Page MenuHome GnuPG
Feed Advanced Search

Oct 10 2024

werner committed rG69a8aefa5bf7: gpgsm: Fix cached istrusted lookup. (authored by werner).
gpgsm: Fix cached istrusted lookup.
Oct 10 2024, 6:06 PM
werner added a comment to T7133: Add feature to load designated revoker from LDAP.

I do not want to do that for 2.2.45 (T7255) because we want to do that release RSN

Oct 10 2024, 9:47 AM · vsd33, Feature Request, gnupg22
werner triaged T7321: Kleopatra: add warning symbol to all unusable groups as Normal priority.
Oct 10 2024, 9:45 AM · vsd33, Unknown Object (Project), kleopatra
werner triaged T7323: scdaemon hangs up (when output from scdaemon is not consumed by gpg-agent) as High priority.
Oct 10 2024, 9:45 AM · Windows, Bug Report, scd
werner triaged T7324: Autostart as Normal priority.

Is there a mechanism which can be used for this? Of course this could be done using the usual autostart feature, or we turn the server into a Windows service (ask @alexk). Start the client along with kleopatra?

Oct 10 2024, 9:02 AM · gpgol2
werner triaged T7325: Guide users into installing manifest.xml as Normal priority.
Oct 10 2024, 8:59 AM · gpgol2
werner triaged T7326: Encrypted drafts as Normal priority.
Oct 10 2024, 8:59 AM · gpgol2
werner triaged T7329: Update about data of Kleopatra as Normal priority.
Oct 10 2024, 8:58 AM · gpd5x, vsd33, kleopatra
werner edited projects for T7330: gpgrt should use destructor instead of atexit for cleanup, added: Feature Request; removed Bug Report.
Oct 10 2024, 8:57 AM · Feature Request, gpgrt
werner triaged T7330: gpgrt should use destructor instead of atexit for cleanup as Normal priority.

Thanks for opening a bug report. This is better for our workflow.

Oct 10 2024, 8:57 AM · Feature Request, gpgrt

Oct 9 2024

werner added projects to T7323: scdaemon hangs up (when output from scdaemon is not consumed by gpg-agent): scd, Bug Report.

But the DEVINFO --watch is required to trigger this hang? Kleopatra does not use this but we see simlar hangs from time to time in the current version.

Oct 9 2024, 6:18 PM · Windows, Bug Report, scd
werner added a project to T7328: Add Kleopatra configs to gpgconf -X: Feature Request.
Oct 9 2024, 4:18 PM · Feature Request, gnupg22
werner updated the image for gpd5x from F15172262: profile to F15172321: profile.
Oct 9 2024, 3:55 PM
werner set the image for gpd5x to F15172262: profile.
Oct 9 2024, 3:53 PM
werner created gpd5x.
Oct 9 2024, 3:52 PM

Oct 8 2024

werner edited Description on gpgol.
Oct 8 2024, 12:33 PM
werner edited Description on gpgol2.
Oct 8 2024, 12:31 PM

Oct 7 2024

werner committed rM1a7bc88ee756: core: New flag fields beta_compliance. (authored by werner).
core: New flag fields beta_compliance.
Oct 7 2024, 10:33 AM
werner committed rGb287fb577587: Implement GNUPG_ASSUME_COMPLIANCE envvar for testing (authored by werner).
Implement GNUPG_ASSUME_COMPLIANCE envvar for testing
Oct 7 2024, 9:57 AM
werner committed rGe8858807bcaf: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner committed rG85d8fa57db0a: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner committed rGa8b503c42bd4: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner added a comment to T7322: Kleopatra: General error if ADSK is not configured correctly.

With the new patch you get this now:

[GNUPG:] KEY_CONSIDERED F40ADB902B24264AA42E50BF92EDB04BFF325CF3 1
[GNUPG:] ERROR add_adsk 53
gpg: key "F40ADB902B24264AA42E50BF92EDB04BFF325CF3!" not found: Unusable public key
gpg: Did you specify the fingerprint of a subkey?
[GNUPG:] FAILURE gpg-exit 33554433
Oct 7 2024, 8:26 AM · Unknown Object (Project), vsd33, gnupg

Oct 4 2024

werner added a comment to T7308: Speed up the X.509 key listings.

Test on a dedicated Windows box (T 460, i5-6300U@2.40GHz, harddisk):

VSD Versiongpg versionLoad time
3.1.262.2.411:59
3.2.4 beta-22.2.45 beta 250:46
Oct 4 2024, 3:03 PM · S/MIME, Feature Request, gnupg
werner committed rD7ccbda17a2e6: web: Add an entry for 2.6 into the EOL list (authored by werner).
web: Add an entry for 2.6 into the EOL list
Oct 4 2024, 2:07 PM
werner committed rGf8f6c6c76166: gpgsm: Add compatibility flag no-keyinfo-cache (authored by werner).
gpgsm: Add compatibility flag no-keyinfo-cache
Oct 4 2024, 12:22 PM
werner committed rG9087c1d3637c: gpgsm: Implement a cache for the KEYINFO queries. (authored by werner).
gpgsm: Implement a cache for the KEYINFO queries.
Oct 4 2024, 12:19 PM
werner committed rGa5527edebbad: gpgsm: Add compatibility flag no-keyinfo-cache (authored by werner).
gpgsm: Add compatibility flag no-keyinfo-cache
Oct 4 2024, 12:19 PM
werner committed rG09d4b8f496dd: gpgsm: Use a cache for ISTRUSTED queries. (authored by werner).
gpgsm: Use a cache for ISTRUSTED queries.
Oct 4 2024, 12:19 PM
werner committed rG4fa82eec43e8: agent: Add option --status to the LISTRUSTED command. (authored by werner).
agent: Add option --status to the LISTRUSTED command.
Oct 4 2024, 12:19 PM
werner edited projects for T4537: gpgsm support for timestamp signatures, added: gnupg26; removed gnupg24.
Oct 4 2024, 12:14 PM · gnupg26, S/MIME, Feature Request
werner claimed T7319: gpgsm/dirmngr: Improve forward path-building via http AIA extension in x.509 certificates.
Oct 4 2024, 12:10 PM · S/MIME, gnupg26, Feature Request
werner added a comment to T7308: Speed up the X.509 key listings.

Overall effect of these changes tested on a small Windows VM is only 47 -> 26 seconds. Did also tests with --kbx-buffer-size but that does not make it better than the default, either.

Oct 4 2024, 12:05 PM · S/MIME, Feature Request, gnupg
werner closed T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy as Resolved.
Oct 4 2024, 11:46 AM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner closed T6843: after enable kdf-setup impossible change user/admin pin as Resolved.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner moved T6843: after enable kdf-setup impossible change user/admin pin from QA to gnupg-2.2.43 on the gnupg22 board.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner changed the status of T6843: after enable kdf-setup impossible change user/admin pin from Resolved to Duplicate.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner closed T6843: after enable kdf-setup impossible change user/admin pin as Resolved.

Porting to 2.2 was straightforward - we won't give it an extra QA run.

Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner closed T6811: gpgv: Read-only trustedkeys.kbx should not be compressed as Resolved.

We won't fix that for 2.2.

Oct 4 2024, 11:40 AM · gnupg24 (gnupg-2.4.5), gpgv, Bug Report
werner moved T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy from QA to gnupg-2.2.43 on the gnupg22 board.
Oct 4 2024, 11:38 AM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T6882: Make ADSK configurable for new keys from QA to gnupg-2.2.45 on the gnupg22 board.
Oct 4 2024, 11:35 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: Unknown Object (Project).
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: vsd33.
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)

Oct 2 2024

werner committed rG241971fac0fc: gpgsm: Implement a cache for the KEYINFO queries. (authored by werner).
gpgsm: Implement a cache for the KEYINFO queries.
Oct 2 2024, 5:52 PM
werner committed rGef2be95258d2: gpgsm: Use a cache for ISTRUSTED queries. (authored by werner).
gpgsm: Use a cache for ISTRUSTED queries.
Oct 2 2024, 5:52 PM
werner committed rG4275d5fa7a51: agent: Add option --status to the LISTRUSTED command. (authored by werner).
agent: Add option --status to the LISTRUSTED command.
Oct 2 2024, 5:52 PM
werner lowered the priority of T7313: gpgconf --list-options does not handle multiple trusted-keys. from Normal to Low.
Oct 2 2024, 5:15 PM · Feature Request, gnupg
werner added a member for Contributor: m.eik.
Oct 2 2024, 10:13 AM
werner added a member for g10code: m.eik.
Oct 2 2024, 10:09 AM
werner triaged T7317: Update the gnupg.org FAQ as Normal priority.
Oct 2 2024, 8:48 AM · www.gnupg.org, FAQ
werner added a comment to T7316: Curve25519/v5 key cannot be exported.

Using the shorter OID for v5 is on purpose; thus we need to fix the export.

Oct 2 2024, 8:36 AM · gnupg26, OpenPGP, PQC, gnupg

Oct 1 2024

werner triaged T7315: Allow exporting of PQC keys. as Normal priority.
Oct 1 2024, 6:12 PM · gnupg26, OpenPGP, PQC, gnupg
werner archived gnupg22 (gnupg-2.2.45).
Oct 1 2024, 2:03 PM
werner closed T7025: --trusted-key and --no-options mismatch as Resolved.
Oct 1 2024, 2:02 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T7025: --trusted-key and --no-options mismatch from QA to gnupg-2.2.45 on the gnupg22 board.
Oct 1 2024, 2:02 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner created gnupg22 (gnupg-2.2.45).
Oct 1 2024, 2:01 PM
werner updated the task description for T7255: Release GnuPG 2.2.45.
Oct 1 2024, 1:59 PM · gnupg22 (gnupg-2.2.45), Release Info
werner triaged T7314: Release GnuPG 2.2.46 as Low priority.
Oct 1 2024, 1:59 PM · gnupg22, Release Info
werner committed rG269efd89a361: Update NEWS (authored by werner).
Update NEWS
Oct 1 2024, 12:51 PM
werner committed rG41626a16613a: gpgsm: Possible improvement for some rare P12 files. (authored by werner).
gpgsm: Possible improvement for some rare P12 files.
Oct 1 2024, 12:51 PM
werner committed rGf50dde6269bd: gpgsm: Possible improvement for some rare P12 files. (authored by werner).
gpgsm: Possible improvement for some rare P12 files.
Oct 1 2024, 12:35 PM
werner assigned T7313: gpgconf --list-options does not handle multiple trusted-keys. to ikloecker.

Fixed for master. Let's first test this with kleopatra.

Oct 1 2024, 10:59 AM · Feature Request, gnupg
werner committed rGf197fe34f22b: gpgconf: Add list flag to trusted-key et al. (authored by werner).
gpgconf: Add list flag to trusted-key et al.
Oct 1 2024, 10:49 AM
werner renamed T7313: gpgconf --list-options does not handle multiple trusted-keys. from gpgconf --list-options does now handle multiple trusted-keys. to gpgconf --list-options does not handle multiple trusted-keys..
Oct 1 2024, 10:33 AM · Feature Request, gnupg
werner added a comment to T6882: Make ADSK configurable for new keys.

Done for 2.2. It is already in 2.4.

Oct 1 2024, 10:05 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner triaged T7313: gpgconf --list-options does not handle multiple trusted-keys. as Normal priority.
Oct 1 2024, 10:05 AM · Feature Request, gnupg
werner committed rGf1e1cb0767a1: gpgconf: Allow listing of some new options (authored by werner).
gpgconf: Allow listing of some new options
Oct 1 2024, 10:00 AM

Sep 30 2024

werner closed T7308: Speed up the X.509 key listings as Resolved.

Will be available in 2.2.45 and 2.5.2

Sep 30 2024, 7:08 PM · S/MIME, Feature Request, gnupg
werner committed rGdcee2db36ba4: gpgsm: Use a cache to speed up parent certificate lookup. (authored by werner).
gpgsm: Use a cache to speed up parent certificate lookup.
Sep 30 2024, 7:04 PM
werner added a comment to T7308: Speed up the X.509 key listings.

Now we are at 4 seconds. Available in master and 2.2.

Sep 30 2024, 6:49 PM · S/MIME, Feature Request, gnupg
werner committed rG0e283a0ebcce: gpgsm: Silence messages about dirmngr cache lookup failed. (authored by werner).
gpgsm: Silence messages about dirmngr cache lookup failed.
Sep 30 2024, 6:49 PM
werner committed rG819085364238: gpgsm: Silence the fingerprint output in quiet mode. (authored by werner).
gpgsm: Silence the fingerprint output in quiet mode.
Sep 30 2024, 6:49 PM
werner committed rGce0580a599ec: gpgsm: Use a cache to speed up parent certificate lookup. (authored by werner).
gpgsm: Use a cache to speed up parent certificate lookup.
Sep 30 2024, 6:36 PM
werner triaged T7309: gpg should not proceed with the key import from the smartcard if no valid SCD READKEY information is received as Normal priority.

Some would say it is a bug if keys are not shown - even if the algo is not known ;-)

Sep 30 2024, 4:06 PM · Info Needed, scd, gpgagent, Bug Report
werner triaged T7310: GpgOL: Broken Umlauts in progress message (unicode, encoding) as High priority.
Sep 30 2024, 4:05 PM · vsd33, i18n, Unknown Object (Project)
werner triaged T7312: The security approval dialog (GpgOL) sometimes closes before choice is made as High priority.
Sep 30 2024, 4:04 PM · gpgol, vsd33, libkleo, Unknown Object (Project)

Sep 28 2024

werner added a comment to T7309: gpg should not proceed with the key import from the smartcard if no valid SCD READKEY information is received.

Please send an excerpt from the scdaemon debug output to evaluate why you get somewhat strange looking data. Is this an experimental card? 0xa5 is a common test pattern.

Sep 28 2024, 7:38 PM · Info Needed, scd, gpgagent, Bug Report

Sep 27 2024

werner added a comment to T6424: GpgOL: Move resolver code into Kleopatra.

FWIW, a related task is T7308

Sep 27 2024, 4:07 PM · vsd33, Unknown Object (Project), kleopatra, gpgol
werner committed rG9543b3567b04: sm: Optmize clearing of the ephemeral flag. (authored by werner).
sm: Optmize clearing of the ephemeral flag.
Sep 27 2024, 4:06 PM
werner added a comment to T7308: Speed up the X.509 key listings.

With that patch we are down to about 6 seconds.

Sep 27 2024, 3:49 PM · S/MIME, Feature Request, gnupg
werner committed rGcb6c506e4e41: sm: Optmize clearing of the ephemeral flag. (authored by werner).
sm: Optmize clearing of the ephemeral flag.
Sep 27 2024, 3:49 PM
werner triaged T7308: Speed up the X.509 key listings as High priority.
Sep 27 2024, 3:47 PM · S/MIME, Feature Request, gnupg
werner added a comment to T6882: Make ADSK configurable for new keys.

Will do.

Sep 27 2024, 11:39 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner triaged T6424: GpgOL: Move resolver code into Kleopatra as High priority.

Alright, we should do that in any case because two key caches are never a good idea and in particualr not if one of them needs too be reloaded too often. Thus re-using the one in Kleopatra is the proper solution. I recall that we looked at this at a time when we already started to design gpgol2 which would solve the problem anyway. However, at least for vsd we need to keep on using the classic gpgol for quite some more time. Thus the effort to improve the key resolving in gpgol is really justified.

Sep 27 2024, 11:19 AM · vsd33, Unknown Object (Project), kleopatra, gpgol
werner committed rGca953ae5f768: agent: Replace hack for old Libgcrypt versions for auto-expand-secmem. (authored by werner).
agent: Replace hack for old Libgcrypt versions for auto-expand-secmem.
Sep 27 2024, 10:58 AM
werner committed rG19871fa08c65: agent: Better diagnostic for a failed key unprotection. (authored by werner).
agent: Better diagnostic for a failed key unprotection.
Sep 27 2024, 10:56 AM
werner added a comment to T6424: GpgOL: Move resolver code into Kleopatra.

Something which has high priority but has not been touch can't have a super high priority.

Sep 27 2024, 10:11 AM · vsd33, Unknown Object (Project), kleopatra, gpgol
werner triaged T7303: Kleopatra: Key filter combobox is cleared when saving filter appearance settings as Normal priority.

Please write at least a short description and give it a priority

Sep 27 2024, 10:09 AM · kleopatra, Unknown Object (Project), Bug Report
werner triaged T7304: Kleopatra: "All Certificates" key filter gets selected when saving a change to a key filter's appearance as Normal priority.

Pretty brief description :-(

Sep 27 2024, 10:08 AM · kleopatra, Unknown Object (Project), Bug Report

Sep 26 2024

werner archived gpgol.js.
Sep 26 2024, 3:38 PM
werner edited Description on gpgol.js.
Sep 26 2024, 3:38 PM
werner closed T5750: GpgOL links to an FSF page for "Unsicher GpgOL" as Resolved.

I see only links to our own pages and to the emailselfdefense - which is a good resource.

Sep 26 2024, 3:29 PM · Unknown Object (Project), Feature Request, gpgol
werner lowered the priority of T6167: GpgOL: Window resize on forwarding from Normal to Low.
Sep 26 2024, 3:25 PM · Too Old, Unknown Object (Project), gpgol
werner lowered the priority of T6192: GpgOL: deactivation of S/MIME does not affect previously sent mails from Normal to Low.

Hmm, two years old - I doubt that it makes sense to continue here.

Sep 26 2024, 3:24 PM · Too Old, Restricted Project, gpgol
werner lowered the priority of T6270: GpgOL: revision of configuration public key import from Normal to Low.

Priority lowered in the light of the the forthcoming gpgol.js

Sep 26 2024, 3:22 PM · gpgol, Restricted Project
werner lowered the priority of T6518: GpgOL shows a blank message if an X.509 curve is used for signing from Normal to Wishlist.
Sep 26 2024, 3:19 PM · Restricted Project, gpgol, Feature Request
werner moved T6566: GpgOL: newly generated key not loaded in the security confirmation dialog from Backlog to Done on the gpgol board.
Sep 26 2024, 3:16 PM · vsd32 (vsd-3.2.0), gpgol, Restricted Project
werner closed T6566: GpgOL: newly generated key not loaded in the security confirmation dialog, a subtask of T6198: KMail: Port to keyresolver from libkleo, as Resolved.
Sep 26 2024, 3:16 PM · Restricted Project, Feature Request, KDE, kleopatra
werner closed T6566: GpgOL: newly generated key not loaded in the security confirmation dialog as Resolved.

Should definitely work with gpg4win if it works with vsd.

Sep 26 2024, 3:16 PM · vsd32 (vsd-3.2.0), gpgol, Restricted Project
werner moved T6566: GpgOL: newly generated key not loaded in the security confirmation dialog from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Sep 26 2024, 3:14 PM · vsd32 (vsd-3.2.0), gpgol, Restricted Project