Page MenuHome GnuPG
Feed Advanced Search

Oct 15 2024

werner added a comment to T7334: Kleopatra: ADSK shown as "unknown recipient".

There is no such concept of a primary keyblock for a subkey. Using the same subkey for several primary keys is non frequent but nevertheless seen use-case. Thus this behaviour is not ADSK specific. I would suggest to first search the keyblock used for decryption to get the name of another subkey - only if that is not found search the keyring for that subkey and thus the primary key and its user id.

Oct 15 2024, 9:51 AM · gpd5x, kleopatra
werner closed T7335: S/MIME keys are not listed correctly as Resolved.

FWIW, the cache has not been implemented in 2.4 (which will be used for the next gpg4win) and thus there is no need for a fix there.

Oct 15 2024, 9:46 AM · gnupg26, gnupg, Bug Report
werner committed rG374195e741cf: gpgsm: Fix cached istrusted lookup. (authored by werner).
gpgsm: Fix cached istrusted lookup.
Oct 15 2024, 9:46 AM
werner added a comment to T7335: S/MIME keys are not listed correctly.

Was fixed last Thursday with commit rG69a8aefa5bf77136b77383b94e34ba784c1cce89 for 2.2 and will soon make it to master.

Oct 15 2024, 9:43 AM · gnupg26, gnupg, Bug Report

Oct 14 2024

werner committed rGcb5f4aba57dc: dirmngr: Print a brief list of URLs with LISTCRLS. (authored by werner).
dirmngr: Print a brief list of URLs with LISTCRLS.
Oct 14 2024, 5:06 PM
werner committed rGf8b1b7b4df86: dirmngr: Print a brief list of URLs with LISTCRLS. (authored by werner).
dirmngr: Print a brief list of URLs with LISTCRLS.
Oct 14 2024, 5:06 PM
werner added a comment to T7334: Kleopatra: ADSK shown as "unknown recipient".

It is not of the recipient's business to know which certificate also uses a subkey. For all the user needs to know that it is a subkey which belongs to a primary key. In this regard this is not different from a shared encryption subkey as used by many sites for role addresses. For a subkey the user id of its primary should always been show.

Oct 14 2024, 5:00 PM · gpd5x, kleopatra
werner added inline comments to rGf8bf5e01f766: build: Use AC_C_BIGENDIAN for detecting endian..
Oct 14 2024, 4:55 PM
werner triaged T7337: Show a summary of all URLs with dirmngr's LISTCRL command as Normal priority.
Oct 14 2024, 4:41 PM · gnupg22 (gnupg-2.2.45), Feature Request

Oct 13 2024

werner added a comment to T7334: Kleopatra: ADSK shown as "unknown recipient".

Yes. I think that Kleo does not yet fully support the R-flag indicating an ADSK.

Oct 13 2024, 7:59 PM · gpd5x, kleopatra

Oct 11 2024

werner renamed T7333: Allow gpg to auto-upload a new own key to LDAP servers from Allow gpg to auto-upload a new key to LDAP servers to Allow gpg to auto-upload a new own key to LDAP servers.
Oct 11 2024, 2:34 PM · vsd34, gnupg26, gnupg22
werner triaged T7333: Allow gpg to auto-upload a new own key to LDAP servers as High priority.
Oct 11 2024, 2:32 PM · vsd34, gnupg26, gnupg22
werner closed T6929: Kleopatra: Allow revocation of RSA 2048 keys as Resolved.
Oct 11 2024, 2:25 PM · kleopatra, gnupg
werner added a comment to rE1860f6407f83: spawn: Add new function to modify environment..
$ echo -n _gpgrt_spawn_actions_set_envchange | wc -c
34
Oct 11 2024, 10:45 AM
werner added a comment to T7332: Kleopatra: Initial keylisting sometimes fails or hangs for some seconds.

systemd based Linux?

Oct 11 2024, 10:32 AM · gpd5x (gpd-5.0.0), gnupg22 (gnupg-2.2.52), gnupg24, kleopatra, Bug Report
werner removed a member for g10code: bad.
Oct 11 2024, 9:30 AM
werner removed a member for g10code: MuckiSG.
Oct 11 2024, 9:30 AM

Oct 10 2024

werner committed rG69a8aefa5bf7: gpgsm: Fix cached istrusted lookup. (authored by werner).
gpgsm: Fix cached istrusted lookup.
Oct 10 2024, 6:06 PM
werner added a comment to T7133: Add feature to load designated revoker from LDAP.

I do not want to do that for 2.2.45 (T7255) because we want to do that release RSN

Oct 10 2024, 9:47 AM · backport, vsd34, Feature Request, gnupg22
werner triaged T7321: Kleopatra: add warning symbol to all unusable groups as Normal priority.
Oct 10 2024, 9:45 AM · vsd33 (vsd-3.3.0), Unknown Object (Project), kleopatra
werner triaged T7323: scdaemon hangs up (when output from scdaemon is not consumed by gpg-agent) as High priority.
Oct 10 2024, 9:45 AM · Windows, Bug Report, scd
werner triaged T7324: Autostart as Normal priority.

Is there a mechanism which can be used for this? Of course this could be done using the usual autostart feature, or we turn the server into a Windows service (ask @alexk). Start the client along with kleopatra?

Oct 10 2024, 9:02 AM · gpd5x, gpgol2
werner triaged T7325: Guide users into installing manifest.xml as Normal priority.
Oct 10 2024, 8:59 AM · gpgol2
werner triaged T7326: Encrypted drafts as Normal priority.
Oct 10 2024, 8:59 AM · gpgol2
werner triaged T7329: Update about data of Kleopatra as Normal priority.
Oct 10 2024, 8:58 AM · gpd5x (gpd-5.0.0), vsd33 (vsd-3.3.0), kleopatra
werner edited projects for T7330: gpgrt should use destructor instead of atexit for cleanup, added: Feature Request; removed Bug Report.
Oct 10 2024, 8:57 AM · Feature Request, gpgrt
werner triaged T7330: gpgrt should use destructor instead of atexit for cleanup as Normal priority.

Thanks for opening a bug report. This is better for our workflow.

Oct 10 2024, 8:57 AM · Feature Request, gpgrt

Oct 9 2024

werner added projects to T7323: scdaemon hangs up (when output from scdaemon is not consumed by gpg-agent): scd, Bug Report.

But the DEVINFO --watch is required to trigger this hang? Kleopatra does not use this but we see simlar hangs from time to time in the current version.

Oct 9 2024, 6:18 PM · Windows, Bug Report, scd
werner added a project to T7328: Add Kleopatra configs to gpgconf -X: Feature Request.
Oct 9 2024, 4:18 PM · vsd, gpd5x, Windows, gnupg, Feature Request
werner updated the image for gpd5x from F15172262: profile to F15172321: profile.
Oct 9 2024, 3:55 PM
werner set the image for gpd5x to F15172262: profile.
Oct 9 2024, 3:53 PM
werner created gpd5x.
Oct 9 2024, 3:52 PM

Oct 8 2024

werner edited Description on gpgol.
Oct 8 2024, 12:33 PM
werner edited Description on gpgol2.
Oct 8 2024, 12:31 PM

Oct 7 2024

werner committed rM1a7bc88ee756: core: New flag fields beta_compliance. (authored by werner).
core: New flag fields beta_compliance.
Oct 7 2024, 10:33 AM
werner committed rGb287fb577587: Implement GNUPG_ASSUME_COMPLIANCE envvar for testing (authored by werner).
Implement GNUPG_ASSUME_COMPLIANCE envvar for testing
Oct 7 2024, 9:57 AM
werner committed rGe8858807bcaf: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner committed rG85d8fa57db0a: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner committed rGa8b503c42bd4: gpg: Emit status error for an invalid ADSK. (authored by werner).
gpg: Emit status error for an invalid ADSK.
Oct 7 2024, 8:30 AM
werner added a comment to T7322: Kleopatra: General error if ADSK is not configured correctly.

With the new patch you get this now:

[GNUPG:] KEY_CONSIDERED F40ADB902B24264AA42E50BF92EDB04BFF325CF3 1
[GNUPG:] ERROR add_adsk 53
gpg: key "F40ADB902B24264AA42E50BF92EDB04BFF325CF3!" not found: Unusable public key
gpg: Did you specify the fingerprint of a subkey?
[GNUPG:] FAILURE gpg-exit 33554433
Oct 7 2024, 8:26 AM · vsd33 (vsd-3.3.0), Unknown Object (Project), gnupg

Oct 4 2024

werner added a comment to T7308: Speed up the X.509 key listings.

Test on a dedicated Windows box (T 460, i5-6300U@2.40GHz, harddisk):

VSD Versiongpg versionLoad time
3.1.262.2.411:59
3.2.4 beta-22.2.45 beta 250:46
Oct 4 2024, 3:03 PM · S/MIME, Feature Request, gnupg
werner committed rD7ccbda17a2e6: web: Add an entry for 2.6 into the EOL list (authored by werner).
web: Add an entry for 2.6 into the EOL list
Oct 4 2024, 2:07 PM
werner committed rGf8f6c6c76166: gpgsm: Add compatibility flag no-keyinfo-cache (authored by werner).
gpgsm: Add compatibility flag no-keyinfo-cache
Oct 4 2024, 12:22 PM
werner committed rG9087c1d3637c: gpgsm: Implement a cache for the KEYINFO queries. (authored by werner).
gpgsm: Implement a cache for the KEYINFO queries.
Oct 4 2024, 12:19 PM
werner committed rGa5527edebbad: gpgsm: Add compatibility flag no-keyinfo-cache (authored by werner).
gpgsm: Add compatibility flag no-keyinfo-cache
Oct 4 2024, 12:19 PM
werner committed rG09d4b8f496dd: gpgsm: Use a cache for ISTRUSTED queries. (authored by werner).
gpgsm: Use a cache for ISTRUSTED queries.
Oct 4 2024, 12:19 PM
werner committed rG4fa82eec43e8: agent: Add option --status to the LISTRUSTED command. (authored by werner).
agent: Add option --status to the LISTRUSTED command.
Oct 4 2024, 12:19 PM
werner edited projects for T4537: gpgsm support for timestamp signatures, added: gnupg26; removed gnupg24.
Oct 4 2024, 12:14 PM · gnupg26, S/MIME, Feature Request
werner claimed T7319: gpgsm/dirmngr: Improve forward path-building via http AIA extension in x.509 certificates.
Oct 4 2024, 12:10 PM · S/MIME, gnupg26, Feature Request
werner added a comment to T7308: Speed up the X.509 key listings.

Overall effect of these changes tested on a small Windows VM is only 47 -> 26 seconds. Did also tests with --kbx-buffer-size but that does not make it better than the default, either.

Oct 4 2024, 12:05 PM · S/MIME, Feature Request, gnupg
werner closed T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy as Resolved.
Oct 4 2024, 11:46 AM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner closed T6843: after enable kdf-setup impossible change user/admin pin as Resolved.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner moved T6843: after enable kdf-setup impossible change user/admin pin from QA to gnupg-2.2.43 on the gnupg22 board.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner changed the status of T6843: after enable kdf-setup impossible change user/admin pin from Resolved to Duplicate.
Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner closed T6843: after enable kdf-setup impossible change user/admin pin as Resolved.

Porting to 2.2 was straightforward - we won't give it an extra QA run.

Oct 4 2024, 11:45 AM · gnupg22 (gnupg-2.2.43), scd, yubikey
werner closed T6811: gpgv: Read-only trustedkeys.kbx should not be compressed as Resolved.

We won't fix that for 2.2.

Oct 4 2024, 11:40 AM · gnupg24 (gnupg-2.4.5), gpgv, Bug Report
werner moved T6997: gnupg-2.4.4 breaks dirmngr fetching keys via hkps:// from behind a proxy from QA to gnupg-2.2.43 on the gnupg22 board.
Oct 4 2024, 11:38 AM · gnupg22 (gnupg-2.2.43), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T6882: Make ADSK configurable for new keys from QA to gnupg-2.2.45 on the gnupg22 board.
Oct 4 2024, 11:35 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: Unknown Object (Project).
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner removed a project from T6882: Make ADSK configurable for new keys: vsd33.
Oct 4 2024, 11:34 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)

Oct 2 2024

werner committed rG241971fac0fc: gpgsm: Implement a cache for the KEYINFO queries. (authored by werner).
gpgsm: Implement a cache for the KEYINFO queries.
Oct 2 2024, 5:52 PM
werner committed rGef2be95258d2: gpgsm: Use a cache for ISTRUSTED queries. (authored by werner).
gpgsm: Use a cache for ISTRUSTED queries.
Oct 2 2024, 5:52 PM
werner committed rG4275d5fa7a51: agent: Add option --status to the LISTRUSTED command. (authored by werner).
agent: Add option --status to the LISTRUSTED command.
Oct 2 2024, 5:52 PM
werner lowered the priority of T7313: gpgconf --list-options does not handle multiple trusted-keys. from Normal to Low.
Oct 2 2024, 5:15 PM · Feature Request, gnupg
werner added a member for Contributor: m.eik.
Oct 2 2024, 10:13 AM
werner added a member for g10code: m.eik.
Oct 2 2024, 10:09 AM
werner triaged T7317: Update the gnupg.org FAQ as Normal priority.
Oct 2 2024, 8:48 AM · www.gnupg.org, FAQ
werner added a comment to T7316: Curve25519/v5 key cannot be exported.

Using the shorter OID for v5 is on purpose; thus we need to fix the export.

Oct 2 2024, 8:36 AM · gnupg26, OpenPGP, PQC, gnupg

Oct 1 2024

werner triaged T7315: Allow export and import of PQC secret keys. as Normal priority.
Oct 1 2024, 6:12 PM · gnupg26, OpenPGP, PQC, gnupg
werner archived gnupg22 (gnupg-2.2.45).
Oct 1 2024, 2:03 PM
werner closed T7025: --trusted-key and --no-options mismatch as Resolved.
Oct 1 2024, 2:02 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner moved T7025: --trusted-key and --no-options mismatch from QA to gnupg-2.2.45 on the gnupg22 board.
Oct 1 2024, 2:02 PM · gnupg22 (gnupg-2.2.45), gnupg24 (gnupg-2.4.5), Bug Report
werner created gnupg22 (gnupg-2.2.45).
Oct 1 2024, 2:01 PM
werner updated the task description for T7255: Release GnuPG 2.2.45.
Oct 1 2024, 1:59 PM · gnupg22 (gnupg-2.2.45), Release Info
werner triaged T7314: Release GnuPG 2.2.46 as Low priority.
Oct 1 2024, 1:59 PM · gnupg22 (gnupg-2.2.46), Release Info
werner committed rG269efd89a361: Update NEWS (authored by werner).
Update NEWS
Oct 1 2024, 12:51 PM
werner committed rG41626a16613a: gpgsm: Possible improvement for some rare P12 files. (authored by werner).
gpgsm: Possible improvement for some rare P12 files.
Oct 1 2024, 12:51 PM
werner committed rGf50dde6269bd: gpgsm: Possible improvement for some rare P12 files. (authored by werner).
gpgsm: Possible improvement for some rare P12 files.
Oct 1 2024, 12:35 PM
werner assigned T7313: gpgconf --list-options does not handle multiple trusted-keys. to ikloecker.

Fixed for master. Let's first test this with kleopatra.

Oct 1 2024, 10:59 AM · Feature Request, gnupg
werner committed rGf197fe34f22b: gpgconf: Add list flag to trusted-key et al. (authored by werner).
gpgconf: Add list flag to trusted-key et al.
Oct 1 2024, 10:49 AM
werner renamed T7313: gpgconf --list-options does not handle multiple trusted-keys. from gpgconf --list-options does now handle multiple trusted-keys. to gpgconf --list-options does not handle multiple trusted-keys..
Oct 1 2024, 10:33 AM · Feature Request, gnupg
werner added a comment to T6882: Make ADSK configurable for new keys.

Done for 2.2. It is already in 2.4.

Oct 1 2024, 10:05 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)
werner triaged T7313: gpgconf --list-options does not handle multiple trusted-keys. as Normal priority.
Oct 1 2024, 10:05 AM · Feature Request, gnupg
werner committed rGf1e1cb0767a1: gpgconf: Allow listing of some new options (authored by werner).
gpgconf: Allow listing of some new options
Oct 1 2024, 10:00 AM

Sep 30 2024

werner closed T7308: Speed up the X.509 key listings as Resolved.

Will be available in 2.2.45 and 2.5.2

Sep 30 2024, 7:08 PM · S/MIME, Feature Request, gnupg
werner committed rGdcee2db36ba4: gpgsm: Use a cache to speed up parent certificate lookup. (authored by werner).
gpgsm: Use a cache to speed up parent certificate lookup.
Sep 30 2024, 7:04 PM
werner added a comment to T7308: Speed up the X.509 key listings.

Now we are at 4 seconds. Available in master and 2.2.

Sep 30 2024, 6:49 PM · S/MIME, Feature Request, gnupg
werner committed rG0e283a0ebcce: gpgsm: Silence messages about dirmngr cache lookup failed. (authored by werner).
gpgsm: Silence messages about dirmngr cache lookup failed.
Sep 30 2024, 6:49 PM
werner committed rG819085364238: gpgsm: Silence the fingerprint output in quiet mode. (authored by werner).
gpgsm: Silence the fingerprint output in quiet mode.
Sep 30 2024, 6:49 PM
werner committed rGce0580a599ec: gpgsm: Use a cache to speed up parent certificate lookup. (authored by werner).
gpgsm: Use a cache to speed up parent certificate lookup.
Sep 30 2024, 6:36 PM
werner triaged T7309: gpg should not proceed with the key import from the smartcard if no valid SCD READKEY information is received as Normal priority.

Some would say it is a bug if keys are not shown - even if the algo is not known ;-)

Sep 30 2024, 4:06 PM · Info Needed, scd, gpgagent, Bug Report
werner triaged T7310: GpgOL: Broken Umlauts in progress message (unicode, encoding) as High priority.
Sep 30 2024, 4:05 PM · vsd33 (vsd-3.3.0), i18n, Unknown Object (Project)
werner triaged T7312: The security approval dialog (GpgOL) sometimes closes before choice is made as High priority.
Sep 30 2024, 4:04 PM · vsd33 (vsd-3.3.0), gpgol, libkleo, Unknown Object (Project)

Sep 28 2024

werner added a comment to T7309: gpg should not proceed with the key import from the smartcard if no valid SCD READKEY information is received.

Please send an excerpt from the scdaemon debug output to evaluate why you get somewhat strange looking data. Is this an experimental card? 0xa5 is a common test pattern.

Sep 28 2024, 7:38 PM · Info Needed, scd, gpgagent, Bug Report

Sep 27 2024

werner added a comment to T6424: GpgOL: Move resolver code into Kleopatra.

FWIW, a related task is T7308

Sep 27 2024, 4:07 PM · gpd5x, vsd34, kleopatra, gpgol
werner committed rG9543b3567b04: sm: Optmize clearing of the ephemeral flag. (authored by werner).
sm: Optmize clearing of the ephemeral flag.
Sep 27 2024, 4:06 PM
werner added a comment to T7308: Speed up the X.509 key listings.

With that patch we are down to about 6 seconds.

Sep 27 2024, 3:49 PM · S/MIME, Feature Request, gnupg
werner committed rGcb6c506e4e41: sm: Optmize clearing of the ephemeral flag. (authored by werner).
sm: Optmize clearing of the ephemeral flag.
Sep 27 2024, 3:49 PM
werner triaged T7308: Speed up the X.509 key listings as High priority.
Sep 27 2024, 3:47 PM · S/MIME, Feature Request, gnupg
werner added a comment to T6882: Make ADSK configurable for new keys.

Will do.

Sep 27 2024, 11:39 AM · gnupg24 (2.4.6), gnupg22 (gnupg-2.2.45)