Page MenuHome GnuPG
Feed All Stories

Mar 17 2023

ikloecker committed rLIBKLEO257c62365032: Move Formatting::isKeyDeVs to compliance (authored by ikloecker).
Move Formatting::isKeyDeVs to compliance
Mar 17 2023, 12:56 PM
ikloecker committed rLIBKLEO222614e5450c: Move Formatting::uidsHaveFullValidity to keyhelpers (authored by ikloecker).
Move Formatting::uidsHaveFullValidity to keyhelpers
Mar 17 2023, 12:56 PM
werner closed T6341: Release GPGME 1.19.0 as Resolved.
Mar 17 2023, 12:23 PM · gpgme, Release Info
RichardM added a comment to T6414: Please don't remove ability to convert /export .kbx keyrings to the legacy .gpg format.

I mean what gpg --export gives Werner.

Mar 17 2023, 11:51 AM · Feature Request
RichardM added a comment to T6414: Please don't remove ability to convert /export .kbx keyrings to the legacy .gpg format.
Mar 17 2023, 11:49 AM · Feature Request
werner committed rM18e09b15d58d: Post release updates (authored by werner).
Post release updates
Mar 17 2023, 11:42 AM
werner committed rM96a30fdf3062: Release 1.19.0 (authored by werner).
Release 1.19.0
Mar 17 2023, 11:42 AM
werner committed rMd086653cc346: python: Update python.m4 configure script. (authored by Ben Greiner (bnavigator) <unknown@dev.gnupg.org>).
python: Update python.m4 configure script.
Mar 17 2023, 11:42 AM
werner added a comment to T6414: Please don't remove ability to convert /export .kbx keyrings to the legacy .gpg format.

Do you mean the pubring.gpg format or the on-wire OpenPGP format; ie. what gpg --export gives?

Mar 17 2023, 10:29 AM · Feature Request
RichardM created T6414: Please don't remove ability to convert /export .kbx keyrings to the legacy .gpg format.
Mar 17 2023, 9:57 AM · Feature Request
ikloecker committed rMe50724e1bbe5: tests: Package the ownertrust file (authored by ikloecker).
tests: Package the ownertrust file
Mar 17 2023, 9:22 AM
werner closed T6413: Add mailmap feature to GnuPG for GDPR compliance as Wontfix.

Not if there are technical reasons to keep the address. BTW, you solution would not help because the fingerprint of key is personal data in the same way as a mail address.

Mar 17 2023, 8:21 AM · Feature Request
l10n daemon script <scripty@kde.org> committed rKLEOPATRA86651337fb58: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Mar 17 2023, 4:56 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA4ebc01a422bf: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Mar 17 2023, 4:16 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA77943f8f5b44: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mar 17 2023, 3:16 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA8208fc6b2b3b: SVN_SILENT made messages (.desktop file) - always resolve ours (authored by l10n daemon script <scripty@kde.org>).
SVN_SILENT made messages (.desktop file) - always resolve ours
Mar 17 2023, 2:52 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAd03f7e133050: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Mar 17 2023, 1:59 AM

Mar 16 2023

danisanti added a comment to T6413: Add mailmap feature to GnuPG for GDPR compliance.

Werner, according to GDPR if a user upload a key with it's name and email address he or she may be able in the future, to ask for removal of this information.
How is this going to happen, to a keyserver, accordingly to your suggestions?

Mar 16 2023, 5:43 PM · Feature Request
werner accepted D546: build: Find correct version string for Python >= 3.10.

Will go into 1.19.0

Mar 16 2023, 3:13 PM · Python, Feature Request, gpgme
werner closed T6385: Regarding "gpg: can't connect to the agent - trying fall back " as Invalid.
Mar 16 2023, 2:54 PM · No Response, Bug Report
werner committed rGf5347fbc25ae: dirmngr: Add framework to implement a fake CRL feature. (authored by werner).
dirmngr: Add framework to implement a fake CRL feature.
Mar 16 2023, 2:53 PM
werner added a comment to T6413: Add mailmap feature to GnuPG for GDPR compliance.

A tool can't make some thing GDPR compliant - this is all about policy and informed choice. There is actually no problem if you allow ppl to decide whether to upload personal information to a public service.

Mar 16 2023, 2:46 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 2:06 PM · Feature Request
danisanti renamed T6413: Add mailmap feature to GnuPG for GDPR compliance from Add mailmap feature to GnuPG to Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 2:01 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:59 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:56 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:55 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:54 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:51 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:49 PM · Feature Request
danisanti updated the task description for T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:47 PM · Feature Request
danisanti created T6413: Add mailmap feature to GnuPG for GDPR compliance.
Mar 16 2023, 1:45 PM · Feature Request
ikloecker claimed T6380: Kleopatra: SignEncryptWidget::isDeVsAndValid does not skip revoked UIds.
Mar 16 2023, 10:43 AM · gpgol, Restricted Project, kleopatra
ikloecker changed the status of T6379: Kleopatra: Brainpool key can not be moved to smart card from Open to Testing.

I think Werner backported some missing functionality to GnuPG 2.2. Please retest with the next version.

Mar 16 2023, 10:43 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, kleopatra
ikloecker changed the status of T5478: Kleopatra: Performance problems decrypting and encrypting large Archives from Open to Testing.

ready for testing

Mar 16 2023, 10:37 AM · Restricted Project, gpgme, kleopatra
ikloecker added a comment to T5478: Kleopatra: Performance problems decrypting and encrypting large Archives.

I wrote T6412: Kleopatra: Inform user if some files were not extracted from encrypted archive to inform the user about not extracted files. I think this shouldn't block this issue because special files probably don't occur in normal usage of GnuPG VSD.

Mar 16 2023, 10:36 AM · Restricted Project, gpgme, kleopatra
ikloecker created T6412: Kleopatra: Inform user if some files were not extracted from encrypted archive.
Mar 16 2023, 10:32 AM · kleopatra, Feature Request
ikloecker placed T6355: gpgtar: Does not allow decryption from stdin up for grabs.
Mar 16 2023, 10:24 AM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Restricted Project
ikloecker moved T6342: GPGME/Kleopatra: Extend gpgme to use gpgtar from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Mar 16 2023, 10:22 AM · Restricted Project, gpgme, kleopatra
ikloecker closed T6342: GPGME/Kleopatra: Extend gpgme to use gpgtar, a subtask of T5478: Kleopatra: Performance problems decrypting and encrypting large Archives, as Resolved.
Mar 16 2023, 10:22 AM · Restricted Project, gpgme, kleopatra
ikloecker closed T6342: GPGME/Kleopatra: Extend gpgme to use gpgtar as Resolved.

Closing. This will be tested with T5478: Kleopatra: Performance problems decrypting and encrypting large Archives.

Mar 16 2023, 10:22 AM · Restricted Project, gpgme, kleopatra
ikloecker changed the status of T6373: Kleopatra: Show progress dialog when moving decrypted archive to final destination from Open to Testing.

I think letting KIO show the progress is okay for now. I hope it also works on Windows (if showing progress is necessary).

Mar 16 2023, 10:20 AM · Restricted Project, kleopatra
ikloecker changed the status of T6373: Kleopatra: Show progress dialog when moving decrypted archive to final destination, a subtask of T5478: Kleopatra: Performance problems decrypting and encrypting large Archives, from Open to Testing.
Mar 16 2023, 10:20 AM · Restricted Project, gpgme, kleopatra
ikloecker added a comment to T6064: Kleopatra: Allow queries to list all certificates on the server.

If it's possible to search for any keys on an LDAP server, then gpg's LDAP support could probably map "*" to the required LDAP search filter. I'm pretty sure that (modern) keyservers don't allow listing all keys.

Mar 16 2023, 10:15 AM · Restricted Project, kleopatra
werner committed rGe4ac3e7dec92: gpgsm: New option --no-pretty-dn (authored by werner).
gpgsm: New option --no-pretty-dn
Mar 16 2023, 9:46 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAfa3242e4d4db: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mar 16 2023, 3:08 AM

Mar 15 2023

werner committed rEfbbc55b3febe: build: Improve the beta numbering by autogen.sh (authored by werner).
build: Improve the beta numbering by autogen.sh
Mar 15 2023, 9:09 PM
werner committed rM98a159eb5e04: build: Update autogen.sh from libgpg-error (authored by werner).
build: Update autogen.sh from libgpg-error
Mar 15 2023, 4:24 PM
werner closed T6411: Signing Other PGP Keys Fails when Using a SmartCard as Invalid.
Mar 15 2023, 4:11 PM · Support
werner added a comment to T6375: gpg-agent race-condition with parallel clients.

FYI: Quite some more days than a few passed by. I still did not found the time for this, sorry.

Mar 15 2023, 4:10 PM · gnupg24, gpgagent, Bug Report
ebo closed T5672: Kleopatra: Improve Kleopatras detection of keyservers as Resolved.

works. tested with VSD 3.1.26 (gpg 2.2.41) and keyserver entry in dirmngr.conf only.

Mar 15 2023, 3:45 PM · Restricted Project, scd, kleopatra
ebo closed T5465: Kleopatra: Improve configuration of LDAP servers for X.509 as Resolved.

works, server can be added to dirmngr.conf via kleopatra

Mar 15 2023, 3:27 PM · Restricted Project, kleopatra
ebo added a comment to T6064: Kleopatra: Allow queries to list all certificates on the server.

works with AD, too. Even with an "a" ;-)

Mar 15 2023, 1:55 PM · Restricted Project, kleopatra
aheinecke committed rO1f9c757872b0: Save MAPI message before decryption (authored by aheinecke).
Save MAPI message before decryption
Mar 15 2023, 12:17 PM
ikloecker committed rKLEOPATRAfefd82dd122b: Add include to make Qt6 build happy (authored by ikloecker).
Add include to make Qt6 build happy
Mar 15 2023, 12:10 PM
werner committed rGe5066f2d1c26: gpgtar: Do not allow the use of stdout for --status-fd (authored by werner).
gpgtar: Do not allow the use of stdout for --status-fd
Mar 15 2023, 12:08 PM
werner committed rGda044776311e: gpgtar: Do not allow the use of stdout for --status-fd (authored by werner).
gpgtar: Do not allow the use of stdout for --status-fd
Mar 15 2023, 12:06 PM
werner committed rG0045583cd2ac: gpgtar: Print a result status with skipped files. (authored by werner).
gpgtar: Print a result status with skipped files.
Mar 15 2023, 12:06 PM
werner committed rGed9a420a221a: gpgtar: Emit progress status lines in create mode. (authored by werner).
gpgtar: Emit progress status lines in create mode.
Mar 15 2023, 12:06 PM
ikloecker committed rKLEOPATRA26f01cf32094: Remove obsolete helpers (authored by ikloecker).
Remove obsolete helpers
Mar 15 2023, 11:50 AM
ikloecker committed rKLEOPATRA32a30acd7d41: Use KIO::moveAs to move decrypted folders to the target folder (authored by ikloecker).
Use KIO::moveAs to move decrypted folders to the target folder
Mar 15 2023, 11:50 AM
ikloecker committed rKLEOPATRA8da2c9acf38d: Sort/group libraries to link (authored by ikloecker).
Sort/group libraries to link
Mar 15 2023, 11:50 AM
ikloecker committed rKLEOPATRA39754005e5b3: Look for all KF libraries with a single find_package command (authored by ikloecker).
Look for all KF libraries with a single find_package command
Mar 15 2023, 11:50 AM
werner placed T6378: keytocard: invalid value up for grabs.
Mar 15 2023, 11:43 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner assigned T6234: Implement access to smartcards via a generic pkcs#11 interface to gniibe.
Mar 15 2023, 11:43 AM · Restricted Project, gnupg26, Feature Request, scd
werner moved T6363: Add progress status output to gpgtar from Backlog to WiP on the gnupg22 board.
Mar 15 2023, 11:29 AM · gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Feature Request
werner committed rG56b65f33d261: gpgtar: Print a result status with skiupped files. (authored by werner).
gpgtar: Print a result status with skiupped files.
Mar 15 2023, 11:24 AM
Tuyen added a comment to T6402: [gnupg] configure: --with-libksba-prefix overrided by --with-ksba-prefix.

Hi @werner,
I understand we should use --with-libksba-prefix, but it doesn't work:

Mar 15 2023, 10:42 AM · Not A Bug, Bug Report
aheinecke triaged T6403: Kleopatra: Warn if a certificate in a group is deleted as Normal priority.

I changed the title of the issue to make it about adding the warning. I also think that is a good idea to avoid confusion / accidents.

Mar 15 2023, 10:16 AM · Feature Request, kleopatra
aheinecke renamed T6403: Kleopatra: Warn if a certificate in a group is deleted from Kleopatra: handling of keys/certificates which are in a group to Kleopatra: Warn if a certificate in a group is deleted.
Mar 15 2023, 10:15 AM · Feature Request, kleopatra
aheinecke closed T6410: Kleopatra: trust root certificate allowed for user as Wontfix.

I disagree. Unless customers explicitly request it users should be able to trust root certificates manually. I do not see much difference between this and allowing users to certify their own certificates.
This can be required when a user wants to encrypt something to an unknown certificate, regardless of VS-NfD or not.

Mar 15 2023, 10:10 AM · kleopatra
werner closed T6402: [gnupg] configure: --with-libksba-prefix overrided by --with-ksba-prefix as Resolved.

That is not a bug but required for backward compatibility. See me/ksba.m4:

Mar 15 2023, 9:55 AM · Not A Bug, Bug Report
werner added a comment to T6410: Kleopatra: trust root certificate allowed for user.

I would suggest that with the VSD 3.2 we make --no-user-trustlist the default via the corresponding registry entry and explain how to use --sys-trustlist-name to use a custom trustlist.

Mar 15 2023, 9:49 AM · kleopatra
werner edited projects for T6411: Signing Other PGP Keys Fails when Using a SmartCard, added: Support; removed Bug Report.
Mar 15 2023, 9:46 AM · Support
werner moved T6378: keytocard: invalid value from Backlog to QA on the gnupg24 board.
Mar 15 2023, 9:43 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner committed rG5118beeec18f: gpg: Delete secret key after "keytocard". (authored by werner).
gpg: Delete secret key after "keytocard".
Mar 15 2023, 9:43 AM
werner committed rG2e065b4bd2d3: scd,openpgp: Switch key attributes between RSA and ECC in writekey. (authored by werner).
scd,openpgp: Switch key attributes between RSA and ECC in writekey.
Mar 15 2023, 9:43 AM
werner committed rG706d557a6451: gpg: Delete secret key after "keytocard". (authored by werner).
gpg: Delete secret key after "keytocard".
Mar 15 2023, 9:37 AM
cklassen added a comment to T6374: EML files: Body is empty.

Hint: When the user disabled GpgOL -> Automation -> Automatically secure messages in the configuration of GpgOL he could see the email body again.

Mar 15 2023, 9:24 AM · gpgol, Bug Report
ikloecker committed rKLEOPATRAedf8ae06ff84: Let the compiler control the lifetime of the dialog (authored by ikloecker).
Let the compiler control the lifetime of the dialog
Mar 15 2023, 9:20 AM
ebo added a comment to T6410: Kleopatra: trust root certificate allowed for user.

Yes, the installation was with the unmodified Installer GnuPG-VS-Desktop-3.1.26.0-Standard.msi

Mar 15 2023, 8:45 AM · kleopatra
ikloecker added a comment to T6411: Signing Other PGP Keys Fails when Using a SmartCard.

This isn't a support forum. You'd better ask on the gnupg-users mailing list before assuming that you found a bug.

Mar 15 2023, 8:13 AM · Support
qtc created T6411: Signing Other PGP Keys Fails when Using a SmartCard.
Mar 15 2023, 8:04 AM · Support
l10n daemon script <scripty@kde.org> committed rLIBKLEO1aee4ca4245e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mar 15 2023, 4:40 AM
l10n daemon script <scripty@kde.org> committed rLIBKLEOdd0fb16c60b1: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Mar 15 2023, 3:04 AM

Mar 14 2023

ikloecker added a comment to T6410: Kleopatra: trust root certificate allowed for user.

Are you using an actual GnuPG VSD installer? I'm asking because, as far as I know, several actions are disabled via immutable config entries that are only shipped to customers.

Mar 14 2023, 6:27 PM · kleopatra
werner closed T6382: keytocard fails to import a nistp384 ECDSA key, a subtask of T6378: keytocard: invalid value, as Resolved.
Mar 14 2023, 4:20 PM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner closed T6382: keytocard fails to import a nistp384 ECDSA key as Resolved.

Closing this one - see T6378

Mar 14 2023, 4:20 PM · yubikey, scd, Bug Report
werner moved T6378: keytocard: invalid value from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Mar 14 2023, 4:18 PM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner changed the status of T6378: keytocard: invalid value from Open to Testing.

Fixed in 2.2 need to check 2.4

Mar 14 2023, 4:18 PM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner committed rG2630872cff71: scd,openpgp: Switch key attributes between RSA and ECC in writekey. (authored by werner).
scd,openpgp: Switch key attributes between RSA and ECC in writekey.
Mar 14 2023, 4:17 PM
ebo created T6410: Kleopatra: trust root certificate allowed for user.
Mar 14 2023, 12:39 PM · kleopatra
werner added a comment to T6378: keytocard: invalid value.

Ooops. We do not have the automatic chnage of key type in the WRITEKEY command of scdaemon. This is only done when generating a key.

Mar 14 2023, 11:47 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner added a comment to T6382: keytocard fails to import a nistp384 ECDSA key.

There is actually a regression wit Yubikeys. The fix for 2.2 is in T5100: rG08cc34911470 - for 2.4 I need to check

Mar 14 2023, 11:35 AM · yubikey, scd, Bug Report
werner committed rG08cc34911470: gpg: Allow no version information of Yubikey (authored by werner).
gpg: Allow no version information of Yubikey
Mar 14 2023, 11:35 AM
ikloecker added a comment to T6386: gpg-agent 2.2: Command "READKEY --card --no-data -- OPENPGP.1" overwrites protected-private-key with shadowed-private-key.

I agree. Something called READ... shouldn't change existing data. (Updating existing data to a new format that doesn't alter the semantics of the existing data is okay.)

Mar 14 2023, 10:59 AM · gnupg22 (gnupg-2.2.42), Bug Report
werner claimed T6378: keytocard: invalid value.
Mar 14 2023, 10:53 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
werner moved T6378: keytocard: invalid value from Backlog to WiP on the gnupg22 board.
Mar 14 2023, 10:49 AM · gnupg24 (gnupg-2.4.1), gnupg22 (gnupg-2.2.42), Bug Report, Restricted Project
ikloecker committed rLIBKLEO26753ebdd2eb: Use correct INSTALL_TARGETS_DEFAULT_ARGS (authored by ikloecker).
Use correct INSTALL_TARGETS_DEFAULT_ARGS
Mar 14 2023, 10:43 AM
werner changed the status of T6386: gpg-agent 2.2: Command "READKEY --card --no-data -- OPENPGP.1" overwrites protected-private-key with shadowed-private-key from Open to Testing.
Mar 14 2023, 10:26 AM · gnupg22 (gnupg-2.2.42), Bug Report