Page MenuHome GnuPG
Feed All Stories

Yesterday

mlaurent committed rMTP6b7be4932828: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sun, Mar 29, 9:55 AM
mlaurent committed rKLEOPATRAc253e8a31807: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sun, Mar 29, 9:55 AM
l10n daemon script <scripty@kde.org> committed rMTPd91eac7c3fee: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Mar 29, 5:18 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAd84451d7d9bc: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Mar 29, 3:47 AM
l10n daemon script <scripty@kde.org> committed rMTP63780bf49965: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sun, Mar 29, 3:45 AM

Sat, Mar 28

werner triaged T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver as High priority.
Sat, Mar 28, 6:12 PM · Keyserver, gnupg26, Bug Report
mlaurent committed rMTP5ecf445ca777: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sat, Mar 28, 1:15 PM
mlaurent committed rLIBKLEO55a1c92b2cdc: GIT_SILENT: prepare 6.7.0 (authored by mlaurent).
GIT_SILENT: prepare 6.7.0
Sat, Mar 28, 1:11 PM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA662435a47660: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 4:20 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAeb062346c24e: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 2:48 AM
l10n daemon script <scripty@kde.org> committed rMTP3bba878dd869: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Sat, Mar 28, 2:48 AM

Fri, Mar 27

Karl created T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver.
Fri, Mar 27, 4:28 PM · Keyserver, gnupg26, Bug Report
ebo closed T7838: GpgOL: resolver chooses wrong certificate to decide if autosecure should happen as Invalid.

I tried but couldn't reproduce it any more. Therefore setting it to invalid.

Fri, Mar 27, 4:23 PM · gpgol
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Before making subtickets for each application: I wonder if it is not all Kleopatra anyway? Isn't the security approval dialog basically Kleopatra?

Fri, Mar 27, 3:23 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

The equivalent for invalid S/MIME certificates are not-certified *PGP certificates.
(Valid/invalid are not ideal as technical terms as they have a broad general meaning, too. I hope my usage here is correct ;-) It is what I gathered from an explanation given by Werner.)

Fri, Mar 27, 3:07 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
timegrid added a comment to T8189: GnuPG: Bad signature on import of designated revokation certificate.

Note: The invalid revocation certificate: Bad signature - rejected line is also shown on vsd 3.3.4, gpg 2.2.53 @ win10 (but revocation works).

Fri, Mar 27, 1:30 PM · Bug Report, gnupg26
timegrid updated the task description for T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP.
Fri, Mar 27, 1:16 PM · needs discussion, Bug Report, gpd5x, gpgol
timegrid updated the task description for T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP.
Fri, Mar 27, 1:14 PM · needs discussion, Bug Report, gpd5x, gpgol
ebo added a project to T8190: GpgOL: Encrypt/Sign issues using S/MIME certs with invalid crlDP: needs discussion.

feedback of @mmontkowski needed

Fri, Mar 27, 1:01 PM · needs discussion, Bug Report, gpd5x, gpgol
timegrid added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Invalid certs (as stated in the status column in Kleopatra) are mainly S/MIME certs (e.g. with missing root cert, CRL check failed, etc). I haven't seen invalid pgp certs yet (might be e.g. very old ones with missing self signature).

Fri, Mar 27, 12:38 PM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
timegrid updated the task description for T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 12:11 PM · Bug Report, gnupg26
timegrid created T8196: GnuPG: Designated revokation with certify-only primary keys does not work.
Fri, Mar 27, 11:55 AM · Bug Report, gnupg26
ebo renamed T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates from Draft: Add a workflow to force encryption/signature with invalid/expired/disabled certificates to Draft: Add a workflow to force encryption/signature with invalid or expired certificates.
Fri, Mar 27, 11:49 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
ebo added a comment to T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.

Invalid and expired are different cases.

Fri, Mar 27, 11:37 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
werner triaged T8195: Add option --ignore-expiration to gpg and gpgsm as Normal priority.
Fri, Mar 27, 11:17 AM · gnupg26, Feature Request
werner added a parent task for T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates: T6702: Kleopatra: Use GPGME_ENCRYPT_ALWAYS_TRUST.
Fri, Mar 27, 11:14 AM · needs discussion, gnupg, Feature Request, gpgol, kleopatra
werner added a subtask for T6702: Kleopatra: Use GPGME_ENCRYPT_ALWAYS_TRUST: T8193: Draft: Add a workflow to force encryption/signature with invalid or expired certificates.
Fri, Mar 27, 11:14 AM · needs discussion, gpd5x, vsd34, Feature Request, kleopatra
werner claimed T8076: Kleopatra: Unable to completely delete key with secret subkeys and offline-primary key.
Fri, Mar 27, 11:07 AM · gnupg26, gpd5x, kleopatra, Bug Report
werner added a comment to T7843: GpgOL: Empty OpenPGP mails with "Read as plain" activated.

Not a good idea. Because then the user will open it with the browser and the browser loads all kind of additional data including drive-by malware. If HTML *mail* is shown by a MUA no links should be followed to keep information and the fact that it was read confidential.

Fri, Mar 27, 11:05 AM · vsd34, vsd, gpgol
werner triaged T8048: Keyboxd: S/MIME certificate is imported on ldap search as Normal priority.
Fri, Mar 27, 10:33 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
werner triaged T8093: GPGME: inconsistent behavior on GPGME_KEYLIST_MODE_LOCATE from hkp server as Normal priority.

I think locate mode is mostly meant to be used to retrieve a single key

Fri, Mar 27, 10:33 AM · to-be-discussed, Bug Report
werner triaged T8156: pinentry qt and fltk - fallback to tty on invalid DISPLAY as Normal priority.
Fri, Mar 27, 10:29 AM · pinentry, Bug Report
werner added a comment to T8156: pinentry qt and fltk - fallback to tty on invalid DISPLAY.

We talked about this in our developer meeting on Monday. I have never experienced the problem because I use the Qt version only on Windows and for my own use I use the Gtk version. In any case I think that Qt and fltk should fallback to curses to cover the case of using the Pinentry for a system startup on the console (e.g. the g13 case) with later switching to a GUI. And of course for those users who switch between GUI and console.

Fri, Mar 27, 10:28 AM · pinentry, Bug Report
ebo added a project to T8116: Draft: Kleopatra: For S/MIME verification do not use "fingerprint" in messages: needs discussion.
Fri, Mar 27, 10:01 AM · needs discussion, gpd5x, kleopatra
m.eik added a comment to T8192: Review "version mismatch message".

yes, we should only ask for an update of the manifest if its content was changed. the message should indicate that.

Fri, Mar 27, 8:46 AM · gpgol2
l10n daemon script <scripty@kde.org> committed rKLEOPATRA927b0272ceaa: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Fri, Mar 27, 4:25 AM
l10n daemon script <scripty@kde.org> committed rMTP8b961015a8e7: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Fri, Mar 27, 2:50 AM
l10n daemon script <scripty@kde.org> committed rKLEOPATRA501fcd383c1c: GIT_SILENT Sync po/docbooks with svn (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT Sync po/docbooks with svn
Fri, Mar 27, 2:49 AM

Thu, Mar 26

tfry moved T8179: Troubleshooting documentation from Backlog to WiP on the gpgol2 board.
Thu, Mar 26, 5:22 PM · gpgol2
tfry committed rOJ5de1df43579d: Simplify, improve placement of security level button (authored by tfry).
Simplify, improve placement of security level button
Thu, Mar 26, 4:47 PM
tfry committed rOJ66dac67dec30: Wrap empty SeclevelInfo into a std::optional (authored by tfry).
Wrap empty SeclevelInfo into a std::optional
Thu, Mar 26, 4:47 PM
tfry committed rOJd57abeb58935: Make link to key info work (authored by tfry).
Make link to key info work
Thu, Mar 26, 4:47 PM
tfry committed rOJdec2befe8109: Make sure kleopatra windows open in foreground on Windows (authored by tfry).
Make sure kleopatra windows open in foreground on Windows
Thu, Mar 26, 4:04 PM
tfry committed rOJ15caffd24052: Bring dialogs to front on Windows (authored by tfry).
Bring dialogs to front on Windows
Thu, Mar 26, 4:04 PM
tfry committed rOJ32c94e4fa77a: Look up keys in cache, instead (authored by tfry).
Look up keys in cache, instead
Thu, Mar 26, 4:04 PM
tfry committed rOJ6f315f129fa7: Show distinct messages if secret keys were found, but are not usable (authored by tfry).
Show distinct messages if secret keys were found, but are not usable
Thu, Mar 26, 4:04 PM
tfry committed rOJ149d52da9868: Inform in native client, if no secret key is available for connected account (authored by tfry).
Inform in native client, if no secret key is available for connected account
Thu, Mar 26, 4:04 PM
RokeJulianLockhart updated RokeJulianLockhart.
Thu, Mar 26, 3:47 PM