Page MenuHome GnuPG
Feed All Stories

Jun 23 2014

werner added a comment to T1392: export-secret-key does not work with EC keys.

Recently fixed.

Jun 23 2014, 10:50 AM · gnupg, Bug Report
werner closed T1392: export-secret-key does not work with EC keys as Resolved.
Jun 23 2014, 10:50 AM · gnupg, Bug Report
werner closed T1397: 2.0.19 Mac OS X "Lion" gpgtar iconv Build Problem as Resolved.
Jun 23 2014, 10:48 AM · Too Old, Bug Report, gnupg
werner added a project to T1397: 2.0.19 Mac OS X "Lion" gpgtar iconv Build Problem: Too Old.
Jun 23 2014, 10:48 AM · Too Old, Bug Report, gnupg
werner closed T1233: private main and subkeys spread over several keyrings as Resolved.
Jun 23 2014, 10:46 AM · Won't Fix, Bug Report, gnupg
werner closed T1488: README-W32 typos as Resolved.
Jun 23 2014, 10:46 AM · Bug Report, gnupg
werner added a comment to T1488: README-W32 typos.

Fixed for the next releases. The exact key depends on the Windows versions; I
added a repective note. Thanks.

Jun 23 2014, 10:46 AM · Bug Report, gnupg
werner closed T1376: gpgv2 generates Libgcrypt warning: missing initialization as Resolved.
Jun 23 2014, 10:31 AM · forwardport, Bug Report, gnupg
werner removed a project from T1376: gpgv2 generates Libgcrypt warning: missing initialization: In Progress.
Jun 23 2014, 10:31 AM · forwardport, Bug Report, gnupg
werner closed T1512: Decrypt a message with hidden recipients only prompts for the passphrase of the first secret key, uses the same passphrase for all following keys that are tested. as Resolved.
Jun 23 2014, 10:30 AM · Not A Bug, Bug Report, gnupg
werner added a project to T1512: Decrypt a message with hidden recipients only prompts for the passphrase of the first secret key, uses the same passphrase for all following keys that are tested.: Not A Bug.
Jun 23 2014, 10:30 AM · Not A Bug, Bug Report, gnupg
werner added a project to T1626: keyserver and curl-shim: Info Needed.
Jun 23 2014, 10:29 AM · Info Needed, Bug Report, gnupg
werner closed T1642: gnupg-1.4.* fails to compile with uClibc (patch to fix it attached) as Resolved.
Jun 23 2014, 10:28 AM · Bug Report, gnupg
werner added a comment to T1642: gnupg-1.4.* fails to compile with uClibc (patch to fix it attached).

Fix will go into 1.4.17.

Jun 23 2014, 10:28 AM · Bug Report, gnupg
werner closed T1644: Do not expect KeyIDs to be unique as Resolved.
Jun 23 2014, 10:19 AM · gnupg (gpg22), S/MIME, Bug Report
werner added a project to T1644: Do not expect KeyIDs to be unique: S/MIME.
Jun 23 2014, 10:19 AM · gnupg (gpg22), S/MIME, Bug Report
werner added a comment to T1644: Do not expect KeyIDs to be unique.

Fixed in 2.0.23.

Jun 23 2014, 10:19 AM · gnupg (gpg22), S/MIME, Bug Report
werner removed a project from T1644: Do not expect KeyIDs to be unique: Restricted Project.
Jun 23 2014, 10:19 AM · gnupg (gpg22), S/MIME, Bug Report
werner closed T1549: scd: reader pinpad stopped working with gnupg-2.0.22 as Resolved.
Jun 23 2014, 10:18 AM · Bug Report, gnupg, scd
werner added a comment to T1549: scd: reader pinpad stopped working with gnupg-2.0.22.

Right, it should work in 2.0.23.

Jun 23 2014, 10:18 AM · Bug Report, gnupg, scd
werner closed T1622: exits with a fatal error regarding missing trustdb although key is imported as Resolved.
Jun 23 2014, 10:17 AM · Debian, Bug Report, gnupg
werner removed a project from T1622: exits with a fatal error regarding missing trustdb although key is imported: Restricted Project.
Jun 23 2014, 10:17 AM · Debian, Bug Report, gnupg
asdil12 updated subscribers of T1549: scd: reader pinpad stopped working with gnupg-2.0.22.

@werner: I think, you mean 2.0.23

Jun 23 2014, 10:16 AM · Bug Report, gnupg, scd
asdil12 reopened T1549: scd: reader pinpad stopped working with gnupg-2.0.22 as "Open".
Jun 23 2014, 10:16 AM · Bug Report, gnupg, scd
werner added a comment to T1549: scd: reader pinpad stopped working with gnupg-2.0.22.

Should work in 2.0.13

Jun 23 2014, 10:08 AM · Bug Report, gnupg, scd
werner removed a project from T1549: scd: reader pinpad stopped working with gnupg-2.0.22: Restricted Project.
Jun 23 2014, 10:08 AM · Bug Report, gnupg, scd
werner closed T1549: scd: reader pinpad stopped working with gnupg-2.0.22 as Resolved.
Jun 23 2014, 10:08 AM · Bug Report, gnupg, scd
werner added a comment to T1358: GPG 1.4.11 apdu.c -> uninitialized variable+ implicit typecast led to malloc error (patch attached).

Backported to 1.4. It has also been applied to master some time ago.

Jun 23 2014, 10:02 AM · Bug Report, gnupg
werner removed projects from T1358: GPG 1.4.11 apdu.c -> uninitialized variable+ implicit typecast led to malloc error (patch attached): gnupg (gpg14), backport.
Jun 23 2014, 10:02 AM · Bug Report, gnupg
werner closed T1358: GPG 1.4.11 apdu.c -> uninitialized variable+ implicit typecast led to malloc error (patch attached) as Resolved.
Jun 23 2014, 10:02 AM · Bug Report, gnupg
werner added a comment to T1650: INV_RECP omits the reason for failing when encrypting to expired/revoked keys.

Backported parts of the change to 1.4.

Jun 23 2014, 9:28 AM · Bug Report, gnupg
werner added a comment to T1652: gpg.ru(1) empty.

I took the simpler solution of removing that outdated man page.

The man page is outdated and we do not use docbook for a long time
now.  If someone wants to revive such a man page, it would be best to
translate the respective parts of the GnuPG manual in git master.
Jun 23 2014, 8:56 AM · Bug Report, gnupg
werner closed T1652: gpg.ru(1) empty as Resolved.
Jun 23 2014, 8:56 AM · Bug Report, gnupg

Jun 22 2014

kingu closed T1657: Improvement of translation string 29 in description.txt of GnuPG as Resolved.
Jun 22 2014, 4:57 PM · patch, gnupg, Feature Request, Not A Bug
kingu added projects to T1657: Improvement of translation string 29 in description.txt of GnuPG: Not A Bug, Feature Request, gnupg, patch.
Jun 22 2014, 3:22 PM · patch, gnupg, Feature Request, Not A Bug

Jun 20 2014

werner added a comment to T1656: Warning message when using gpg (The GNOME keyring manager hijacked the GnuPG agent).

You need to configuire gnome-keyring-daemon not to hijack the gpg-agent. This
is done by not adding gpg to the
--components
options. It is a long standing GNOME problem that they willfully hijack the
interprocess connection to gpg-agent. This leads to lots of bug reports
directed to GnuPG and thus I finally added this warning.

Jun 20 2014, 8:45 PM · Not A Bug, Bug Report
werner closed T1656: Warning message when using gpg (The GNOME keyring manager hijacked the GnuPG agent) as Resolved.
Jun 20 2014, 8:45 PM · Not A Bug, Bug Report
werner added a project to T1656: Warning message when using gpg (The GNOME keyring manager hijacked the GnuPG agent): Not A Bug.
Jun 20 2014, 8:45 PM · Not A Bug, Bug Report

Jun 19 2014

fturco added a project to T1656: Warning message when using gpg (The GNOME keyring manager hijacked the GnuPG agent): Bug Report.
Jun 19 2014, 9:43 PM · Not A Bug, Bug Report

Jun 16 2014

f-a added a comment to T1655: Expand/modify man explanation on exporting keys.

Jun 16 2014, 10:55 PM · gnupg, Feature Request
f-a set Version to 1.4.12 on T1655: Expand/modify man explanation on exporting keys.
Jun 16 2014, 10:55 PM · gnupg, Feature Request
f-a added projects to T1655: Expand/modify man explanation on exporting keys: Feature Request, gnupg.
Jun 16 2014, 10:55 PM · gnupg, Feature Request
werner added projects to T1654: Add group aliases to key listings: Feature Request, gpa.
Jun 16 2014, 8:36 AM · gpa, Feature Request
werner added a comment to T1646: Include support for signing file digests (e.g. for obs-sign).

No. It still does not explain why you need a new option for gpg. Something like

ssh REMOTE 'cd DIR && sha256sum *dat' | gpg -s >files.sig

does what you want.

Jun 16 2014, 8:29 AM · gnupg, Feature Request

Jun 13 2014

istvanchung added projects to T1653: Always disallow group- and other-readable permission: Feature Request, gnupg.
Jun 13 2014, 2:50 AM · gnupg (gpg21), gnupg, Feature Request

Jun 12 2014

strzibny added a comment to T1646: Include support for signing file digests (e.g. for obs-sign).

In our use case we need to sign big RPMs, DVDs and Docker images. We have a
separate signing server to sign those files and sending all content to the
signing server is a huge overhead for us. Therefore we would like to sign only
headers of that files. In our setup we trust both servers so we can assume that
the signed digest of the given file really corresponds to that file.

Is it more clear now?

Jun 12 2014, 2:16 PM · gnupg, Feature Request

Jun 10 2014

wiz set Version to 1.4.16 on T1652: gpg.ru(1) empty.
Jun 10 2014, 10:20 PM · Bug Report, gnupg
wiz added projects to T1652: gpg.ru(1) empty: gnupg, Bug Report.
Jun 10 2014, 10:20 PM · Bug Report, gnupg
alphazo added projects to T1651: libgcrypt-git prevents encrypted LUKS/LVM to boot: libgcrypt, Bug Report.
Jun 10 2014, 5:17 PM · Info Needed, Bug Report, libgcrypt
werner added a project to T1650: INV_RECP omits the reason for failing when encrypting to expired/revoked keys: In Progress.
Jun 10 2014, 3:00 PM · Bug Report, gnupg
werner added a comment to T1650: INV_RECP omits the reason for failing when encrypting to expired/revoked keys.

The reason codes have been introduced for gpgms and when adding them to gpg it
was not easy to get the required information (think subkeys and primary keys).

As a first take on this I just pushed some fixes to master and introduced two
new reason codes. At least this one should be easy to backport to 2.0.

Jun 10 2014, 3:00 PM · Bug Report, gnupg

Jun 7 2014

florianfieber set Version to 1.4.16 on T1650: INV_RECP omits the reason for failing when encrypting to expired/revoked keys.
Jun 7 2014, 10:14 PM · Bug Report, gnupg
florianfieber added projects to T1650: INV_RECP omits the reason for failing when encrypting to expired/revoked keys: gnupg, Bug Report.
Jun 7 2014, 10:14 PM · Bug Report, gnupg
tsndcb added a comment to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN).

Hello Werner,

Jun 7 2014, 8:16 PM · Won't Fix, gnupg (gpg14), gnupg, Feature Request

Jun 6 2014

werner added projects to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN): In Progress, gnupg (gpg14).
Jun 6 2014, 5:37 PM · Won't Fix, gnupg (gpg14), gnupg, Feature Request
werner added a comment to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN).

This has recently been discussed at gnupg-devel. We have patches ready for 1.4

Jun 6 2014, 5:37 PM · Won't Fix, gnupg (gpg14), gnupg, Feature Request
werner removed a project from T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN): Restricted Project.
Jun 6 2014, 5:37 PM · Won't Fix, gnupg (gpg14), gnupg, Feature Request
werner added a comment to T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo.

Ah well, you better do not use automake 1.13 - the test suite may or may not
work with that braindead new defaults of that version.

Jun 6 2014, 5:34 PM · Feature Request, gnupg, Not A Bug
werner closed T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo as Resolved.
Jun 6 2014, 5:34 PM · Feature Request, gnupg, Not A Bug
werner added a comment to T1646: Include support for signing file digests (e.g. for obs-sign).

That still does not explain why you need to change gpg for this. I know every
well why a list of checksums is sometimes useful. It is actually a pretty
standard use pattern. I can't see the problem you try to solve.

Jun 6 2014, 5:32 PM · gnupg, Feature Request
werner removed a project from T1648: Missing step in instructions for verifying integrity: Bug Report.
Jun 6 2014, 5:29 PM · gpgweb, Feature Request
werner lowered the priority of T1648: Missing step in instructions for verifying integrity from Normal to Wishlist.
Jun 6 2014, 5:29 PM · gpgweb, Feature Request
werner added projects to T1648: Missing step in instructions for verifying integrity: Feature Request, gpgweb.
Jun 6 2014, 5:29 PM · gpgweb, Feature Request

Jun 3 2014

mschauler removed a project from T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo: Bug Report.
Jun 3 2014, 11:08 PM · Feature Request, gnupg, Not A Bug
mschauler added a comment to T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo.

I agree.
In fact, there is no README.GIT in this repo (at least not in commit
2f4e8c33b88d), but only a README.SVN

The correct fix for the issue on my system (OpenSUSE 13.1) is to run "automake
--add-missing" before running autogen.sh
This will add "build-aux/test-driver"

Jun 3 2014, 11:08 PM · Feature Request, gnupg, Not A Bug
mschauler reopened T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo as "Open".
Jun 3 2014, 11:08 PM · Feature Request, gnupg, Not A Bug
mschauler added a project to T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo: Feature Request.
Jun 3 2014, 11:08 PM · Feature Request, gnupg, Not A Bug
mschauler lowered the priority of T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo from Normal to Wishlist.
Jun 3 2014, 11:08 PM · Feature Request, gnupg, Not A Bug
dkg set Version to 2.2.0 on T1649: kleopatra fails to sign keys when local sig already exists.
Jun 3 2014, 10:58 PM · Bug Report, gpg4win
dkg added projects to T1649: kleopatra fails to sign keys when local sig already exists: gpg4win, Bug Report.
Jun 3 2014, 10:58 PM · Bug Report, gpg4win
vincent renamed T1642: gnupg-1.4.* fails to compile with uClibc (patch to fix it attached) from gnupg-1.4.* fails to compile with uClibc (patch inside) to gnupg-1.4.* fails to compile with uClibc (patch to fix it attached).
Jun 3 2014, 5:29 PM · Bug Report, gnupg
vincent renamed T1642: gnupg-1.4.* fails to compile with uClibc (patch to fix it attached) from gnupg-1.4.* fails to compile with uClibc to gnupg-1.4.* fails to compile with uClibc (patch inside).
Jun 3 2014, 5:28 PM · Bug Report, gnupg
rrt added a project to T1648: Missing step in instructions for verifying integrity: Bug Report.
Jun 3 2014, 4:53 PM · gpgweb, Feature Request
strzibny added a comment to T1646: Include support for signing file digests (e.g. for obs-sign).

It's because the signer for signing the packages lives on another server and
moving all data there to do the signing is inefficient. Therefore this patch
adds the option to sign files using file digests.

Jun 3 2014, 10:22 AM · gnupg, Feature Request
tsndcb added a comment to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN).

Hello Yutaka,

Jun 3 2014, 9:56 AM · Won't Fix, gnupg (gpg14), Feature Request, gnupg
gniibe added a comment to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN).

With current 2.0 branch of git repository, I believe that Vega-Alpha works fine.
Please confirm.

Jun 3 2014, 7:31 AM · Won't Fix, gnupg (gpg14), Feature Request, gnupg
gniibe added a project to T1148: 1.4.x pinpad support (reader covadis vega-alpha => cannot used secure PIN): Restricted Project.
Jun 3 2014, 7:31 AM · Won't Fix, gnupg (gpg14), Feature Request, gnupg

Jun 2 2014

werner removed a project from T1417: Unhashed signature subpacket "preferred keyserver" ignored for document signatures: Not A Bug.
Jun 2 2014, 8:09 PM · Feature Request, gnupg
werner added a project to T1358: GPG 1.4.11 apdu.c -> uninitialized variable+ implicit typecast led to malloc error (patch attached): gnupg (gpg14).
Jun 2 2014, 8:07 PM · Bug Report, gnupg
werner closed T1088: v2 smartcard fails to generate any pgp keys (BSD) as Resolved.
Jun 2 2014, 8:03 PM · Info Needed, Bug Report, gnupg, Not A Bug
werner closed T1418: Pinentry not installed while using gpg2 as Resolved.
Jun 2 2014, 8:02 PM · Not A Bug, Bug Report, gnupg
werner closed T1472: Issues decrypting the (encrypted) file that has special international characters in the name like ' í ' as Resolved.
Jun 2 2014, 8:02 PM · Bug Report, Not A Bug, gnupg
werner closed T1500: gpg2 exit code on G10ERR_NO_PUBKEY as Resolved.
Jun 2 2014, 8:02 PM · Not A Bug, Bug Report, gnupg
werner closed T1419: pipe-through of clearsigned documents adds an extra newline as Resolved.
Jun 2 2014, 8:01 PM · Not A Bug, Bug Report, gnupg
werner closed T1443: gpg always leaves files world-readable (security) as Resolved.
Jun 2 2014, 8:01 PM · Bug Report, gnupg, Not A Bug
werner added a project to T1596: GnuPG does not work correctly with OSX MS-DOS/FAT implementation.: Stalled.
Jun 2 2014, 7:59 PM · Not A Bug, Bug Report, MacOS, gnupg
werner removed a project from T1640: --with-fingerprint <FILE> does not show the fingerprint in some cases.: backport.
Jun 2 2014, 7:58 PM · Bug Report, gnupg
werner added a comment to T1640: --with-fingerprint <FILE> does not show the fingerprint in some cases..

Fixed for master.

Jun 2 2014, 7:58 PM · Bug Report, gnupg
werner added a comment to T1593: Import crash "mpi larger than packet".

Fixed for 2.0.23 and master.

Jun 2 2014, 7:58 PM · Bug Report, gnupg
werner closed T1593: Import crash "mpi larger than packet" as Resolved.
Jun 2 2014, 7:58 PM · Bug Report, gnupg
werner removed a project from T1556: GnuPG failed to build on MIPS64 due to a typo in longlong.h: Restricted Project.
Jun 2 2014, 5:42 PM · Bug Report, gnupg
werner closed T1556: GnuPG failed to build on MIPS64 due to a typo in longlong.h as Resolved.
Jun 2 2014, 5:42 PM · Bug Report, gnupg
werner added projects to T1640: --with-fingerprint <FILE> does not show the fingerprint in some cases.: Restricted Project, backport.
Jun 2 2014, 5:40 PM · Bug Report, gnupg
werner added a comment to T1640: --with-fingerprint <FILE> does not show the fingerprint in some cases..

Fixed for 2.0. But take care: The code now also uses the fixed-list-mode which
is the default in --list-keys for ages:

pub:-:1024:17:4713D527ECE16009:1118095577:::-:
fpr:::::::::8BFD3F436366D9820E9EAB2F4713D527ECE16009:
uid:::::::::George Hacker <georgeh@axian.com>:
uid:::::::::George Hacker <ghacker@axian.com>:
uid:::::::::George Hacker (GLS) <ghacker@redhat.com>:
uat:::::::::1 2493:
sub:-:1024:16:0D94CF6C0C8C2F1B:1118095578::::

Jun 2 2014, 5:40 PM · Bug Report, gnupg
werner added a project to T1588: GnuPG side channel attack, RSA4096 cracked via acoustic cryptanalysis: Mistaken.
Jun 2 2014, 4:29 PM · Mistaken, Bug Report, gnupg
werner closed T1588: GnuPG side channel attack, RSA4096 cracked via acoustic cryptanalysis as Resolved.
Jun 2 2014, 4:29 PM · Mistaken, Bug Report, gnupg
werner added a comment to T1588: GnuPG side channel attack, RSA4096 cracked via acoustic cryptanalysis.

I worked with the guys and fixed versions have been released in time. The paper
and website actuallay tell this.

Jun 2 2014, 4:29 PM · Mistaken, Bug Report, gnupg
werner added a project to T1644: Do not expect KeyIDs to be unique: Restricted Project.
Jun 2 2014, 4:27 PM · gnupg (gpg22), S/MIME, Bug Report
werner added a comment to T1644: Do not expect KeyIDs to be unique.

It is not the keygrip but the authority key identifier based lookup
which fails. Quite obvious if they do that stupid re-issuing. The
problem with dirmngr is only a side-effect of gpg not using the proper
certificate form the chain. Though, the question is which is the
proper certificate? They are both correct. I solved that my looking
for all matching certificates and using the latest one. That should
match reality better. Below is a log using a certificate store with
both DFN certificates. I have not done any Dirmngr tests, though.

The old certificate:

    ID: 0xFFFFFFFFA3EFE945
   S/N: 00C7
Issuer: /CN=Deutsche Telekom Root CA 2/OU=T-TeleSec Trust

Center/O=Deutsche Telekom AG/C=DE

  Subject: /CN=DFN-Verein PCA Global - G01/OU=DFN-PKI/O=DFN-Verein/C=DE
 validity: 2006-12-19 10:29:00 through 2019-06-30 23:59:00
 key type: 2048 bit RSA
key usage: certSign crlSign

chain length: 2

  fingerprint: F0:28:8F:DA:C6:3A:F7:9A:31:9A:E9:72:F3:95:09:0E:A3:EF:E9:45

The re-issued one:

    ID: 0x55715DB8
   S/N: 0089901115583E879B
Issuer: /CN=Deutsche Telekom Root CA 2/OU=T-TeleSec Trust

Center/O=Deutsche Telekom AG/C=DE

  Subject: /CN=DFN-Verein PCA Global - G01/OU=DFN-PKI/O=DFN-Verein/C=DE
 validity: 2014-02-11 13:11:45 through 2019-07-09 23:59:00
 key type: 2048 bit RSA
key usage: certSign crlSign

chain length: 2

  fingerprint: 2E:EF:D9:C0:99:A2:BB:1C:2B:AC:52:97:BD:FF:D8:C8:55:71:5D:B8

Use gpgsm --dump-cert to see the other info. By deleting one or the
other certificate and importing them in a different order, it is
possible to verify that the latest certificate is use.

$ echo hallo | ~/b/gnupg/sm/gpgsm -ea --disable-crl-checks --debug 1 -r Schnarre
gpgsm: used in a production environment or with production keys!
gpgsm: enabled debug flags: x509
gpgsm: DBG: BEGIN Certificate 'target':
gpgsm: DBG: serial: 13F7C661A329F4
gpgsm: DBG: notBefore: 2012-06-13 08:01:21
gpgsm: DBG: notAfter: 2015-06-13 08:01:21
gpgsm: DBG: issuer:
1.2.840.113549.1.9.1=#706B692D63614062756E6465737461672E6465,CN=Deutscher
Bundestag CA - G01,OU=Deutscher Bundestag,O=Deutscher Bundestag,C=DE
gpgsm: DBG: subject:
1.2.840.113549.1.9.1=#736162696E652E6C657574686575737365722D7363686E617272656E6265726765724062756E6465737461672E6465,CN=Sabine
Leutheusser-Schnarrenberger,OU=MdB,O=Deutscher Bundestag,C=DE
gpgsm: DBG: hash algo: 1.2.840.113549.1.1.5
gpgsm: DBG: SHA1 Fingerprint:
73:99:B8:58:93:E5:F8:E0:D7:7C:BE:7F:D8:4C:14:86:78:A1:E8:03
gpgsm: DBG: END Certificate
gpgsm: failed to open '/home/wk/.gnupg/policies.txt': No such file or directory
gpgsm: note: non-critical certificate policy not allowed
gpgsm: DBG: looking for parent certificate
gpgsm: DBG: found via authid and keyid
gpgsm: DBG: got issuer's certificate:
gpgsm: DBG: BEGIN Certificate 'issuer':
gpgsm: DBG: serial: 0D688CAF
gpgsm: DBG: notBefore: 2008-12-17 14:39:27
gpgsm: DBG: notAfter: 2019-06-30 00:00:00
gpgsm: DBG: issuer: CN=DFN-Verein PCA Global - G01,OU=DFN-PKI,O=DFN-Verein,C=DE
gpgsm: DBG: subject:
1.2.840.113549.1.9.1=#706B692D63614062756E6465737461672E6465,CN=Deutscher
Bundestag CA - G01,OU=Deutscher Bundestag,O=Deutscher Bundestag,C=DE
gpgsm: DBG: hash algo: 1.2.840.113549.1.1.5
gpgsm: DBG: SHA1 Fingerprint:
0A:0D:87:72:EE:E7:B9:47:AE:A7:FC:58:C5:47:90:7F:75:F9:50:62
gpgsm: DBG: END Certificate
gpgsm: DBG: gcry_pk_verify: Success
gpgsm: certificate is good
gpgsm: DBG: looking for parent certificate
gpgsm: DBG: found via authid and keyid
gpgsm: DBG: got issuer's certificate:
gpgsm: DBG: BEGIN Certificate 'issuer':
gpgsm: DBG: serial: 0089901115583E879B
gpgsm: DBG: notBefore: 2014-02-11 13:11:45
gpgsm: DBG: notAfter: 2019-07-09 23:59:00
gpgsm: DBG: issuer: CN=Deutsche Telekom Root CA 2,OU=T-TeleSec Trust
Center,O=Deutsche Telekom AG,C=DE
gpgsm: DBG: subject: CN=DFN-Verein PCA Global - G01,OU=DFN-PKI,O=DFN-Verein,C=DE
gpgsm: DBG: hash algo: 1.2.840.113549.1.1.11
gpgsm: DBG: SHA1 Fingerprint:
2E:EF:D9:C0:99:A2:BB:1C:2B:AC:52:97:BD:FF:D8:C8:55:71:5D:B8
gpgsm: DBG: END Certificate
gpgsm: DBG: gcry_pk_verify: Success
gpgsm: intermediate certificate is good
gpgsm: DBG: looking for parent certificate
gpgsm: DBG: found via authid and keyid
gpgsm: DBG: got issuer's certificate:
gpgsm: DBG: BEGIN Certificate 'issuer':
gpgsm: DBG: serial: 26
gpgsm: DBG: notBefore: 1999-07-09 12:11:00
gpgsm: DBG: notAfter: 2019-07-09 23:59:00
gpgsm: DBG: issuer: CN=Deutsche Telekom Root CA 2,OU=T-TeleSec Trust
Center,O=Deutsche Telekom AG,C=DE
gpgsm: DBG: subject: CN=Deutsche Telekom Root CA 2,OU=T-TeleSec Trust
Center,O=Deutsche Telekom AG,C=DE
gpgsm: DBG: hash algo: 1.2.840.113549.1.1.5
gpgsm: DBG: SHA1 Fingerprint:
85:A4:08:C0:9C:19:3E:5D:51:58:7D:CD:D6:13:30:FD:8C:DE:37:BF
gpgsm: DBG: END Certificate
gpgsm: DBG: gcry_pk_verify: Success
gpgsm: root certificate is good
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: validation model used: shell
gpgsm: encrypted data created

Jun 2 2014, 4:27 PM · gnupg (gpg22), S/MIME, Bug Report
werner closed T1647: configure error: libgpg-error: tests/Makefile.in missing in git repo as Resolved.
Jun 2 2014, 12:38 PM · Feature Request, gnupg, Not A Bug