Page MenuHome GnuPG
Feed All Stories

Jan 12 2022

gniibe added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

Let me clarify:

Jan 12 2022, 2:32 AM · Restricted Project, Bug Report, gnupg (gpg23)
l10n daemon script <scripty@kde.org> committed rKLEOPATRA0e94d0e00326: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Jan 12 2022, 1:49 AM
gniibe added a project to T5730: During make, compile error under Ubuntu 21.10: gpgme.
Jan 12 2022, 1:46 AM · gpgme, Bug Report
gniibe added a project to T5747: Provide a way to request non-FIPS service in FIPS mode: Restricted Project.
Jan 12 2022, 1:45 AM · Feature Request, FIPS, libgcrypt
gniibe added a project to T5759: Rename rndlinux module to rndoldlinux: Restricted Project.
Jan 12 2022, 1:44 AM · libgcrypt, FIPS

Jan 11 2022

Saturneric claimed T5598: AppImage of gpg.

I found this post when I was searching everywhere for a solution, and I was delighted. I've recently been trying to upload GpgFrontned in the Apple Store vs Microsoft and I'm having some trouble.

Jan 11 2022, 9:13 PM · AppImage, gnupg, Restricted Project, Feature Request
jukivili committed rC9bbb6c2c5d03: mpi/config.links: merge i586 targets with rest i*86 targets (authored by jukivili).
mpi/config.links: merge i586 targets with rest i*86 targets
Jan 11 2022, 7:17 PM
jukivili committed rC2800de892585: mpi: remove unused i586 and pentium4 assembly (authored by jukivili).
mpi: remove unused i586 and pentium4 assembly
Jan 11 2022, 7:17 PM
jukivili committed rC0c0f27a89205: mpi/amd64: remove extra 'ret' from assembly functions (authored by jukivili).
mpi/amd64: remove extra 'ret' from assembly functions
Jan 11 2022, 7:17 PM
jukivili committed rC11ade08efbfb: Add straight-line speculation hardening for amd64 and i386 assembly (authored by jukivili).
Add straight-line speculation hardening for amd64 and i386 assembly
Jan 11 2022, 7:17 PM
jukivili committed rC34bcc102158a: Add straight-line speculation hardening for aarch64 assembly (authored by jukivili).
Add straight-line speculation hardening for aarch64 assembly
Jan 11 2022, 7:17 PM
jukivili committed rCff2a647d3667: Optimizations for AES aarch64-ce assembly implementation (authored by jukivili).
Optimizations for AES aarch64-ce assembly implementation
Jan 11 2022, 7:17 PM
jukivili committed rC4e6f1ef5a00e: Add armv8/pmull accelerated POLYVAL for GCM-SIV (authored by jukivili).
Add armv8/pmull accelerated POLYVAL for GCM-SIV
Jan 11 2022, 7:17 PM
jukivili committed rC859b6ac7fbdb: Use 'vmov' and 'movi' for vector register clearing in ARM assembly (authored by jukivili).
Use 'vmov' and 'movi' for vector register clearing in ARM assembly
Jan 11 2022, 7:17 PM
jukivili committed rCf664333a4749: Add SM3 ARM/AArch64 assembly implementation (authored by jukivili).
Add SM3 ARM/AArch64 assembly implementation
Jan 11 2022, 7:17 PM
Jakuje added a comment to T5512: Implement service indicators.

I went through the documentation related to FIPS and updated some wording to match reality. It will probably require still some more work.

Jan 11 2022, 7:10 PM · Feature Request, FIPS, libgcrypt
Jakuje added a comment to T5512: Implement service indicators.

This is my draft for the FIPS indicator KDF. I think we do not need to keep the original GCRYCTL_FIPS_SERVICE_INDICATOR if we replace it also in the tests. This will also need some tests and documentation update.

Jan 11 2022, 3:46 PM · Feature Request, FIPS, libgcrypt
werner committed rD2222a2835941: blog: Fix last blog to make clear that we are talking about OS software. (authored by werner).
blog: Fix last blog to make clear that we are talking about OS software.
Jan 11 2022, 11:48 AM
werner moved T5691: Release libgcrypt 1.10.0 from Backlog to Next on the FIPS board.
Jan 11 2022, 11:06 AM · FIPS, Release Info, libgcrypt
werner moved T5759: Rename rndlinux module to rndoldlinux from Next to Ready for release on the FIPS board.
Jan 11 2022, 11:06 AM · libgcrypt, FIPS
werner moved T5747: Provide a way to request non-FIPS service in FIPS mode from Next to Ready for release on the FIPS board.
Jan 11 2022, 11:06 AM · Feature Request, FIPS, libgcrypt
werner moved T5600: Provide module name/version API for FIPS 140-3 from Next to Ready for release on the FIPS board.
Jan 11 2022, 11:05 AM · libgcrypt, FIPS, Bug Report
werner added a comment to T5512: Implement service indicators.

Yes, we should introduce an INDICATOR_KDF thing.

Jan 11 2022, 10:57 AM · Feature Request, FIPS, libgcrypt
werner triaged T5769: fix typo in autogen.sh as Low priority.

The primary version of that script is in libgpg-error. Thus it needs to be fixed therefirst.

Jan 11 2022, 10:41 AM · Documentation, gpgrt
ikloecker committed rGb66854ac93d8: gpg: Report failed generation of subkey pair via status interface (authored by ikloecker).
gpg: Report failed generation of subkey pair via status interface
Jan 11 2022, 10:13 AM
ikloecker committed rG19b1a28621c6: gpg: Request keygrip of key to add via command interface (authored by ikloecker).
gpg: Request keygrip of key to add via command interface
Jan 11 2022, 10:13 AM
dkg closed T5762: libgpg-error: permit auto-introspection on non-glibc platforms like musl as Resolved.

Thank you, @gniibe ! i'm applying your change to the debian packaging as 1.43-2. i'll let you know if it doesn't satisfy the folks trying to crossbuild debian on top of musl.

Jan 11 2022, 9:53 AM · gpgrt, Bug Report
dkg created T5769: fix typo in autogen.sh.
Jan 11 2022, 9:06 AM · Documentation, gpgrt
gniibe committed rC560943805a52: random: Rename rndlinux module to rndoldlinux. (authored by gniibe).
random: Rename rndlinux module to rndoldlinux.
Jan 11 2022, 6:58 AM
gniibe committed rC83e58191d3d9: configure: Fix help text for the fips module version (authored by Jakuje).
configure: Fix help text for the fips module version
Jan 11 2022, 6:39 AM
gniibe added a comment to T5600: Provide module name/version API for FIPS 140-3.

Thank you.
Applied.

Jan 11 2022, 6:39 AM · libgcrypt, FIPS, Bug Report
gniibe moved T5512: Implement service indicators from Ready for release to Next on the FIPS board.
Jan 11 2022, 6:37 AM · Feature Request, FIPS, libgcrypt
gniibe moved T5600: Provide module name/version API for FIPS 140-3 from Ready for release to Next on the FIPS board.
Jan 11 2022, 6:37 AM · libgcrypt, FIPS, Bug Report
gniibe added a comment to T5747: Provide a way to request non-FIPS service in FIPS mode.

Patch applied, doc updated.
No change of FSM diagram.

Jan 11 2022, 6:34 AM · Feature Request, FIPS, libgcrypt
gniibe committed rC2a8b3fed1a80: fips: Provide a mechanizm to put libgcrypt in non-FIPS mode. (authored by gniibe).
fips: Provide a mechanizm to put libgcrypt in non-FIPS mode.
Jan 11 2022, 6:34 AM
gniibe added a comment to T5752: libgcrypt: Adding aes-wrap-pad (RFC5649) support.

I pushed the change: rC383866f014f2: cipher: Keep original behavior of Key Unwrap when not extended.

Jan 11 2022, 5:39 AM · Feature Request, libgcrypt
gniibe added a project to T5712: Yubikey 5 NFC only recognized immediately after it is inserted: Documentation.
Jan 11 2022, 5:32 AM · Documentation, Bug Report
gniibe claimed T5762: libgpg-error: permit auto-introspection on non-glibc platforms like musl.
Jan 11 2022, 5:24 AM · gpgrt, Bug Report
gniibe added a comment to T5762: libgpg-error: permit auto-introspection on non-glibc platforms like musl.

Thank you for forwarding from Debian.

Jan 11 2022, 5:23 AM · gpgrt, Bug Report
gniibe committed rC383866f014f2: cipher: Keep original behavior of Key Unwrap when not extended. (authored by gniibe).
cipher: Keep original behavior of Key Unwrap when not extended.
Jan 11 2022, 3:10 AM

Jan 10 2022

manphiz added a comment to T5765: gnupg2 weird memory fault on NetBSD Loongson/mips64el N32.

Thanks Werner! As I'm on NetBSD I was able to use ktrace instead, and you can find the output at https://termbin.com/zm2c. (It expires in 1 month. Let me know if you would like me to paste the full output here.)

Jan 10 2022, 9:19 PM · MIPS, Bug Report
jani added a comment to T5764: Broken umlauts in the new Windows Terminal.

That seems to (mostly) work partially fix PowerShell pipeline output at least:

Jan 10 2022, 7:09 PM · gnupg24, i18n, gnupg (gpg23), Bug Report, gpg4win
patrick closed T5763: gpgme-json missing as Invalid.

Oh, I' sorry - my fault. I searched in ...\GnuPG\bin instead of ...\gpg4win\bin

Jan 10 2022, 6:44 PM · Info Needed, Bug Report, gpg4win
werner added projects to T5764: Broken umlauts in the new Windows Terminal: gnupg (gpg23), i18n.
Jan 10 2022, 6:17 PM · gnupg24, i18n, gnupg (gpg23), Bug Report, gpg4win
werner added a comment to T5764: Broken umlauts in the new Windows Terminal.

We use GetConsoleOutputCP but fallback to GetACP if the former fails. For some reasons one of the functions seems to return 437.

Jan 10 2022, 6:16 PM · gnupg24, i18n, gnupg (gpg23), Bug Report, gpg4win
werner added a project to T5765: gnupg2 weird memory fault on NetBSD Loongson/mips64el N32: MIPS.

Given that you are already using libgcrypt 1.9, can you please try gnupg 2.3.4.

Jan 10 2022, 6:04 PM · MIPS, Bug Report
werner closed T5767: scdaemon gets stuck on smartcard access as Resolved.

That is annoying enough that we should do a new release. I close this bug, though.

Jan 10 2022, 6:00 PM · Bug Report, gpg4win
ikloecker added a comment to T5767: scdaemon gets stuck on smartcard access.

See T5758: scd: loop forever with reader_port, when open_pcsc_reader failed. Yes, the workaround is not to set reader-port.

Jan 10 2022, 5:01 PM · Bug Report, gpg4win
Jakuje added a comment to T5512: Implement service indicators.

The previous comment should have come to the T5600. Sorry for the noise.

Jan 10 2022, 4:30 PM · Feature Request, FIPS, libgcrypt
aheinecke triaged T5768: Dirmngr: Use windows proxy settings if system proxy settings should be used as Normal priority.
Jan 10 2022, 4:24 PM · Feature Request, gnupg, Restricted Project
Jakuje updated subscribers of T5600: Provide module name/version API for FIPS 140-3.

Sorry for resurrecting the done task, but I got a message from @pmgdeb who noticed there is mismatch between parenthesis in the --with-fips-module-version help string. The attached patch fixes the issue and add proper help text.

Jan 10 2022, 3:41 PM · libgcrypt, FIPS, Bug Report
JanMosigItemis updated the task description for T5767: scdaemon gets stuck on smartcard access.
Jan 10 2022, 2:29 PM · Bug Report, gpg4win
JanMosigItemis created T5767: scdaemon gets stuck on smartcard access.
Jan 10 2022, 2:28 PM · Bug Report, gpg4win
werner created MIPS.
Jan 10 2022, 2:17 PM
ikloecker committed rKLEOPATRA0d99e3324945: Fix error message and show success message (authored by ikloecker).
Fix error message and show success message
Jan 10 2022, 2:12 PM
ikloecker closed Unknown Object (Maniphest Task), a subtask of T5755: Kleopatra: Export secret subkeys, as Resolved.
Jan 10 2022, 1:58 PM · Restricted Project, Feature Request, kleopatra
ikloecker closed Unknown Object (Maniphest Task), a subtask of T5755: Kleopatra: Export secret subkeys, as Resolved.
Jan 10 2022, 1:57 PM · Restricted Project, Feature Request, kleopatra
ikloecker committed rMa527bd7cf585: core: Return an error for secret key export operations (authored by ikloecker).
core: Return an error for secret key export operations
Jan 10 2022, 1:01 PM
ikloecker committed rKLEOPATRAbe741531cf8b: Deprecate the old ExportSecretKeyCommand (authored by ikloecker).
Deprecate the old ExportSecretKeyCommand
Jan 10 2022, 12:39 PM
ikloecker committed rKLEOPATRA84b3b92460b2: Remove unused public c'tors and member functions (authored by ikloecker).
Remove unused public c'tors and member functions
Jan 10 2022, 12:39 PM
ikloecker committed rKLEOPATRA9c0468ebaa10: Add new implementation of ExportSecretKeyCommand (authored by ikloecker).
Add new implementation of ExportSecretKeyCommand
Jan 10 2022, 12:39 PM
bernhard added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

Ubuntu have been syncing since 7th December: https://www.mail-archive.com/sks-devel@nongnu.org/msg07174.html

Jan 10 2022, 12:06 PM · dirmngr, Keyserver
andrewgdotcom added a watcher for Keyserver: andrewgdotcom.
Jan 10 2022, 12:05 PM
andrewgdotcom added a watcher for ssh: andrewgdotcom.
Jan 10 2022, 12:04 PM
andrewgdotcom added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

Ubuntu have been syncing since 7th December: https://www.mail-archive.com/sks-devel@nongnu.org/msg07174.html

Jan 10 2022, 12:00 PM · dirmngr, Keyserver
bernhard added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

Why the Ubuntu server? AFAIU it does not sync with other servers and it has some tained pubkeys (which is both fine as a choice of this service, it just does not seem to fit the purposes best).

Jan 10 2022, 11:55 AM · dirmngr, Keyserver
Jakuje added a comment to T5512: Implement service indicators.

Sorry for resurrecting the done task, but I got a message from @pmgdeb who noticed there is mismatch between parenthesis in the --with-fips-module-version help string. The attached patch fixes the issue and add proper help text.

Jan 10 2022, 9:34 AM · Feature Request, FIPS, libgcrypt
aheinecke closed T5493: Attachment1.pgp not offered for saving in an email from Symantec Encryption Desktop (PGP) as Wontfix.

I am tending towards wontfix. The reason is here that the sender attempts to send HTML with inline pgp. Which is not supported. Then that HTML apparently tries to be mutlipart/related which is not supported for inline PGP. Then it would require us to correct a wrongly sent content type of the inline attachment so that outlook does not interpret it as a png. And in that Format it could even be that Attachment1.pgp is not encrypted but instead png data, as the content type indicates.

Jan 10 2022, 9:30 AM · gpgol
werner committed rGbf4cf04a54bb: gpgtar: List and extract using extended headers. (authored by werner).
gpgtar: List and extract using extended headers.
Jan 10 2022, 9:29 AM
werner committed rGec69ceab2615: gpgtar: Create extended header for long file names (authored by werner).
gpgtar: Create extended header for long file names
Jan 10 2022, 9:29 AM
werner changed the status of T5751: Please remove pgp.surf.nl from default dirmngr config from Open to Testing.
Jan 10 2022, 9:20 AM · dirmngr, Keyserver
werner added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

For the next release I'll change the gnupg.net mappings to use the Ubuntu server also for non-TLS connections.

Jan 10 2022, 9:20 AM · dirmngr, Keyserver
werner committed rGd445e1936526: dirmngr: Map all gnupg.net addresses to the Ubuntu keyserver. (authored by werner).
dirmngr: Map all gnupg.net addresses to the Ubuntu keyserver.
Jan 10 2022, 9:17 AM
aheinecke added a project to T5763: gpgme-json missing: Info Needed.

I have just checked both the installation script, which still installs gpgme-json.exe and the gpg4win-4 installer downloaded from gpg4win.org gpgme-json.exe is properly installed under <instdir>\bin gpgme-json.exe and under bin_64

Jan 10 2022, 9:00 AM · Info Needed, Bug Report, gpg4win
Laurent Montel <montel@kde.org> committed rKLEOPATRA49e0e1b82bb1: Adapt build system for building against qt6 (authored by Laurent Montel <montel@kde.org>).
Adapt build system for building against qt6
Jan 10 2022, 7:51 AM
manphiz created T5765: gnupg2 weird memory fault on NetBSD Loongson/mips64el N32.
Jan 10 2022, 3:57 AM · MIPS, Bug Report

Jan 9 2022

werner committed rG3a1c556b2c3a: gpgtar: Create extended header for long file names (authored by werner).
gpgtar: Create extended header for long file names
Jan 9 2022, 7:09 PM
werner committed rG99a8b1f13831: gpgtar: List and extract using extended headers. (authored by werner).
gpgtar: List and extract using extended headers.
Jan 9 2022, 7:09 PM
werner closed T5734: web,libgcrypt: Publish our stance what kind of attacks are **not** under our scope as Resolved.
Jan 9 2022, 6:55 PM · www.gnupg.org, libgcrypt
werner triaged T5763: gpgme-json missing as Normal priority.
Jan 9 2022, 6:54 PM · Info Needed, Bug Report, gpg4win
jani updated the task description for T5764: Broken umlauts in the new Windows Terminal.
Jan 9 2022, 3:22 PM · gnupg24, i18n, gnupg (gpg23), Bug Report, gpg4win
jani created T5764: Broken umlauts in the new Windows Terminal.
Jan 9 2022, 3:16 PM · gnupg24, i18n, gnupg (gpg23), Bug Report, gpg4win
patrick renamed T5763: gpgme-json missing from gpgme-json misson to gpgme-json missing.
Jan 9 2022, 2:44 PM · Info Needed, Bug Report, gpg4win
patrick created T5763: gpgme-json missing.
Jan 9 2022, 2:42 PM · Info Needed, Bug Report, gpg4win
Laurent Montel <montel@kde.org> committed rLIBKLEOd99191b942e1: Adapt build system for building qt6 (authored by Laurent Montel <montel@kde.org>).
Adapt build system for building qt6
Jan 9 2022, 9:24 AM
Laurent Montel <montel@kde.org> committed rLIBKLEOfea884313885: GIT_SILENT: time to increase version (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: time to increase version
Jan 9 2022, 9:24 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA1d41c96507b7: GIT_SILENT: time to increase version (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: time to increase version
Jan 9 2022, 9:21 AM
dkg created T5762: libgpg-error: permit auto-introspection on non-glibc platforms like musl.
Jan 9 2022, 2:41 AM · gpgrt, Bug Report

Jan 8 2022

werner added a comment to T5760: Kleopatra hangs loading certificate cache on Windows 11.

See T5758. The workaround is not to set a reader-port.

Jan 8 2022, 8:24 PM · Bug Report, gpg4win
werner triaged T5761: Libgcrypt: salt-length for RSA-PSS is not documented as Normal priority.
Jan 8 2022, 8:20 PM · Bug Report, Documentation, libgcrypt
Laurent Montel <montel@kde.org> committed rLIBKLEO6794bb7b586f: GIT_SILENT: prepare 21.12.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 21.12.2
Jan 8 2022, 4:06 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRA15d5c5925c8b: GIT_SILENT: prepare 21.12.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 21.12.2
Jan 8 2022, 4:03 PM

Jan 7 2022

JaminCollins added a comment to T5760: Kleopatra hangs loading certificate cache on Windows 11.

Downgraded the gnupg to 2.2.33 using this installer and I am now able to successfully open the Kleopatra GUI.

Jan 7 2022, 7:09 PM · Bug Report, gpg4win
JaminCollins added a comment to T5760: Kleopatra hangs loading certificate cache on Windows 11.

Should also note that once the GUI is opened, GnuPG's smartcard deamon (32 bit) transitions to Very high power usage and appears stuck there, consuming a full logical core's worth of CPU time.

Jan 7 2022, 7:02 PM · Bug Report, gpg4win
MikhailRyazanov created T5761: Libgcrypt: salt-length for RSA-PSS is not documented.
Jan 7 2022, 4:50 PM · Bug Report, Documentation, libgcrypt

Jan 6 2022

JaminCollins renamed T5760: Kleopatra hangs loading certificate cache on Windows 11 from Kleopatra hangs ___ on Windows 11 to Kleopatra hangs loading certificate cache on Windows 11.
Jan 6 2022, 10:46 PM · Bug Report, gpg4win
JaminCollins created T5760: Kleopatra hangs loading certificate cache on Windows 11.
Jan 6 2022, 10:45 PM · Bug Report, gpg4win
ikloecker committed rKLEOPATRA0c8a90d4e662: Add export of secret subkeys (authored by ikloecker).
Add export of secret subkeys
Jan 6 2022, 3:29 PM
Claudio Cambra <claudio.cambra@gmail.com> committed rLIBKLEO968417e0b0e2: Remove boost from cmakelists (authored by Claudio Cambra <claudio.cambra@gmail.com>).
Remove boost from cmakelists
Jan 6 2022, 1:44 PM
Laurent Montel <montel@kde.org> committed rLIBKLEO69138af79cdf: GIT_SILENT: prepare 5.19.2 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 5.19.2
Jan 6 2022, 1:43 PM