our environment.

Jun 21 2021, 7:40 PM · gnupg, Fedora, libgcrypt, Bug Report
werner triaged T5503: Add APIs to sign (and encrypt?) with a specific subkey as Normal priority.
Jun 21 2021, 5:16 PM · gpgme, Feature Request
werner added a comment to T5491: Console output failure with no-unicode font: GnuPG 2.2.28 is not working with »encrypt-to« in gpg.conf without specifying another recipient..

Please run

Jun 21 2021, 5:16 PM · gnupg (gpg22), Windows, Bug Report
gahr created T5503: Add APIs to sign (and encrypt?) with a specific subkey.
Jun 21 2021, 5:09 PM · gpgme, Feature Request
werner added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

The thing is that I added a test for a new function which uses standard curves of Libgcrypt. But here we are again at the RedHat mess: They support the NIST curves but they removed support for Brainpool curves. Both are very similiar curves just different parameters. Brainpool is just in Europe out of fear that the NIST curves are rigged by the the NSA. Now, why RedHat removed Brainpool is probably just a legal dept thing who didn't have a clue. The tin foil hats probably see a different reason.

Jun 21 2021, 5:00 PM · gnupg, Fedora, libgcrypt, Bug Report
TRex58 added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.
  • a patch change within scd/apdu.c dealing with a call of: pcsc_connect() since code has changed between the 2 versions: may this be the cause of the failure? (Edited: hummm this patch seems no more required. And I have the same failure without it).
Jun 21 2021, 4:40 PM · gnupg, Fedora, libgcrypt, Bug Report
TRex58 added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Hi Werner,

Jun 21 2021, 4:30 PM · gnupg, Fedora, libgcrypt, Bug Report
Alexander Lohnau <alexander.lohnau@gmx.de> committed rKLEOPATRA86365f336731: Install kleopatra_config_gnupgsystem in pim/kcms/kleopatra namespace (authored by Alexander Lohnau <alexander.lohnau@gmx.de>).
Install kleopatra_config_gnupgsystem in pim/kcms/kleopatra namespace
Jun 21 2021, 3:03 PM
werner added a comment to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.

Supported curves should be listed by

gpg --list-config --with-colons curve
Jun 21 2021, 2:47 PM · gnupg, Fedora, libgcrypt, Bug Report
werner added projects to T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1: libgcrypt, Fedora, gnupg.

I am not sure about Fedora, but RedHat used to remove ECC support from Libgcrypt; GnuPG requires these curves. As long as you don't use ECC you things will work despite of this failed test. The test is new to check and does not anticipate a broken Libgcrypt.

Jun 21 2021, 2:44 PM · gnupg, Fedora, libgcrypt, Bug Report
TRex58 created T5502: gnupg 2.2.28 : test t-sexputil fails on Fedora 33 and AIX 7.1.
Jun 21 2021, 2:29 PM · gnupg, Fedora, libgcrypt, Bug Report