Page MenuHome GnuPG
Feed Advanced Search

Jul 31 2024

ebo moved T6749: Kleopatra: show only one error/information window for a certificate import from QA to vsd-3.3.0 on the vsd33 board.
Jul 31 2024, 12:34 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ebo closed T6749: Kleopatra: show only one error/information window for a certificate import as Resolved.

tested with Version VS-Desktop-3.2.93.32-Beta

Jul 31 2024, 12:34 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ebo moved T6527: Kleopatra: remove "Today" from the choice of expiry dates for key generation from QA to vsd-3.3.0 on the vsd33 board.
Jul 31 2024, 12:24 PM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo closed T6527: Kleopatra: remove "Today" from the choice of expiry dates for key generation as Resolved.

works

Jul 31 2024, 12:24 PM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo closed T7043: Kleopatra: improve certificate deletion dialog, a subtask of T6403: Kleopatra: Warn if a certificate in a group is deleted, as Resolved.
Jul 31 2024, 12:21 PM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo moved T6420: Kleopatra: improve layout of and text in smartcard management view from QA to vsd-3.3.0 on the vsd33 board.
Jul 31 2024, 10:46 AM · vsd33 (vsd-3.3.0), Feature Request, Restricted Project, kleopatra
ebo closed T6420: Kleopatra: improve layout of and text in smartcard management view as Resolved.

Texts are improved, checked with Gpg4win Beta-41

Jul 31 2024, 10:45 AM · vsd33 (vsd-3.3.0), Feature Request, Restricted Project, kleopatra
ebo updated the task description for T6420: Kleopatra: improve layout of and text in smartcard management view.
Jul 31 2024, 10:44 AM · vsd33 (vsd-3.3.0), Feature Request, Restricted Project, kleopatra

Jul 29 2024

aheinecke added a comment to T7098: Change the GpgOL encryption icon according to its state.

A better solution might be to use categories to have that element "this message will be signed / this message will be encrypted" above the edit window. But what I find more important and so much more a high priority is that in cases we have a failure saving the draft info flags an error message should come up. This happened for a customer and in the logs I could see that MAPI returned an error. the button was not toggled in this case but the mail also was not marked for encryption. T7144 is the task for that so I'd suggest to start with that one.

Jul 29 2024, 10:36 PM · vsd33, Feature Request, Restricted Project, gpgol
aheinecke added a comment to T7098: Change the GpgOL encryption icon according to its state.

In gpgoladdin:

Jul 29 2024, 10:18 PM · vsd33, Feature Request, Restricted Project, gpgol
aheinecke added a comment to T7098: Change the GpgOL encryption icon according to its state.

Changing the icon is unusual and does not match a native look and feel in Outlook where toggle icons are there for a reason, to be toggled or not. This is also the way how Outlooks native encrypt & sign works and Microsoft will probably have thought about this a bit.

Jul 29 2024, 10:09 PM · vsd33, Feature Request, Restricted Project, gpgol
ebo moved T6403: Kleopatra: Warn if a certificate in a group is deleted from QA to vsd-3.3.0 on the vsd33 board.
Jul 29 2024, 11:11 AM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo closed T6403: Kleopatra: Warn if a certificate in a group is deleted as Resolved.
Jul 29 2024, 11:11 AM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo updated the task description for T6403: Kleopatra: Warn if a certificate in a group is deleted.
Jul 29 2024, 11:11 AM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
ebo added a comment to T6403: Kleopatra: Warn if a certificate in a group is deleted.

Tested with Version 3.2.2.2405000+git~ (Gpg4win-4.3.2-beta41)

Jul 29 2024, 11:09 AM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
mmontkowski claimed T7098: Change the GpgOL encryption icon according to its state.
Jul 29 2024, 10:19 AM · vsd33, Feature Request, Restricted Project, gpgol

Jul 25 2024

ebo moved T6403: Kleopatra: Warn if a certificate in a group is deleted from WiP to QA on the vsd33 board.
Jul 25 2024, 5:13 PM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra
werner triaged T7216: Kleopatra: Integrate "disabled" feature from gpg as Normal priority.

BTW, gpgme does not yet use --quick-set-ownertrust which can also be used to set the disabled flag. We should replace the interactor by the new command. See rG21f7ad563d for the new command.

Jul 25 2024, 10:52 AM · Feature Request, kleopatra

Jul 24 2024

TobiasFella added a comment to T7182: Draft: Kleopatra: Improve Certificate Tooltips in Certificate view.

For the certificate list it might make sense to have column-specific tool tips, e.g. to give details on "not certified" in the "User IDs" column. For the fingerprint column (just to pick one example) a tool tip makes little sense.

Jul 24 2024, 3:52 PM · gpd5x, Documentation, Feature Request, kleopatra
ikloecker moved T7089: Kleopatra: show "disabled" status from Backlog to WiP on the vsd33 board.

The latest changes have been backported for VSD 3.3.

Jul 24 2024, 2:34 PM · vsd33, Feature Request, kleopatra, Restricted Project
ebo moved T7089: Kleopatra: show "disabled" status from WiP to Backlog on the vsd33 board.
Jul 24 2024, 12:34 PM · vsd33, Feature Request, kleopatra, Restricted Project
TobiasFella updated the task description for T7089: Kleopatra: show "disabled" status.
Jul 24 2024, 12:04 PM · vsd33, Feature Request, kleopatra, Restricted Project
ebo renamed T7089: Kleopatra: show "disabled" status from Kleopatra: Integrate "disabled" feature from gpg to Kleopatra: show "disabled" status.
Jul 24 2024, 9:50 AM · vsd33, Feature Request, kleopatra, Restricted Project
ebo added a parent task for T7089: Kleopatra: show "disabled" status: T7216: Kleopatra: Integrate "disabled" feature from gpg.
Jul 24 2024, 8:53 AM · vsd33, Feature Request, kleopatra, Restricted Project
ebo added a comment to T7089: Kleopatra: show "disabled" status.

The order of states is "expired", "revoked", "disabled", "invalid", "certified", "not certified". Since we show only one state we need to define an order. I guess it would make sense to give "disabled" the highest priority. (I also think that "revoked" should have higher priority than "expired".)

Jul 24 2024, 8:41 AM · vsd33, Feature Request, kleopatra, Restricted Project

Jul 23 2024

ikloecker added a comment to T7089: Kleopatra: show "disabled" status.
In T7089#188733, @ebo wrote:

What I see is: If the status of a certificate is "certified" or "not certified" before disabling it, then Kleo shows "disabled" in the User-ID column. If it was "revoked" or "expired", those are not changed. The same is true for the "Status" info in the details.
Is this distinction on purpose? What is the reason?

Jul 23 2024, 5:56 PM · vsd33, Feature Request, kleopatra, Restricted Project
ebo moved T6924: Kleopatra: Make columns of subkey details editable from WiP to vsd-3.3.0 on the vsd33 board.
Jul 23 2024, 5:12 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ebo closed T6924: Kleopatra: Make columns of subkey details editable as Resolved.

Well, now it does not occur for me any more, either. Ok, I'm setting this to resolved, this was most likely a situation where Kleopatra could not write to the kleopatrastaterc (in %APPDATA%\kleopatra\) for some reason. This would then be a more general issue, anyhow, for which we need another ticket if we can reproduce this.

Jul 23 2024, 5:12 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
alexk added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

That's the way it works today in some organizations:
If users can't delete their key they are requested to ask their GnuPG admin, they actually do so and the admin does help.

Jul 23 2024, 3:53 PM · Feature Request, Restricted Project, kleopatra
ebo added a comment to T7089: Kleopatra: show "disabled" status.

with Version 3.2.2.2405000+git~ (Gpg4win-4.3.2-beta41):

Jul 23 2024, 3:08 PM · vsd33, Feature Request, kleopatra, Restricted Project
TobiasFella added a comment to T6924: Kleopatra: Make columns of subkey details editable .

can't reproduce either

Jul 23 2024, 2:43 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ebo added a comment to T6924: Kleopatra: Make columns of subkey details editable .

I did what you did, didn't even need to restart Kleopatra.

Jul 23 2024, 2:25 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ikloecker added a comment to T6924: Kleopatra: Make columns of subkey details editable .

I cannot reproduce this with Version 3.2.2.2405000+git20240712T143635~6033869e1. I open the Details window, go to Subkeys, right-click table header, select Keygrip, close Details window, open it again, go to Subkeys, Keygrip column is still shown. Even after restarting Kleopatra.

Jul 23 2024, 2:17 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ebo added a comment to T6924: Kleopatra: Make columns of subkey details editable .

With Version 3.2.2.2405000+git~ (Gpg4win-4.3.2-beta41) II can add a keygrip column to the subkey details. But if I close the details window and open it again, the column are no longer selected.

Jul 23 2024, 2:02 PM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project
ikloecker added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

The easiest solution would be a setting for gnupg. Then Kleopatra would just error out. But, as Andre rightfully points out, people will work around this restriction. Users are incredibly creative.

Jul 23 2024, 2:00 PM · Feature Request, Restricted Project, kleopatra
aheinecke added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

Since Kleopatra does not suppress the pinentry prompts think there is even one additional question at least for S/MIME. So it asks you once from Kleopatra and then you are asked by GnuPG.
AFAIR we had discussed this in the past and also came up with the Idea that the user should type in DELETE. That dialog should then come from GnuPG I think so that it is the same.

Jul 23 2024, 1:14 PM · Feature Request, Restricted Project, kleopatra
werner added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

gpg makes it pretty hard to delete a secret key; thus having a (user settable) option in Kleopatra makes a lot of sense to me.

Jul 23 2024, 11:45 AM · Feature Request, Restricted Project, kleopatra
aheinecke added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

No. To solve that problem we have the revocation certificates autogenerated in the GnuPG home folder and which are kept of course when a user deletes their key.

Jul 23 2024, 10:48 AM · Feature Request, Restricted Project, kleopatra
alexk added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

Experiences from customers are that people create their certificate, upload it to a server. Then they notice a mistake in their name and delete the whole cert and upload the new one. Now there are two certificates on the server. This is only one example of what can go wrong. Admins want this not to happen and that's the reason for this feature. More warnings will probably not solve the problem.

Jul 23 2024, 10:42 AM · Feature Request, Restricted Project, kleopatra

Jul 22 2024

aheinecke closed T4544: More prompts before key deletion as Wontfix.

I think we can close this as Wontfix since it is our opinion to wont fix this issue. If there should be more prevetion of accidents it would probably be better to have the user type in "DELETE" or "YES". Anything else then another click confirming a popup. Since this will just be clicked away through muscle memory. This came up again in T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key

Jul 22 2024, 4:58 PM · gnupg, Feature Request, patch
aheinecke added a comment to T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.

In MMO Games this is usually handled that a player either has to type in "DELETE" or type in the Characters name to delete the character. At least in the last games I played.

Jul 22 2024, 4:56 PM · Feature Request, Restricted Project, kleopatra
aheinecke triaged T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key as Low priority.

I would give this low priority. There is no way to prohibit that except if the user has no deletion rights on the file system. There are already multiple dialogs asking the user to confirm the secret key deletion. A user could by the same logic "Free up some space" in their local home directory and delete %APPDATA%.

Jul 22 2024, 4:49 PM · Feature Request, Restricted Project, kleopatra
alexk renamed T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key from Kleopatra: configuration option to prohibit deletion of secret key to Kleopatra: configuration option to prohibit deletion of certificate with secret key.
Jul 22 2024, 4:35 PM · Feature Request, Restricted Project, kleopatra
alexk created T7211: Kleopatra: configuration option to prohibit deletion of certificate with secret key.
Jul 22 2024, 3:39 PM · Feature Request, Restricted Project, kleopatra

Jul 18 2024

TobiasFella moved T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jul 18 2024, 11:35 AM · vsd33, Feature Request, kleopatra, Restricted Project

Jul 17 2024

ebo moved T6739: Allow "refresh key/signatures" from key's context menu (from key list) from Restricted Project Column to Restricted Project Column on the Restricted Project board.

ok, works with Version 3.2.2.2405000+git~ (Gpg4win-4.3.2-beta41).

Jul 17 2024, 3:09 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request

Jul 16 2024

ebo added a comment to T5138: Change Reset Code not working in Kleopatra.

As for renaming "Change Reset Code" to "Set Reset Code", what about "Change PIN" and "Change Admin PIN"? Should they also be renamed? If not, why not? Is there no default reset code? Is there a way to find out whether the reset code has already been set (in which case "change" would be more appropriate than "set")?

Jul 16 2024, 4:37 PM · Restricted Project, Feature Request, Bug Report, kleopatra
ikloecker added a comment to T7134: Kleopatra: Allow PIN reset with Admin-PIN.

It's not tagged vsd33 and I didn't plan to backport this since it depends on other changes (T6787) that are master-only.

Jul 16 2024, 9:52 AM · Feature Request, Restricted Project, kleopatra

Jul 15 2024

aheinecke closed T2227: Sign GpgOL to support group deployments as Resolved.

we are doing this for the last releases. The list of files can also be found in the repo now in gpg4win.mk.in

Jul 15 2024, 3:45 PM · gpgol, Feature Request
aheinecke added a comment to T7134: Kleopatra: Allow PIN reset with Admin-PIN.

Will this be backported? Since the pgpcardwidget otherwise contains strings which are neither in master nor in kf5 I would say so.

Jul 15 2024, 3:02 PM · Feature Request, Restricted Project, kleopatra
ebo added a project to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog: vsd33.
Jul 15 2024, 10:05 AM · vsd33, Feature Request, kleopatra, Restricted Project

Jul 11 2024

ebo renamed T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog from Draft: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog to Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.
Jul 11 2024, 3:46 PM · vsd33, Feature Request, kleopatra, Restricted Project
aheinecke triaged T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog as Normal priority.

Yes sounds good to me. Since we have the ability even in the full list view to filter for "only with secret" certificates. Regarding gpgme_set_sender. Only GpgOL uses this, we only really need it for TOFU I think. To leave that discussion / point out of this issue I created T7199: KMail / Kleopatra: Use gpgme_set_sender to add a hint which UserID was selected for a signature

Jul 11 2024, 3:04 PM · vsd33, Feature Request, kleopatra, Restricted Project
ebo updated subscribers of T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

ok, I like your proposal. To recap:

Jul 11 2024, 9:11 AM · vsd33, Feature Request, kleopatra, Restricted Project

Jul 10 2024

ikloecker added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

This behavior of the encrypt-to-others input field is intended. It avoids "Multiple matching certificates or groups found" errors if there is one current (good) certificate and one (or more) old expired certificates for an email address. There's a button to open a dialog listing all certificates so that the user can find a certificate they are missing in the input list's completion list. I think this is an acceptable compromise between making all certificates discoverable (even expired or revoked ones) and offering not too many irrelevant certificates. When the user selects a bad certificate in the selection dialog we should probably show a note that this certificate cannot be used instead of showing "Error: No matching certificates or groups found".

Jul 10 2024, 6:14 PM · vsd33, Feature Request, kleopatra, Restricted Project
TobiasFella added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.
In T7183#188348, @ebo wrote:

I'm not sure if we are talking about the Encrypt-to-self drop-down or the Encrypt for others input fields. On the other hand, I see little reason to treat both differently.

At the moment they are treated differently. In the dropdown for encrypt-to-self no expired certificates are listed. encrypt-to-others does not have a dropdown. You are not able to find an expired Certificate by typing the name. But you can open the certificate list to chose from, where expired certificates are shown and selectable.

Jul 10 2024, 3:32 PM · vsd33, Feature Request, kleopatra, Restricted Project
ebo added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

I'm not sure if we are talking about the Encrypt-to-self drop-down or the Encrypt for others input fields. On the other hand, I see little reason to treat both differently.

Jul 10 2024, 3:22 PM · vsd33, Feature Request, kleopatra, Restricted Project
TobiasFella added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

I agree with Ingo and Werner here. In summary

Jul 10 2024, 2:17 PM · vsd33, Feature Request, kleopatra, Restricted Project

Jul 5 2024

ikloecker added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

The ticket mentioned in the previous comment is T7190: Kleopatra: wrong claim of update in WKD for keys with no mail address.

Jul 5 2024, 5:29 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ebo added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

Turns out

  • the singular instead of plural in the German version is a translation thing and should now be fixed (but is not in the testversion beta35)
  • there is another issue muddying the waters regarding search in WKD, for which I will create another ticket
Jul 5 2024, 4:10 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request

Jul 4 2024

werner added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

rere 2: I agree as long as the expired certs are order behind regular certs.

Jul 4 2024, 10:10 AM · vsd33, Feature Request, kleopatra, Restricted Project
gniibe added a subtask for T6508: Port GnuPG to 64-bit Windows: T7138: Windows (Semi-hosted environment): filename and network access.
Jul 4 2024, 4:09 AM · Windows 64, Feature Request, gnupg26

Jul 3 2024

ikloecker added a comment to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog.

Re 2.:

  • I think expired user IDs should also be offered. Otherwise, people who forgot to extend the validity of their certificate won't find their certificate. Usability-wise it's better to offer the certificate and show a notice that the selected certificate has expired. I wouldn't differentiate between primary and additional user IDs.
Jul 3 2024, 10:37 AM · vsd33, Feature Request, kleopatra, Restricted Project
ikloecker added a comment to T7182: Draft: Kleopatra: Improve Certificate Tooltips in Certificate view.

In general, I question the usefulness of the tool tip for the certificate list. The information in the table is already very detailed and for more details there's the details view. Important information that's missing in the table shouldn't be hidden in the tool tip.

Jul 3 2024, 9:54 AM · gpd5x, Documentation, Feature Request, kleopatra

Jul 2 2024

werner triaged T7182: Draft: Kleopatra: Improve Certificate Tooltips in Certificate view as Normal priority.
Jul 2 2024, 10:51 PM · gpd5x, Documentation, Feature Request, kleopatra
werner added a project to T7183: Kleopatra: Reduce certificates offered in Sign/Enyrypt dialog: Feature Request.
Jul 2 2024, 10:50 PM · vsd33, Feature Request, kleopatra, Restricted Project

Jun 30 2024

modernNeo added a comment to T7156: do not get prompted to save passphrase to password manager when using pinentry-curses.

is there a keyring/password manager that is not dependent on a desktop environment that the terminal pinentry supports?

Jun 30 2024, 2:21 AM · pinentry, Feature Request

Jun 25 2024

TobiasFella claimed T6924: Kleopatra: Make columns of subkey details editable .
Jun 25 2024, 10:46 AM · vsd33 (vsd-3.3.0), Feature Request, kleopatra, Restricted Project

Jun 21 2024

werner added a comment to T7023: Support SYSROOT in all Gupg related libraries.

Now also done for libksba.

Jun 21 2024, 2:07 PM · Feature Request, Cross-Compiler, gpgrt, libassuan, libksba
gniibe closed T6625: libassuan: Add assuan_control function, a subtask of T6606: Use new API of libassuan 3, as Resolved.
Jun 21 2024, 8:47 AM · Windows 64, Feature Request, gnupg26
gniibe closed T5914: libassuan: Introduce use of gpgrt_get_syscall_clamp, no use of system_hooks for nPTH as Resolved.
Jun 21 2024, 8:46 AM · Feature Request, libassuan
gniibe closed T5914: libassuan: Introduce use of gpgrt_get_syscall_clamp, no use of system_hooks for nPTH, a subtask of T6606: Use new API of libassuan 3, as Resolved.
Jun 21 2024, 8:46 AM · Windows 64, Feature Request, gnupg26
gniibe closed T5817: libgcrypt: Add Balloon KDF as Resolved.

Done.

Jun 21 2024, 8:45 AM · libgcrypt, Feature Request
gniibe closed T6236: libassuan: Support sendfd/recvfd (possibly by new API) on Windows, a subtask of T6606: Use new API of libassuan 3, as Resolved.
Jun 21 2024, 8:40 AM · Windows 64, Feature Request, gnupg26
gniibe closed T6236: libassuan: Support sendfd/recvfd (possibly by new API) on Windows as Resolved.

Done in 3.0.0.

Jun 21 2024, 8:40 AM · Windows, libassuan, Feature Request
gniibe closed T5925: libassuan: Add assuan_sock_accept function to the API, a subtask of T6508: Port GnuPG to 64-bit Windows, as Resolved.
Jun 21 2024, 8:39 AM · Windows 64, Feature Request, gnupg26
gniibe closed T5925: libassuan: Add assuan_sock_accept function to the API, a subtask of T6606: Use new API of libassuan 3, as Resolved.
Jun 21 2024, 8:39 AM · Windows 64, Feature Request, gnupg26
gniibe closed T5925: libassuan: Add assuan_sock_accept function to the API as Resolved.

Added in 3.0.0.

Jun 21 2024, 8:39 AM · Feature Request, libassuan

Jun 20 2024

werner triaged T7156: do not get prompted to save passphrase to password manager when using pinentry-curses as Normal priority.

Different pinentries provide different options. The curses pinentry does not have that external password manager thingy. Mixing GUI and tty use seems to be a rare case.

Jun 20 2024, 12:26 PM · pinentry, Feature Request

Jun 19 2024

werner closed T7035: libgcrypt: New function gcry_md_hash_buffers_ext (for extendable-output function) as Resolved.
Jun 19 2024, 12:10 PM · libgcrypt, Feature Request, Bug Report
werner removed a project from T5964: gnupg should use the KDFs implemented in libgcrypt: libgcrypt.
Jun 19 2024, 12:09 PM · gnupg26, FIPS, Feature Request

Jun 17 2024

werner triaged T7159: Encrypt files in different folders without moving the encrypted files into the same folder as Normal priority.
Jun 17 2024, 2:02 PM · kleopatra, Feature Request
ikloecker added a comment to T7159: Encrypt files in different folders without moving the encrypted files into the same folder.

The usability challenge does already exist today because Kleopatra allows to encrypt all files separately. Currently, all encrypted files are written to the same output folder. Which is highly problematic if some of the original files have identical names. Encrypting the individual files in-place would avoid the problem of name clashes.

Jun 17 2024, 10:37 AM · kleopatra, Feature Request
bernhard added a comment to T7159: Encrypt files in different folders without moving the encrypted files into the same folder.

The usability challenge here is what happens if the encryption does not work for some files in between:

Jun 17 2024, 9:19 AM · kleopatra, Feature Request
werner added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

Note that the origin stored for the key is for example required if a key is updated by fingerprint. In that case we don't known from which user ID to take the origin.

Jun 17 2024, 9:17 AM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request

Jun 14 2024

cklassen created T7159: Encrypt files in different folders without moving the encrypted files into the same folder.
Jun 14 2024, 6:47 PM · kleopatra, Feature Request
ikloecker added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

I updated the certificates of Werner, Andre and you and got as result "The certificates were updated.", i.e. plural, for both, keyserver and WKD. Singular could mean that only updates for one certificate were found.

Jun 14 2024, 5:43 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ebo added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

Looking only at the text used, you get exactly the same messages used for single certificate updates, "The certificate has been updated" or "The certificate was not found.", both in the singular.

Jun 14 2024, 2:20 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ikloecker added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

Querying WKDs for keys not retrieved via WKD leaks information, i.e. a (fake) WKD could track who is looking for keys. KDE's privacy-by-default policy doesn't allow such a setting to be enabled by default. (In VSD you can enable it for certain customers who don't have a problem with this.)

Jun 14 2024, 12:52 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ikloecker changed the status of T7134: Kleopatra: Allow PIN reset with Admin-PIN from Open to Testing.

Note for testing: To reduce the PUK counter to 0 you have to enter a wrong PUK for "Unlock Card". The wrong PUK must have at least 8 characters. Otherwise, gpg-agent will consider the PUK wrong without even asking the smart card so that the smart card doesn't get a chance to reject the PUK and decrease the PUK counter.

Jun 14 2024, 12:21 PM · Feature Request, Restricted Project, kleopatra
ebo added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

And "But "Update certificate" does still not query WKD (not even after restarting Kleopatra.)" seems to happen because the setting "Query certificate directories of providers for all user IDs" wasn't enabled.

Jun 14 2024, 11:36 AM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ikloecker claimed T7134: Kleopatra: Allow PIN reset with Admin-PIN.
Jun 14 2024, 10:26 AM · Feature Request, Restricted Project, kleopatra

Jun 13 2024

ikloecker changed the status of T6739: Allow "refresh key/signatures" from key's context menu (from key list) from Testing to Open.
Jun 13 2024, 3:40 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ikloecker added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

I can confirm that Kleopatra reports "The certificate was updated." when updating the certificate werner.koch@gnupg.com although gpgme reports "unchanged: 1" as ImportResult. Kleopatra even reports "The certificate was updated." under WKD for a locally generated test key that's not available via WKD. This should be fixed.

Jun 13 2024, 3:40 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request
ebo added a comment to T6739: Allow "refresh key/signatures" from key's context menu (from key list).

Tested with Gpg4win-4.3.2-beta25:

Jun 13 2024, 2:48 PM · vsd33 (vsd-3.3.0), Restricted Project, kleopatra, Feature Request

Jun 11 2024

ebo moved T6072: Kleopatra: Display "gpgconf -X" from WiP to Backlog on the vsd33 board.
Jun 11 2024, 4:19 PM · vsd33, Restricted Project, kleopatra, Feature Request
ebo added a comment to T6072: Kleopatra: Display "gpgconf -X" .

Tested with Gpg4win-4.3.2-beta25

Jun 11 2024, 4:14 PM · vsd33, Restricted Project, kleopatra, Feature Request
ebo renamed T6072: Kleopatra: Display "gpgconf -X" from Debug Tab in Kleopatra to Kleopatra: Display "gpgconf -X" .
Jun 11 2024, 1:33 PM · vsd33, Restricted Project, kleopatra, Feature Request
aheinecke added a comment to T6072: Kleopatra: Display "gpgconf -X" .

I've talked to ebo about this and yes she will create subtasks for at least GPGME log an qDebug logging the GnuPG Logs can already disabled in the config so we dont really need it. Currently it looks like this and I find it rather confusing:



As this is static output which does not say much to users I do not think it is necessary to show at all. Just a "File save as" dialog for gpgconf -x in an entry "Additional support information" maybe in the about dialog would be better IMO.

Jun 11 2024, 10:30 AM · vsd33, Restricted Project, kleopatra, Feature Request

Jun 10 2024

ebo moved T6527: Kleopatra: remove "Today" from the choice of expiry dates for key generation from WiP to QA on the vsd33 board.
Jun 10 2024, 9:24 AM · vsd33 (vsd-3.3.0), Restricted Project, Feature Request, kleopatra