Page MenuHome GnuPG
Feed Advanced Search

Mar 14 2024

werner committed rGf78501c54532: gpg: new list-option store-x509-notations. (authored by werner).
gpg: new list-option store-x509-notations.
Mar 14 2024, 8:59 PM

Mar 13 2024

werner committed rG509d0f76cedd: gpg-check-pattern: Consider an empty pattern file as valid (authored by werner).
gpg-check-pattern: Consider an empty pattern file as valid
Mar 13 2024, 3:32 PM
werner committed rGc27534de9553: gpg-check-pattern: Consider an empty pattern file as valid (authored by werner).
gpg-check-pattern: Consider an empty pattern file as valid
Mar 13 2024, 3:32 PM
werner added a project to T7039: Kleopatra: Configuration dialog doesn't work: KF6.
Mar 13 2024, 9:35 AM · KF6, kleopatra, Restricted Project, Bug Report
werner created KF6.
Mar 13 2024, 9:35 AM
werner added a comment to T7041: Yubikey (PGP + PIV) --pcsc-shared: PIN requires every time.

But only if you can figure out in a transaction or locked sytate whether the card needs a verify. Otherwise we have a race between changing the PIN and verifying a PIN.

Mar 13 2024, 9:25 AM · gnupg26, yubikey, scd, Bug Report

Mar 12 2024

werner committed rG14c1b73093e3: gpg: new list-option show-x509-notations (authored by werner).
gpg: new list-option show-x509-notations
Mar 12 2024, 6:00 PM
werner committed rG4485930f9fd9: Merge branch 'STABLE-BRANCH-2-4' (authored by werner).
Merge branch 'STABLE-BRANCH-2-4'
Mar 12 2024, 4:25 PM
werner committed rG81536535f815: card: Use xstrdup for module names. (authored by werner).
card: Use xstrdup for module names.
Mar 12 2024, 4:25 PM
werner added a comment to T7040: Make it possible to install GnuPG VSD and GPD in parallel.

We need to see whether we can use the gpgconf.ctl feature also for Windows here. Registry entries for gpd and vsd also require a change.

Mar 12 2024, 1:11 PM · kleopatra, Restricted Project
werner committed rD374aab1e08d1: web: Release announcement (authored by werner).
web: Release announcement
Mar 12 2024, 9:51 AM

Mar 11 2024

werner committed rD2e4fe9012bd6: swdb: gpg4win 4.3.1 (authored by werner).
swdb: gpg4win 4.3.1
Mar 11 2024, 4:05 PM
werner committed rW8168cb9e5fdf: Post release updates (authored by werner).
Post release updates
Mar 11 2024, 3:46 PM
werner committed rWb73021f36d47: Release 4.3.1 (authored by werner).
Release 4.3.1
Mar 11 2024, 3:44 PM
werner committed rW218b33806f0a: Update Kleopatra (authored by werner).
Update Kleopatra
Mar 11 2024, 3:44 PM
werner closed T7038: gpg --recv-key return code is 0 as Wontfix.

It could have been discussed whether this makes sense. However, we can't change it anymore because it would change the behaviour. Consider a cron job which looks into a directory with keyids and imports them from a keyserver. It is totally fine if the script returns success if no keys are available.

Mar 11 2024, 1:03 PM · Not A Bug, gnupg, Bug Report
werner committed rP069c21922345: gnome3: prefer gcr-4 (authored by Yaakov Selkowitz via Gnupg-devel <gnupg-devel@gnupg.org>).
gnome3: prefer gcr-4
Mar 11 2024, 12:35 PM
werner reopened T7032: mailserver misconfigured, rejects on non-existing SPF record as "Open".

Your above excerpt for the log is not a bounce. Can you please give me an example from a rejected bounce? Noet that BATV is also in use.

Mar 11 2024, 9:05 AM

Mar 10 2024

werner closed T7032: mailserver misconfigured, rejects on non-existing SPF record as Resolved.

That is on purpose. Please add an SPF record to your site. If there is really really a problem for you with that, write me off tracker.

Mar 10 2024, 1:05 PM
werner closed T7033: I can't recover my password. as Invalid.

See T7034

Mar 10 2024, 1:02 PM · kleopatra, Bug Report
werner closed T7034: I can't recover my password. as Invalid.

Sorry, this is not a help line but a bug tracker. If you lost or forgot your password you are screwed up.

Mar 10 2024, 1:02 PM · Support, Bug Report, gpg4win

Mar 8 2024

werner committed rW916f5670606f: build: Avoid problems with automake and the AUTHENTICODE_FILES. (authored by werner).
build: Avoid problems with automake and the AUTHENTICODE_FILES.
Mar 8 2024, 1:49 PM
werner committed rD67efd76b2f35: Fix typo on the signature key page (authored by werner).
Fix typo on the signature key page
Mar 8 2024, 11:40 AM

Mar 7 2024

werner moved T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy from QA to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:26 PM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T6811: gpgv: Read-only trustedkeys.kbx should not be compressed from QA to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:26 PM · gnupg24 (gnupg-2.4.5), gpgv, Bug Report
werner moved T6946: gpgv: Help automatic reject too short keys from QA to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:25 PM · gnupg24 (gnupg-2.4.5), Feature Request, gpgv
werner moved T6425: improve pinentry behavior and texts in smart card context from WiP to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:25 PM · gnupg24 (gnupg-2.4.5), scd, Bug Report, Restricted Project
werner moved T7000: Take derive usage into account for pkcs#15 cards. from WiP to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:24 PM · gnupg24 (gnupg-2.4.5), Bug Report, scd
werner moved T7025: --trusted-key and --no-options mismatch from WiP to gnupg-2.4.5 on the gnupg24 board.
Mar 7 2024, 3:24 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner closed T6960: Release GnuPG 2.4.5 as Resolved.
Mar 7 2024, 3:23 PM · gnupg24 (gnupg-2.4.5), Release Info
werner committed rWa41bb2d7f195: Update to GnuPG 2.4.5 (authored by werner).
Update to GnuPG 2.4.5
Mar 7 2024, 3:22 PM
werner committed rD67d407e1c6bb: swdb: gnupg 2.4.5 (authored by werner).
swdb: gnupg 2.4.5
Mar 7 2024, 3:13 PM
werner committed rGcbff323b3b24: Release 2.4.5 (authored by werner).
Release 2.4.5
Mar 7 2024, 3:10 PM
werner committed rG609b1ec0c6ff: Post release updates (authored by werner).
Post release updates
Mar 7 2024, 3:10 PM
werner committed rG348de4a8291a: po: msgmerge (authored by werner).
po: msgmerge
Mar 7 2024, 3:10 PM
werner committed rG3ffcd533d422: po: Fix a fuzzy in the German, Polish and Japanese translation (authored by werner).
po: Fix a fuzzy in the German, Polish and Japanese translation
Mar 7 2024, 3:10 PM
werner triaged T7030: Release GnuPG 2.4.6 as Low priority.
Mar 7 2024, 3:09 PM · gnupg24 (2.4.6), Release Info
werner committed rG09431d1762bd: scd: Improve code reability of ccid-driver.c (authored by werner).
scd: Improve code reability of ccid-driver.c
Mar 7 2024, 1:45 PM
werner committed rG1682ca9f012a: scd: Add support for ACR-122U (authored by werner).
scd: Add support for ACR-122U
Mar 7 2024, 1:45 PM
werner committed rGa1ea3b13e0c7: scd: Let the CCID module auto detach the kernel driver. (authored by werner).
scd: Let the CCID module auto detach the kernel driver.
Mar 7 2024, 1:45 PM

Mar 6 2024

werner committed rAdc86ec3749f0: Post release updates (authored by werner).
Post release updates
Mar 6 2024, 4:25 PM
werner committed rAcc2f776904e0: Release 2.5.7 (authored by werner).
Release 2.5.7
Mar 6 2024, 4:25 PM
werner committed rA11e9d822cf6f: build: Change the default for --with-libtool-modification. (authored by gniibe).
build: Change the default for --with-libtool-modification.
Mar 6 2024, 4:25 PM
werner committed rAf845dffa7d25: build: New configure option --with-libtool-modification. (authored by gniibe).
build: New configure option --with-libtool-modification.
Mar 6 2024, 4:25 PM
werner committed rAf884bb136811: build: Update libtool-patch.sed from libgpg-error. (authored by gniibe).
build: Update libtool-patch.sed from libgpg-error.
Mar 6 2024, 4:25 PM
werner committed rWb0ec9d34c9c6: Update to libassuan 2.5.7 and 64bit DLL names (authored by werner).
Update to libassuan 2.5.7 and 64bit DLL names
Mar 6 2024, 4:00 PM
werner committed rWfc13acb761be: Fix filename for shield.ico. (authored by werner).
Fix filename for shield.ico.
Mar 6 2024, 4:00 PM
werner committed rW4348461c8439: Fix for the new READ_AUTOGEN stuff. (authored by werner).
Fix for the new READ_AUTOGEN stuff.
Mar 6 2024, 4:00 PM
werner committed rG79d0e52b2d89: gpg: Fix a possible segv due to an uninitialized gcrypt context. (authored by werner).
gpg: Fix a possible segv due to an uninitialized gcrypt context.
Mar 6 2024, 3:50 PM
werner committed rD3ff750ae225d: swdb: libassuan 2.5.7 (authored by werner).
swdb: libassuan 2.5.7
Mar 6 2024, 3:25 PM
werner updated the task description for T6542: Release libassuan 2.5.6.
Mar 6 2024, 2:42 PM · Release Info, libassuan
werner updated the task description for T7028: Release Libassuan 2.5.7.
Mar 6 2024, 2:41 PM · libassuan, Release Info
werner added projects to T7028: Release Libassuan 2.5.7: Release Info, libassuan.
Mar 6 2024, 2:41 PM · libassuan, Release Info
werner renamed T7028: Release Libassuan 2.5.7 from Release Libassaun 2.5.7 to Release Libassuan 2.5.7.
Mar 6 2024, 2:40 PM · libassuan, Release Info
werner triaged T7028: Release Libassuan 2.5.7 as Normal priority.
Mar 6 2024, 2:40 PM · libassuan, Release Info
werner moved T7026: GnuPG Icon missing in the msi installer from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Mar 6 2024, 2:15 PM · Restricted Project
werner added a comment to P44 (An Untitled Masterwork).

I try it. See T7026

Mar 6 2024, 2:14 PM
werner added a comment to T6843: after enable kdf-setup impossible change user/admin pin.

See also rG40b85d8e8cecadf35e51e84b30de4fac820d714b for gnupg 2.4.

Mar 6 2024, 12:34 PM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner added a project to T6963: Trust system's root CA for checking CRL issuers: gnupg24 (gnupg-2.4.5).
Mar 6 2024, 12:26 PM · gnupg24 (gnupg-2.4.5), gnupg22 (gnupg-2.2.43), Feature Request
werner moved T6961: On Windows the gpgtar --status-fd 2 does not show the gpg status lines from done to gnupg-2.4.5 on the gnupg24 board.
Mar 6 2024, 12:24 PM · gnupg24 (gnupg-2.4.5), Bug Report
werner created gnupg24 (gnupg-2.4.5).
Mar 6 2024, 12:20 PM
werner added a comment to T6757: gpgsm 2.4 Fails to import P12 certificate/key.

Sorry, for not following up earlier. Can you please do me a favor and run the last tests again, this time adding -v and --debug 1 to the invocation? Feel free to forward the output to my private address is that is easier (wk at gnupg.org).

Mar 6 2024, 12:19 PM · gnupg24 (gnupg-2.4.4), S/MIME, Bug Report
werner committed rG00b877ecda43: doc: Typo fix in comment (authored by werner).
doc: Typo fix in comment
Mar 6 2024, 11:53 AM
werner changed the status of T6719: Support Proxy-Authorization: Negotiate on Windows from Open to Testing.
Mar 6 2024, 11:49 AM · gnupg24, gnupg22, Feature Request, Restricted Project
werner changed the status of T6719: Support Proxy-Authorization: Negotiate on Windows, a subtask of T5768: Dirmngr: Use windows proxy settings if system proxy settings should be used, from Open to Testing.
Mar 6 2024, 11:49 AM · Feature Request, gnupg, Restricted Project
werner changed the status of T7000: Take derive usage into account for pkcs#15 cards., a subtask of T7001: Support D-TRUST ECC cards, from Open to Testing.
Mar 6 2024, 11:47 AM · gnupg, scd
werner changed the status of T7000: Take derive usage into account for pkcs#15 cards. from Open to Testing.
Mar 6 2024, 11:47 AM · gnupg24 (gnupg-2.4.5), Bug Report, scd
werner committed rG5999d95e04c4: wks: Make gpg-wks-client --mirror work w/o args. (authored by werner).
wks: Make gpg-wks-client --mirror work w/o args.
Mar 6 2024, 11:44 AM
werner committed rG37cc255e4942: wks: Make gpg-wks-client --mirror work w/o args. (authored by werner).
wks: Make gpg-wks-client --mirror work w/o args.
Mar 6 2024, 10:03 AM

Mar 5 2024

werner triaged T7024: libassuan git URL returns 404 as Low priority.

We migrated to another box and it might be the case that we planned to also support https. I need to see whetehr I can find notes in the etckeeper.

Mar 5 2024, 8:58 AM

Mar 4 2024

Zymlex awarded T3883: Add Win32-OpenSSH support to gpg-agent's ssh-agent a Like token.
Mar 4 2024, 10:11 PM · Not A Bug, workaround, gnupg24, Windows, ssh
werner added inline comments to rC47c594386ebe: cipher: Fix Kyber key in SEXP, and its keygrip computation..
Mar 4 2024, 3:46 PM
werner added a comment to T6944: The default card key generation keeps an unprotected backup of the encryption key on disk.

See also: https://gnupg.org/blog/20240125-smartcard-backup-key.html

Mar 4 2024, 3:38 PM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.4), OpenPGP, scd, Bug Report
werner moved T7025: --trusted-key and --no-options mismatch from Backlog to WiP on the gnupg22 board.
Mar 4 2024, 3:24 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner changed the status of T7025: --trusted-key and --no-options mismatch from Open to Testing.
Mar 4 2024, 3:24 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner committed rG8cd920f6aa20: gpg: Fix mixed invocation with --trusted-keys and --no-options. (authored by werner).
gpg: Fix mixed invocation with --trusted-keys and --no-options.
Mar 4 2024, 3:24 PM
werner moved T7025: --trusted-key and --no-options mismatch from Backlog to WiP on the gnupg24 board.

How to test:

Mar 4 2024, 3:11 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner committed rG345794cfe671: gpg: Fix mixed invocation with --trusted-keys and --no-options. (authored by werner).
gpg: Fix mixed invocation with --trusted-keys and --no-options.
Mar 4 2024, 2:59 PM
werner committed rG36a3550bffd2: wks: Add option --realclean to gpg-wks-client. (authored by werner).
wks: Add option --realclean to gpg-wks-client.
Mar 4 2024, 2:59 PM
werner committed rG74e4dd3668b3: gpg: Prepare for a new export option export-realclean. (authored by werner).
gpg: Prepare for a new export option export-realclean.
Mar 4 2024, 2:59 PM
werner triaged T7025: --trusted-key and --no-options mismatch as Normal priority.
Mar 4 2024, 1:45 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner closed T7024: libassuan git URL returns 404 as Wontfix.

Thanks Ingo.

Mar 4 2024, 8:49 AM
werner added inline comments to rC47c594386ebe: cipher: Fix Kyber key in SEXP, and its keygrip computation..
Mar 4 2024, 8:45 AM

Mar 1 2024

werner added a comment to T7003: 2.2 gpg-agent doesn't allow KEYINFO when restricted (was: gpgme-1.23.2 test failure (t-json)).

In 2.4 we have rG1383aa475 which does

Mar 1 2024, 11:32 AM · gnupg22 (gnupg-2.2.43), gpgagent, gpgme, Gentoo, Bug Report

Feb 29 2024

werner triaged T7023: Support SYSROOT in all Gupg related libraries as Normal priority.
Feb 29 2024, 4:27 PM · Feature Request, Cross-Compiler, gpgrt, libassuan, libksba
werner committed rD0e8407465312: swdb: Add more entries for the ne getswdb.sh (authored by werner).
swdb: Add more entries for the ne getswdb.sh
Feb 29 2024, 3:44 PM
werner committed rG233bf39323ef: build: Extend getswdb.sh to allow a verified download (authored by werner).
build: Extend getswdb.sh to allow a verified download
Feb 29 2024, 3:35 PM
werner committed rD7b9f9342cc05: swdb: Add a few macros to improve getswdb.sh (authored by werner).
swdb: Add a few macros to improve getswdb.sh
Feb 29 2024, 11:01 AM
werner committed rGc27e5be50b33: build: Make getswdb.sh usable outside the GniPG tree. (authored by werner).
build: Make getswdb.sh usable outside the GniPG tree.
Feb 29 2024, 10:25 AM

Feb 28 2024

werner added a comment to T7003: 2.2 gpg-agent doesn't allow KEYINFO when restricted (was: gpgme-1.23.2 test failure (t-json)).

Although I don't think this is the case here one should be aware that tests mail fail due to global configuration of GnuPG (/etc/gnupg/*.conf). There is no easy way so solve this except for running a per-test local installation of GnuPG using the gpgconf.ctl feature.

Feb 28 2024, 10:41 AM · gnupg22 (gnupg-2.2.43), gpgagent, gpgme, Gentoo, Bug Report

Feb 27 2024

werner committed rG962058f70486: Allow tilde expansion for the foo-program options. (authored by werner).
Allow tilde expansion for the foo-program options.
Feb 27 2024, 6:03 PM
werner committed rGdcab895e4cdc: gpg: Emit status lines for errors in the compression layer. (authored by werner).
gpg: Emit status lines for errors in the compression layer.
Feb 27 2024, 6:03 PM
werner committed rGadf4db6e2093: agent: Allow GET_PASSPHRASE in restricted mode. (authored by werner).
agent: Allow GET_PASSPHRASE in restricted mode.
Feb 27 2024, 6:03 PM
werner added a project to T6678: GPGSM: Add support for cert extension 2.5.29.54 Inhibit anyPolicy: gnupg24.
Feb 27 2024, 3:55 PM · gnupg26, S/MIME, Restricted Project
werner added a project to T6677: GPGSM: Add support for cert extension 2.5.29.36 Policy Constraints: gnupg24.
Feb 27 2024, 3:54 PM · gnupg24, S/MIME, Restricted Project
werner added a comment to T6575: gpgtar: General Error is emitted instead of more specific error codes.

Arghh, a GPGME_DEBUG=3 which shows basic I/O preparation does not exhibit the bug.

Feb 27 2024, 11:55 AM · gpgme (gpgme 1.23.x), vsd32 (vsd-3.2.0), Restricted Project
werner added a comment to T6575: gpgtar: General Error is emitted instead of more specific error codes.

Fixing gpg is easy but there is some bug lingering in gpgme which might be a recent regression. An strace shows

Feb 27 2024, 11:48 AM · gpgme (gpgme 1.23.x), vsd32 (vsd-3.2.0), Restricted Project
werner triaged T7017: allow pinentry-program to use and expand ~ in path as Normal priority.
Feb 27 2024, 10:40 AM · gnupg, Feature Request
werner changed the status of T7017: allow pinentry-program to use and expand ~ in path from Open to Testing.

Those options where originally intended for debugging but your suggestion makes sense. I also add this to most other tools.

Feb 27 2024, 10:40 AM · gnupg, Feature Request

Feb 26 2024

werner added a comment to T7016: scdaemon: Sometimes a newly detected card is immediately considered removed.

At the failed attempt I notice a DEVINFO_STATUS removal soon after the SWITCHCARD. This is related to the reader status file and triggered by ccid_slot_status. --debug ipc.app,reader might be a better selection of debug flags here.

Feb 26 2024, 5:34 PM · scd, Restricted Project, Bug Report