Page MenuHome GnuPG
Feed Advanced Search

Apr 9 2024

werner committed rW7ae99e6addd7: Update kleopatra, libkleo, and gnupg 2.2 to a new snapshot (authored by werner).
Update kleopatra, libkleo, and gnupg 2.2 to a new snapshot
Apr 9 2024, 3:24 PM
werner added projects to T7066: Communication with Yubikey hangs in scdaemon: yubikey, Arch.
Apr 9 2024, 1:44 PM · Arch, yubikey, Bug Report
werner triaged T7041: Yubikey (PGP + PIV) --pcsc-shared: PIN requires every time as Normal priority.
Apr 9 2024, 1:42 PM · gnupg26, yubikey, scd, Bug Report
werner committed rG15564fa3f65d: po: Update some translations for the |R| prompt flag. (authored by werner).
po: Update some translations for the |R| prompt flag.
Apr 9 2024, 1:36 PM
werner added a comment to T7079: GpgOL: Mark level 2 and 3 in a clearly different way .

Yellow indicates a warning. In the old days we used yellow in too many cases and people barely got a green. This raised more user questioned than it was helpful. There is also a problem with accessibility if we overload colors too much.

Apr 9 2024, 1:25 PM · gpgol, Restricted Project
werner committed rG52c4b0908043: gpg: Some support to allow Kyber decryption. (authored by werner).
gpg: Some support to allow Kyber decryption.
Apr 9 2024, 11:01 AM
werner committed rG1a37f0080b3e: kbx: Support kyber in the blob parser. (authored by werner).
kbx: Support kyber in the blob parser.
Apr 9 2024, 11:01 AM
werner closed T7074: gpg fails with error if you delete the ~/.gnupg directory as Resolved.
Apr 9 2024, 8:41 AM · Support, gnupg

Apr 8 2024

werner committed rGf7a26aa8adc3: kbx: Fix keyid search for mixed v4/v5 case. (authored by werner).
kbx: Fix keyid search for mixed v4/v5 case.
Apr 8 2024, 8:39 PM
werner committed rE2dc93cfecc7a: argparser: avoid endless loop due to a conf file read error. (authored by werner).
argparser: avoid endless loop due to a conf file read error.
Apr 8 2024, 11:09 AM
werner edited projects for T7074: gpg fails with error if you delete the ~/.gnupg directory, added: gnupg, Support; removed Bug Report.
Apr 8 2024, 9:47 AM · Support, gnupg
werner added a comment to T7074: gpg fails with error if you delete the ~/.gnupg directory.

I guess the agent was still running when you deleted and soon re-created the ~/.gnupg directory. The agent is responsible for the private keys subdir and it did not yet noticed that its homedir (and thie subdir) vanished. Depending on your system the agent should terminate itself after some time in case the homedirectory was deleted. Thus to remove the homedir please use

Apr 8 2024, 8:52 AM · Support, gnupg

Apr 5 2024

werner committed rGc5d7a332c840: gpg: Do not allow to accidently set the RENC usage. (authored by werner).
gpg: Do not allow to accidently set the RENC usage.
Apr 5 2024, 4:18 PM
werner committed rG68d9bc9c35bb: agent: Fix error handling of READKEY. (authored by werner).
agent: Fix error handling of READKEY.
Apr 5 2024, 4:16 PM
werner committed rG03d53c88ccf5: gpg: Allow to create a Kyber key from keygrips. (authored by werner).
gpg: Allow to create a Kyber key from keygrips.
Apr 5 2024, 4:16 PM
werner committed rG53c6b1e85854: gpg: Support dual keygrips. (authored by werner).
gpg: Support dual keygrips.
Apr 5 2024, 4:16 PM
werner added a comment to T7014: agent: Enhancement of PKDECRYPT for KEM interface.

I created a pubkey (actually a subkey) for your above test keys:

Apr 5 2024, 4:09 PM · gnupg26, gpgagent, Feature Request
werner added a comment to T7050: Kleopatra: Exit on windows if elevated and dont ask.

I don't see a problem here. Of course Kleopatra could run a gpgconf -K all when it really exits but I doubt that we need to do that in this special elevated case

Apr 5 2024, 4:05 PM · vsd32 (vsd-3.2.0), kleopatra, Restricted Project
werner committed rGb261478c06f0: agent: Fix error handling of READKEY. (authored by werner).
agent: Fix error handling of READKEY.
Apr 5 2024, 2:44 PM
werner committed rC9e6db9d74631: Trailing comma removal for better portability. (authored by werner).
Trailing comma removal for better portability.
Apr 5 2024, 1:59 PM
werner committed rCd211e7fe9673: ecc: Add bp256, bp384, bp512 aliases for Brainpool curves. (authored by werner).
ecc: Add bp256, bp384, bp512 aliases for Brainpool curves.
Apr 5 2024, 1:59 PM
werner added a project to T7040: Make it possible to install GnuPG VSD and GPD in parallel: kleopatra.
Apr 5 2024, 12:17 PM · kleopatra, Restricted Project
werner committed rGce8b25270b2a: agent: Make "PKDECRYPT --kem" with optional value work. (authored by werner).
agent: Make "PKDECRYPT --kem" with optional value work.
Apr 5 2024, 11:22 AM
werner committed rG548fd7bca787: gpg: Don't show the "fast path listing" diagnostic with --quiet. (authored by werner).
gpg: Don't show the "fast path listing" diagnostic with --quiet.
Apr 5 2024, 11:03 AM

Apr 4 2024

werner moved T7072: addkey "set your own capabilities" silently sets Restricted Encryption capability from Backlog to QA on the gnupg24 board.
Apr 4 2024, 4:51 PM · gnupg24 (2.4.6)
werner changed the status of T7072: addkey "set your own capabilities" silently sets Restricted Encryption capability from Open to Testing.
Apr 4 2024, 4:50 PM · gnupg24 (2.4.6)
werner committed rG0b1f7427b3ca: gpg: Do not allow to accidently set the RENC usage. (authored by werner).
gpg: Do not allow to accidently set the RENC usage.
Apr 4 2024, 4:50 PM
werner committed rG1f31dc620088: gpg: Do not allow to accidently set the RENC usage. (authored by werner).
gpg: Do not allow to accidently set the RENC usage.
Apr 4 2024, 4:49 PM
werner added a comment to T7072: addkey "set your own capabilities" silently sets Restricted Encryption capability.

Pretty obvious. RENC is an allowed usage for an RSA key and thus set in the mask. I restricted this but allowed to set it anyway when using the "=sr" shortcut (here to set as signing and R-enc). Thanks for reporting.

Apr 4 2024, 4:40 PM · gnupg24 (2.4.6)
werner triaged T7072: addkey "set your own capabilities" silently sets Restricted Encryption capability as Normal priority.
Apr 4 2024, 4:09 PM · gnupg24 (2.4.6)
werner committed rG98e287ba6d55: gpgconf: Change layout of the gpgconf -X output. (authored by werner).
gpgconf: Change layout of the gpgconf -X output.
Apr 4 2024, 3:55 PM
werner committed rG72c5c708713f: gpgconf: Change layout of the gpgconf -X output. (authored by werner).
gpgconf: Change layout of the gpgconf -X output.
Apr 4 2024, 3:55 PM

Apr 3 2024

werner committed rG97f515949514: gpg: Initial support for generating Kyber subkeys. (authored by werner).
gpg: Initial support for generating Kyber subkeys.
Apr 3 2024, 6:00 PM
werner committed rG6c1dd3afd12b: common: Extend openpgp_oid_to_curve to return an abbreviated name. (authored by werner).
common: Extend openpgp_oid_to_curve to return an abbreviated name.
Apr 3 2024, 2:16 PM
werner committed rG4b981e415fb9: tests: Add a sample PDF with a signature (authored by werner).
tests: Add a sample PDF with a signature
Apr 3 2024, 2:16 PM
werner committed rGfa33b1894045: common: Allow building with libgcrypt 1.10 for now. (authored by werner).
common: Allow building with libgcrypt 1.10 for now.
Apr 3 2024, 9:46 AM
werner closed T7070: Missing signature on uninstallers (leads to Windows warning when trying to deinstall) as Wontfix.

This is long known and we won't fix this for gpg4win.

Apr 3 2024, 9:30 AM · gpg4win
werner closed T6515: GPG in FIPS mode spits out useless "out of core handler ignored in FIPS mode" message on every execution as Resolved.
Apr 3 2024, 9:28 AM · FIPS, Bug Report

Mar 28 2024

werner triaged T7068: Two typos in italian i18n PO file as Normal priority.
Mar 28 2024, 3:32 PM · gnupg, i18n, Bug Report
werner added a comment to T7066: Communication with Yubikey hangs in scdaemon.

Please use

Mar 28 2024, 1:22 PM · Arch, yubikey, Bug Report
werner assigned T7065: pinentry 1.3.0 ships desktop file with icons, but does not install them to TobiasFella.

Tobias, if you find some time, can you please see how this can be done.

Mar 28 2024, 1:18 PM · pinentry, Bug Report
werner added a comment to T7058: KDF-DO is not properly implemented.

Please keep also in mind that the OpenPGP card specification has always and is still developed along with GnuPG . Thus if there are any uncertainties in the specification GnuPG's way of handling thing is the way to go. If there is a way to chnage things without risking any breakage we can of course fix that. In all other cases we need to continue wit the current way. For larger changes in the spec we can of course cleanup stuff - Achim is currently reworking on a revision.

Mar 28 2024, 10:05 AM · scd, gnupg, Bug Report

Mar 27 2024

werner added a comment to T7061: KMail/GpgOL: Incompatibility with RNP.
Mar 27 2024, 12:26 PM · gpgol, Restricted Project, KMail
werner committed rG571a768ac62c: gpgsm: Allow to add extensions at the --gen-key prompt. (authored by werner).
gpgsm: Allow to add extensions at the --gen-key prompt.
Mar 27 2024, 12:12 PM

Mar 26 2024

werner triaged T7060: Add option to allow the use of libcs fds on the Windows command line. as Low priority.
Mar 26 2024, 3:47 PM · Feature Request, gnupg
werner changed the status of T7060: Add option to allow the use of libcs fds on the Windows command line. from Open to Testing.
Mar 26 2024, 3:47 PM · Feature Request, gnupg
werner committed rGf9919bcc4883: gpg,gpgsm: New option --disable-fd-translation. (authored by werner).
gpg,gpgsm: New option --disable-fd-translation.
Mar 26 2024, 3:46 PM
werner created T7060: Add option to allow the use of libcs fds on the Windows command line..
Mar 26 2024, 3:21 PM · Feature Request, gnupg
werner committed rGcec1fde1bc7e: scd: Add new OpenPGP vendor (authored by werner).
scd: Add new OpenPGP vendor
Mar 26 2024, 3:20 PM
werner added a comment to T7050: Kleopatra: Exit on windows if elevated and dont ask.

Works for me using the latest vsd beta (3.1.92.39)

Mar 26 2024, 12:51 PM · vsd32 (vsd-3.2.0), kleopatra, Restricted Project
werner triaged T7058: KDF-DO is not properly implemented as Normal priority.
Mar 26 2024, 10:11 AM · scd, gnupg, Bug Report
werner added projects to T7058: KDF-DO is not properly implemented: gnupg, scd.
Mar 26 2024, 10:11 AM · scd, gnupg, Bug Report

Mar 25 2024

werner closed T7047: GnuPG release target authenticode signs files double as Resolved.

I am still not sure why I noticed the double signing but with the new stamp feature we have an effective way to avoid long delays due to authenticode signing. Some gmake macro guru might want to look at gpg4win.mk.in to get rid of the duplicate rule ignore messages.

Mar 25 2024, 4:50 PM · Bug Report, gnupg
werner committed rWd6785638b013: Avoid multiple calls to the Authenticode signing function. (authored by werner).
Avoid multiple calls to the Authenticode signing function.
Mar 25 2024, 3:42 PM
werner committed rWfe5f7b37e750: Update to a GnuPG 2.2 snaphots and a recent Kleo from 23.10 (authored by werner).
Update to a GnuPG 2.2 snaphots and a recent Kleo from 23.10
Mar 25 2024, 3:42 PM
werner triaged T7056: GPGme 1.23.2 has Undefined symbols: "strcasecmp(char const*, char const*)" on Mac OS X 10.4.11, PPC Tiger as Normal priority.

strcasecmp is pretty standard on Unix. However, in GnuPG we test for it and mostly use our own ascii_strcasecmp to avoid fun with locales. Ralph Seichter is providing macOS builds for GnuPG (https://sourceforge.net/p/gpgosx/docu/Download/) . Maybe it is worth to contact him via the gnugp-devel mailing list and ask him whether he has experience with your toochain.

Mar 25 2024, 1:27 PM · gpgme, MacOS, Bug Report

Mar 24 2024

werner edited projects for T7056: GPGme 1.23.2 has Undefined symbols: "strcasecmp(char const*, char const*)" on Mac OS X 10.4.11, PPC Tiger, added: gpgme; removed gpgme (gpgme 1.23.x).
Mar 24 2024, 7:10 PM · gpgme, MacOS, Bug Report

Mar 23 2024

werner edited projects for T7053: If there are more than one S/MIME Keys you can select the key for encription, but not the key used for signing, added: vsd, kleopatra, Restricted Project; removed gpg4win.
Mar 23 2024, 1:30 PM · Support
werner closed T7003: 2.2 gpg-agent doesn't allow KEYINFO when restricted (was: gpgme-1.23.2 test failure (t-json)) as Resolved.
Mar 23 2024, 1:29 PM · gnupg22 (gnupg-2.2.43), gpgagent, gpgme, Gentoo, Bug Report
werner renamed SPAM-NadiaEira from NadiaEira to SPAM-NadiaEira.
Mar 23 2024, 1:27 PM

Mar 21 2024

werner added a comment to T7047: GnuPG release target authenticode signs files double.

And we should also use timestamps for each signed file so that we don't need to re-sign all of them over and over during build process tweaking.

Mar 21 2024, 5:52 PM · Bug Report, gnupg
werner requested changes to D584: WIP: Add cmake build system for cpp bindings.

Use autogen.sh to keep version in sync

Mar 21 2024, 5:50 PM
werner moved T7040: Make it possible to install GnuPG VSD and GPD in parallel from Restricted Project Column to Restricted Project Column on the Restricted Project board.

We also need to tweak the Windows installer and probably also Kleopatra. For example we use use standard registry entries for all products.

Mar 21 2024, 5:42 PM · kleopatra, Restricted Project
werner committed rGa0bfbdaaa2d9: Allow installation with a gpgconf.ctl changed homedir. (authored by werner).
Allow installation with a gpgconf.ctl changed homedir.
Mar 21 2024, 5:41 PM
werner committed rGfb3fe38d2831: common: Use a common gpgconf.ctl parser for Unix and Windows. (authored by werner).
common: Use a common gpgconf.ctl parser for Unix and Windows.
Mar 21 2024, 5:41 PM

Mar 20 2024

werner committed rWbf2e1f109ca0: Use a separate script to authenticode sign files. (authored by werner).
Use a separate script to authenticode sign files.
Mar 20 2024, 5:18 PM

Mar 19 2024

werner added a comment to T7044: Deadlock on Windows in sdaemon.

The reset was due to running gpg-connect-agent reset /bye. I am currently testing something elese will get back as soon as I can turn back to 2.4

Mar 19 2024, 10:22 AM · scd, Bug Report, Windows, gnupg24
werner added a comment to D596: Add a '5' to adjust defines.

New release due?

Mar 19 2024, 10:18 AM
werner closed T7042: AEAD mode does not properly handle modified cipher text as Resolved.

Note that this has also been ported to 2.4 and 2.2 and tested by looking at the status lines.

Mar 19 2024, 10:14 AM · gnupg26, Bug Report

Mar 18 2024

werner moved T7003: 2.2 gpg-agent doesn't allow KEYINFO when restricted (was: gpgme-1.23.2 test failure (t-json)) from Backlog to QA on the gnupg22 board.
Mar 18 2024, 4:24 PM · gnupg22 (gnupg-2.2.43), gpgagent, gpgme, Gentoo, Bug Report
werner moved T6719: Support Proxy-Authorization: Negotiate on Windows from QA to WiP on the gnupg22 board.
Mar 18 2024, 4:22 PM · gnupg24, gnupg22, Feature Request, Restricted Project
werner moved T6719: Support Proxy-Authorization: Negotiate on Windows from WiP to QA on the gnupg22 board.
Mar 18 2024, 4:22 PM · gnupg24, gnupg22, Feature Request, Restricted Project
werner moved T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy from WiP to QA on the gnupg22 board.
Mar 18 2024, 4:22 PM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T6811: gpgv: Read-only trustedkeys.kbx should not be compressed from WiP to QA on the gnupg22 board.
Mar 18 2024, 4:22 PM · gnupg24 (gnupg-2.4.5), gpgv, Bug Report
werner moved T7025: --trusted-key and --no-options mismatch from WiP to QA on the gnupg22 board.
Mar 18 2024, 4:22 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner created T7047: GnuPG release target authenticode signs files double.
Mar 18 2024, 3:20 PM · Bug Report, gnupg
werner committed rG8a4069527a1f: build: Update nPth configure macros. (authored by werner).
build: Update nPth configure macros.
Mar 18 2024, 2:55 PM
werner committed rGce1e671cdc35: Update NEWS (authored by werner).
Update NEWS
Mar 18 2024, 2:02 PM
werner raised the priority of T6354: All VSD and GPD binaries need a proper product name on Windows. from Normal to High.

So, what is the state of this. Did a change already land in Kleopatra and how can we assure that all binaries have a W32INFO_PRODUCTNAME in their rc file?

Mar 18 2024, 1:19 PM · gpd5x, vsd, kleopatra, gpd
werner committed rP2d6021d05c0c: build: Add release targets. (authored by werner).
build: Add release targets.
Mar 18 2024, 12:49 PM
werner committed rP24833c9ef2bf: Release 1.3.0 (authored by werner).
Release 1.3.0
Mar 18 2024, 12:49 PM
werner committed rP36789a2d1ff6: build: Update autogen.sh (authored by werner).
build: Update autogen.sh
Mar 18 2024, 12:49 PM
werner committed rP3bc458d48fa9: Post release updates (authored by werner).
Post release updates
Mar 18 2024, 12:49 PM
werner committed rD204c6afaccb7: swdb: Pinentry 1.3.0 (authored by werner).
swdb: Pinentry 1.3.0
Mar 18 2024, 12:37 PM
werner closed T7031: New pinentry release for Qt 6 support? as Resolved.

See T7046 for the release info. Note that the mentioned fix for kwallet already landed.

Mar 18 2024, 12:27 PM · KF6, qt, pinentry, Feature Request
werner renamed T7046: Release Pinentry 1.3.x from Release Pinentry 1.3.0 to Release Pinentry 1.3.x.
Mar 18 2024, 12:22 PM · pinentry, Release Info
werner renamed T5566: Release Pinentry 1.2.x from Release Pinentry 1.2.0 to Release Pinentry 1.2.x.
Mar 18 2024, 12:22 PM · Release Info, pinentry
werner added a comment to T5566: Release Pinentry 1.2.x.

Noteworthy changes in version 1.2.1 (2022-08-24)

Mar 18 2024, 12:20 PM · Release Info, pinentry
werner triaged T7046: Release Pinentry 1.3.x as Normal priority.
Mar 18 2024, 12:16 PM · pinentry, Release Info
werner committed rG759adb249310: gpgconf: Check readability of some files with -X (authored by werner).
gpgconf: Check readability of some files with -X
Mar 18 2024, 11:32 AM
werner committed rG5ccfc2101a34: gpgconf: Check readability of some files with -X (authored by werner).
gpgconf: Check readability of some files with -X
Mar 18 2024, 11:32 AM
werner closed T7032: mailserver misconfigured, rejects on non-existing SPF record as Resolved.

AFAICS the bounce is correctly reported. You get the 550 at the mail from so that there won't be a need for several SPF checks if a sender wants to send to several recipients.

Mar 18 2024, 8:55 AM
werner triaged T7044: Deadlock on Windows in sdaemon as High priority.
Mar 18 2024, 8:48 AM · scd, Bug Report, Windows, gnupg24

Mar 15 2024

werner committed rW90be12c88d08: Fix quoting of the AUTHENTICODE_sign macro (authored by werner).
Fix quoting of the AUTHENTICODE_sign macro
Mar 15 2024, 3:04 PM

Mar 14 2024

werner changed the status of T7042: AEAD mode does not properly handle modified cipher text from Open to Testing.
Mar 14 2024, 9:55 PM · gnupg26, Bug Report
werner committed rG82b39fe25470: gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag. (authored by werner).
gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag.
Mar 14 2024, 9:54 PM
werner committed rG122803bf1ac9: gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag. (authored by werner).
gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag.
Mar 14 2024, 9:52 PM
werner triaged T7042: AEAD mode does not properly handle modified cipher text as High priority.
Mar 14 2024, 9:48 PM · gnupg26, Bug Report
werner added a project to T7042: AEAD mode does not properly handle modified cipher text: gnupg26.

Thanks for reporting this. Returning error codes to upper layers is not always easy because the original logic is that we have a global error counter to decide whether an operation succeeded. My fix to check the error code before emitting the DECRYPTION_OKAY status,

Mar 14 2024, 9:48 PM · gnupg26, Bug Report
werner committed rG50e81ad38d2b: gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag. (authored by werner).
gpg: Make sure a DECRYPTION_OKAY is never issued for a bad OCB tag.
Mar 14 2024, 9:42 PM