Page MenuHome GnuPG
Feed Advanced Search

Dec 30 2021

werner committed rGf0d034ebf4fc: common: New function xreallocarray (authored by werner).
common: New function xreallocarray
Dec 30 2021, 10:28 AM
werner committed rG7a3a1ef37071: gpgconf: Rewrite the gpgconf-comp module. (authored by werner).
gpgconf: Rewrite the gpgconf-comp module.
Dec 30 2021, 10:28 AM
werner committed rG7397872445d6: gpgconf: Support reading global options (part 1). (authored by werner).
gpgconf: Support reading global options (part 1).
Dec 30 2021, 10:28 AM
werner committed rG5f890f417f13: gpgconf: Support reading global options (part 2). (authored by werner).
gpgconf: Support reading global options (part 2).
Dec 30 2021, 10:28 AM

Dec 23 2021

werner closed T5744: Issue with connecting to GPG server as Resolved.

The debug log was from gpg and not from dirmngr and thus it is not helpful. I also guess that an older dirmngr was still running, because the LE bug has been fixed in 2.3.4.

Dec 23 2021, 5:31 PM · Bug Report, gpg4win
werner committed rD7104abaf6f91: faq: Fix a link (authored by werner).
faq: Fix a link
Dec 23 2021, 9:44 AM
werner triaged T5749: Ed25519: Signature (R,S), where S=0 is possible for EdDSA as Low priority.

The odds for this case are infinitesimal so this should not have high priority. I consider this only a code-is-as-specified thing.

Dec 23 2021, 8:50 AM · gnupg

Dec 22 2021

werner added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

The problem is just that there are not that much keyservers left and thus I added those running by large organisations. I really don't want to overload your servers. I would also trust nlnet more than canoncial which is why I started with them.
Its all a mess. Maybe no keyserver should be the default.

Dec 22 2021, 7:54 PM · dirmngr, Keyserver
werner added a project to T5750: GpgOL links to an FSF page for "Unsicher GpgOL": Unknown Object (Project).
Dec 22 2021, 1:42 PM · Unknown Object (Project), Feature Request, gpgol
werner triaged T5750: GpgOL links to an FSF page for "Unsicher GpgOL" as High priority.
Dec 22 2021, 1:42 PM · Unknown Object (Project), Feature Request, gpgol
werner closed T5744: Issue with connecting to GPG server as Resolved.

Please see https://gnupg.org

Dec 22 2021, 7:26 AM · Bug Report, gpg4win

Dec 21 2021

werner added a comment to T5747: Provide a way to request non-FIPS service in FIPS mode.

FWIW, We have a similar mechanism for the secure memory

Dec 21 2021, 6:12 PM · Feature Request, FIPS, libgcrypt
werner closed T5746: Pinetry always loses focus after popping up under Windows as Resolved.

That is a security feature of WIndows. We can't do much about it except for bad hacks. Checkout Kleopatra to see how you can improve this.

Dec 21 2021, 6:11 PM · Not A Bug, pinentry
werner edited projects for T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG, added: gnupg (gpg23), Bug Report; removed gnupg (gpg22).

Things are not that easy. I actually introduced a bug in 2.3.4. Here is a comment from my working copy:

Dec 21 2021, 11:22 AM · Restricted Project, Bug Report, gnupg (gpg23)
werner added a comment to T5744: Issue with connecting to GPG server.

For support please use the mailing list and not the bug tracker.

Dec 21 2021, 10:26 AM · Bug Report, gpg4win
werner added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Seen. @jukivili can you please add it to the AUTHORS file?

Dec 21 2021, 10:13 AM · patch, ppc, libgcrypt, Feature Request

Dec 20 2021

werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2021q4/000468.html on T5654: Release GnuPG 2.3.4.
Dec 20 2021, 11:29 PM · gnupg (gpg23), Release Info
werner committed rD989d56412afa: swdb: GnuPG 2.3.4 (authored by werner).
swdb: GnuPG 2.3.4
Dec 20 2021, 11:14 PM
werner closed T5654: Release GnuPG 2.3.4 as Resolved.
Dec 20 2021, 11:09 PM · gnupg (gpg23), Release Info
werner committed rG69195ab2550e: po: auto update (authored by werner).
po: auto update
Dec 20 2021, 11:03 PM
werner committed rG02b59e282eb3: Post release updates. (authored by werner).
Post release updates.
Dec 20 2021, 11:03 PM
werner committed rGf74c65fd9bbb: Release 2.3.4 (authored by werner).
Release 2.3.4
Dec 20 2021, 11:03 PM
werner committed rG610528725290: gpg: Correctly set the ownertrust for a new key. (authored by werner).
gpg: Correctly set the ownertrust for a new key.
Dec 20 2021, 11:03 PM
werner committed rG2559407c952a: po: Update German translation (authored by werner).
po: Update German translation
Dec 20 2021, 11:03 PM
werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

We can even remove the hexfingerrprint call. Will go into 2.3.4. Thanks.

Dec 20 2021, 10:18 PM · Restricted Project, Bug Report, gnupg (gpg23)
werner triaged T5743: Release GnuPG 2.3.5 as Low priority.
Dec 20 2021, 7:45 PM · Release Info, gnupg (gpg23)
werner committed rGafe5fcda52e8: gpg: Add unfinished code for --export-secret-ssh-key. (authored by werner).
gpg: Add unfinished code for --export-secret-ssh-key.
Dec 20 2021, 7:43 PM
werner committed rG038136ea48ae: wkd: Don't beg for donations (authored by werner).
wkd: Don't beg for donations
Dec 20 2021, 7:43 PM
werner committed rGda3910221608: common: Add set_membuf_err. (authored by werner).
common: Add set_membuf_err.
Dec 20 2021, 7:43 PM
werner committed rGace15e1b09dc: gpg: Allow passing a keygrip as description to pinentry. (authored by werner).
gpg: Allow passing a keygrip as description to pinentry.
Dec 20 2021, 7:43 PM
werner added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

It would be easier to educate gpgme about the 11.

Dec 20 2021, 4:37 PM · Unknown Object (Project), kleopatra
werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

The use of register_trusted_key in do_generate_keypair was a dirty hack utilizing a bug in --trusted-key ; it would be better to set the key as ultimately trusted.

Dec 20 2021, 7:29 AM · Restricted Project, Bug Report, gnupg (gpg23)

Dec 19 2021

werner added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

Please be so kind and describe the regressions you see. 3 log files from your software are not very helpful.

Dec 19 2021, 4:10 PM · Restricted Project, Bug Report, gnupg (gpg23)

Dec 18 2021

werner added a comment to T5741: dirmngr does not ask keyservers for fingerprints.

ikloecker: Please go ahead

Dec 18 2021, 12:04 PM · Unknown Object (Project), dirmngr

Dec 17 2021

werner closed T5737: last_update in gpgme_key_t always be nullptr as Resolved.
Dec 17 2021, 4:14 PM · Support, gpgme
werner closed T5729: Crypto tokens for GnuPG maintainers - an offer as Resolved.
Dec 17 2021, 4:13 PM · dev.gnupg.org
werner added a comment to T5741: dirmngr does not ask keyservers for fingerprints.

IIRC, the problem is/was that this breaks some old keyservers. But there are no more old keyservers - if there are useful keyservers at all.

Dec 17 2021, 4:11 PM · Unknown Object (Project), dirmngr

Dec 15 2021

werner committed rDb113ad7fbb7e: web: Change snail address (authored by werner).
web: Change snail address
Dec 15 2021, 12:34 PM

Dec 14 2021

werner added a subtask for T5732: Backport option reading in gpgconf to 2.2: T5735: Kleopatra: Automatic lookup for certificates for OpenPGP card keys.
Dec 14 2021, 10:15 AM · Unknown Object (Project), Bug Report, kleopatra, backport, gnupg (gpg22)
werner added a parent task for T5735: Kleopatra: Automatic lookup for certificates for OpenPGP card keys: T5732: Backport option reading in gpgconf to 2.2.
Dec 14 2021, 10:15 AM · kleopatra

Dec 13 2021

werner committed rD0775ff5ec916: web: No more donations please (authored by werner).
web: No more donations please
Dec 13 2021, 11:47 PM
werner committed rG449b331952d9: build: Add .git-blame-ignore-revs (authored by werner).
build: Add .git-blame-ignore-revs
Dec 13 2021, 7:29 PM
werner committed rG1af559a9a24f: common,w32: Sync read_w32_registry_string with the gpgrt version (authored by werner).
common,w32: Sync read_w32_registry_string with the gpgrt version
Dec 13 2021, 7:27 PM
werner added a comment to T5732: Backport option reading in gpgconf to 2.2.

A clumsy workaround for the Kleo bug is to put "keyserver ldap:///" into the global gpg.conf after an ignore section containing keyserver. This will let gpgconf emit "ldap:///" unless a local gpg.conf exists.

Dec 13 2021, 5:30 PM · Unknown Object (Project), Bug Report, kleopatra, backport, gnupg (gpg22)
werner changed Due Date from Dec 31 2021, 12:00 AM to Jan 31 2022, 12:00 AM on T5732: Backport option reading in gpgconf to 2.2.
Dec 13 2021, 1:58 PM · Unknown Object (Project), Bug Report, kleopatra, backport, gnupg (gpg22)
werner added a project to T5732: Backport option reading in gpgconf to 2.2: Unknown Object (Project).
Dec 13 2021, 1:57 PM · Unknown Object (Project), Bug Report, kleopatra, backport, gnupg (gpg22)
werner triaged T5732: Backport option reading in gpgconf to 2.2 as High priority.
Dec 13 2021, 1:51 PM · Unknown Object (Project), Bug Report, kleopatra, backport, gnupg (gpg22)
werner closed T5641: Release GnuPG 2.2.33 as Resolved.
Dec 13 2021, 1:46 PM · Release Info, gnupg (gpg22)

Dec 12 2021

werner committed rW40dd26869379: build: Fix upload of encrypted installers. (authored by werner).
build: Fix upload of encrypted installers.
Dec 12 2021, 8:14 PM
werner edited projects for T5729: Crypto tokens for GnuPG maintainers - an offer, added: dev.gnupg.org; removed Feature Request.

Thanks for the offer. However, the core developers are using tokens for more than a decade meanwhile. We even make our own tokens ;-).

Dec 12 2021, 5:10 PM · dev.gnupg.org

Dec 10 2021

werner closed T5726: Setting "compliance de-vs" in gpg.conf with libgcrypt 1.9.0 and newer causes confusing error messages as Resolved.

The first is a warning and the other error codes are exactly what we want.

Dec 10 2021, 1:53 PM · Not A Bug, libgcrypt, gnupg

Dec 9 2021

werner committed rW1ddf9b9a3841: build: Fix encryption of installers (authored by werner).
build: Fix encryption of installers
Dec 9 2021, 5:15 PM

Dec 7 2021

werner added a member for g10code: ebo.
Dec 7 2021, 4:06 PM
werner added a project to T5724: gpgconf --show-configs does not show the registry values : Windows.
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
werner claimed T5724: gpgconf --show-configs does not show the registry values .
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
werner triaged T5724: gpgconf --show-configs does not show the registry values as Normal priority.
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
werner set Due Date to Jan 17 2022, 12:00 AM on T5691: Release libgcrypt 1.10.0.
Dec 7 2021, 11:17 AM · FIPS, Release Info, libgcrypt
werner added a comment to T5718: Provide list of supported/compliant key algorithms.

You may run

Dec 7 2021, 7:40 AM · gnupg24, gnupg (gpg23), Feature Request

Dec 6 2021

werner committed rW40738a133052: appimage: Obviously we need to fix libexec before building the image. (authored by werner).
appimage: Obviously we need to fix libexec before building the image.
Dec 6 2021, 10:29 PM
werner committed rW2fc66e79fe42: appimage: Fix RUNPATH for libexec (authored by werner).
appimage: Fix RUNPATH for libexec
Dec 6 2021, 9:24 PM
werner committed rWf8c6c8473c9b: NEWS: Fix a version number (authored by werner).
NEWS: Fix a version number
Dec 6 2021, 9:24 PM
werner committed rDc6b0875c83b2: verein: Update board to the last election. (authored by werner).
verein: Update board to the last election.
Dec 6 2021, 7:17 PM
werner added a comment to T5706: libgcrypt: random: Remove the feature getting randomness from random daemon.

Yeah, remove it.

Dec 6 2021, 11:28 AM · libgcrypt

Dec 5 2021

werner added a project to Gpg4win or GnuPG VS-Desktop Bug Report: gpg4win.
Dec 5 2021, 4:14 PM · gpg4win
werner added a comment to U9 Report a Gpg4win Bug.

@aheinecke: Please change the Original URL to https://dev.gnupg.org/w/gpg4win-or-gnupg-vs-desktop-bug-report/
. This creates a cover sheet which does not ask the user to login or register an account to later just realize that she may seatch the tracker w/o an account.

Dec 5 2021, 4:13 PM · gpg4win
werner created an object: Gpg4win or GnuPG VS-Desktop Bug Report.
Dec 5 2021, 4:09 PM · gpg4win

Dec 3 2021

werner triaged T5717: Kleopatra: Case insensitive algo compare in Kleopatras new key dialog as Normal priority.
Dec 3 2021, 12:44 PM · Feature Request, kleopatra, Unknown Object (Project)
werner added a comment to T5712: Yubikey 5 NFC only recognized immediately after it is inserted.

There is a "sharing violatation", error which means another process got access to the card. You can try to put

Dec 3 2021, 8:15 AM · Documentation, Bug Report

Nov 30 2021

werner added a comment to T5708: Kleopatra: Configure expiration date default in config.

--quick-gen-key supports this but there is no general option; the 2 years are hard coded.

Nov 30 2021, 10:05 AM · kleopatra, g10code, Unknown Object (Project)

Nov 26 2021

werner committed rW4e1a2b8b701a: appimage: More tweaks to AppRun (authored by werner).
appimage: More tweaks to AppRun
Nov 26 2021, 1:22 PM
werner requested changes to D543: gpg: Use SHA-256 as default s2k-digest-algo.

Sorry, we won't do that. Actually SHA-1 is still allowed when used in a KDF mechanism like S2K. OpenPGp is about Public Key cryptography and for that it is important to keep the keys safe. Protection the private key with a passaord is a failstop scheme which gives time to revoke the actual key and handle the compromise. When suing symmtric encryption (gpg -c) ist is strongly sutested to use a password with at least 128 bit entropy (e.g. by using our magic wand button). The S2K iteration is actually not needed in such a case.

Nov 26 2021, 9:09 AM

Nov 25 2021

werner committed rWd07f6f773f6b: appimage: Need to copy and dereference symlinks (authored by werner).
appimage: Need to copy and dereference symlinks
Nov 25 2021, 4:24 PM
werner closed T5705: GnuPG: System wide configuration ignored when gpg.conf-2 exists as Resolved.

Not a bug but a limitation of 2.2's option listing: In contrast to 2.3 we can't *show* the used options via gpgconf correcly if there is a conflict between global and local options. However, the actually *used* values are different and correct according to the config. In particular a global forced option overrides any local or command line option.

Nov 25 2021, 4:11 PM · Not A Bug, gnupg, Unknown Object (Project)
werner added a project to T5705: GnuPG: System wide configuration ignored when gpg.conf-2 exists: gpgrt.
Nov 25 2021, 2:56 PM · Not A Bug, gnupg, Unknown Object (Project)
werner committed rMb8b49c11e95f: core: Make the gpgconf option parsing of string types more robust (authored by werner).
core: Make the gpgconf option parsing of string types more robust
Nov 25 2021, 11:52 AM
werner committed rMeb37d6469e72: core: Support dirinfo("socketdir") (authored by werner).
core: Support dirinfo("socketdir")
Nov 25 2021, 11:52 AM
werner committed rM43de18a292b2: tests: Silence libtool warning on Windows. (authored by werner).
tests: Silence libtool warning on Windows.
Nov 25 2021, 11:52 AM
werner added a comment to T5704: Ed448/X448 defined in draft-ietf-openpgp-crypto-refresh-04.

We should only allow this for v5. This way we get incentive to move forward. ed448 requires a newer version anyway and thus it is good to take this as an opportunity to also demand AEAD etc.

Nov 25 2021, 9:29 AM · gnupg24, OpenPGP, gnupg (gpg23)

Nov 23 2021

werner triaged T5701: Mismatch between enums and config table as High priority.

Thanks for the well written bug report and the fix.

Nov 23 2021, 1:29 PM · gnupg (gpg23), Bug Report
werner changed the status of T5644: Heuristic for default reader detection from Open to Testing.
Nov 23 2021, 1:28 PM · Restricted Project, Feature Request, gnupg (gpg22)
werner closed T5650: Check problems with gpgconf and global config files as Resolved.
Nov 23 2021, 1:27 PM · Unknown Object (Project), gnupg (gpg22)
werner closed T5682: ed25519 internal authenticate with openpgpcard may send long data over short apdu as Resolved.
Nov 23 2021, 1:26 PM · Restricted Project, scd, ssh, Bug Report
werner set External Link to https://lists.gnupg.org/pipermail/gnupg-announce/2021q4/000467.html on T5641: Release GnuPG 2.2.33.
Nov 23 2021, 1:26 PM · Release Info, gnupg (gpg22)
werner committed rD590e4c8499d9: swdb: GnuPG 2.2.33 (authored by werner).
swdb: GnuPG 2.2.33
Nov 23 2021, 12:17 PM
werner committed rW3ab78a7bbf49: version-3: Update GnuPG to 2.2.33 (authored by werner).
version-3: Update GnuPG to 2.2.33
Nov 23 2021, 12:06 PM
werner updated the task description for T5641: Release GnuPG 2.2.33.
Nov 23 2021, 11:56 AM · Release Info, gnupg (gpg22)
werner committed rG9adee2dd3383: po: Auto update (authored by werner).
po: Auto update
Nov 23 2021, 11:49 AM
werner committed rG65c80d6b0f6a: Post release updates (authored by werner).
Post release updates
Nov 23 2021, 11:49 AM
werner committed rG007fea8ce9af: po: Update Russian translation. (authored by Ineiev <ineiev@gnu.org>).
po: Update Russian translation.
Nov 23 2021, 11:49 AM
werner committed rG457f6ac1ef6d: Release 2.2.33 (authored by werner).
Release 2.2.33
Nov 23 2021, 11:49 AM
werner triaged T5703: Release GnuPG 2.2.34 as Low priority.
Nov 23 2021, 11:47 AM · Release Info, gnupg (gpg22)
werner closed T5076: [solved] gpg-agent respawn another process randomly and causes cached passphrase check failed / expired as Resolved.
Nov 23 2021, 9:18 AM · gnupg (gpg22), Bug Report
werner closed T5205: GNuPG compile error as Resolved.
Nov 23 2021, 9:17 AM · gnupg (gpg22), toolchain, Support
werner updated the task description for T5058: Review --trusted-key.
Nov 23 2021, 9:16 AM · gnupg24, gnupg (gpg23)
werner closed T5120: Incompatible Ed25519 secret key (no-encryption), a subtask of T5114: GnuPG fails to import back generated and exported EdDSA secret key., as Resolved.
Nov 23 2021, 9:15 AM · gnupg, Restricted Project, gpgagent, Bug Report
werner closed T5120: Incompatible Ed25519 secret key (no-encryption) as Resolved.

I guess this is solved. Feel free to re-open and schedule for 2.2.34

Nov 23 2021, 9:15 AM · gnupg (gpg22), Bug Report
werner lowered the priority of T5235: Delays in dirmngr http connections on Windows from Normal to Low.
Nov 23 2021, 9:14 AM · can't replicate, dirmngr, ntbtls, Windows, gnupg (gpg22)
werner added a project to T5235: Delays in dirmngr http connections on Windows: can't replicate.

Might be a TOR Thing?

Nov 23 2021, 9:14 AM · can't replicate, dirmngr, ntbtls, Windows, gnupg (gpg22)
werner closed T5656: Error emitted: gpg: error reading symlink '/proc/curproc/file': No such file or directory as Resolved.
Nov 23 2021, 9:07 AM · gnupg (gpg23), MacOS, Bug Report
werner triaged T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le as Normal priority.

FWIW: We need a DCO; see doc/HACKING.

Nov 23 2021, 9:06 AM · patch, ppc, libgcrypt, Feature Request