Page MenuHome GnuPG
Feed Advanced Search

Yesterday

ebo edited projects for T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate, added: vsd33 (vsd-3.3.7), gnupg22 (gnupg-2.2.54); removed vsd33, gnupg22.

with VS-Desktop-3.3.97.11-Beta (GnuPG 2.2.54-beta9)

Fri, Apr 17, 4:50 PM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26
werner shifted T8159: gpgtar write outside --directory via symlink traversal from the Restricted Space space to the S1 Public space.
Fri, Apr 17, 9:47 AM · gnupg26, gpgtar, Security, Bug Report
gniibe added a project to T8159: gpgtar write outside --directory via symlink traversal: gnupg26.
Fri, Apr 17, 9:22 AM · gnupg26, gpgtar, Security, Bug Report

Thu, Apr 16

timegrid moved T7866: Allow separate LDAP keyserver for uploading from Backlog to WiP on the gnupg22 board.
Thu, Apr 16, 5:34 PM · gnupg22, vsd33 (vsd-3.3.6), LDAP, Feature Request, gnupg26
timegrid moved T7866: Allow separate LDAP keyserver for uploading to Backlog on the gnupg22 board.
Thu, Apr 16, 5:34 PM · gnupg22, vsd33 (vsd-3.3.6), LDAP, Feature Request, gnupg26
timegrid changed the status of T7866: Allow separate LDAP keyserver for uploading from Open to Testing.
Thu, Apr 16, 5:33 PM · gnupg22, vsd33 (vsd-3.3.6), LDAP, Feature Request, gnupg26
timegrid changed the status of T7866: Allow separate LDAP keyserver for uploading from Testing to Open.

Still does not work on vsd-3.3.7-beta90.9 @ win10. Essentially the same behavior as before:

Thu, Apr 16, 5:32 PM · gnupg22, vsd33 (vsd-3.3.6), LDAP, Feature Request, gnupg26
timegrid moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from gnupg-2.2.54 to gnupg-2.2.53 on the gnupg22 board.
Thu, Apr 16, 3:38 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
werner moved T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver from QA to gnupg-2.2.54 on the gnupg22 board.
Thu, Apr 16, 3:14 PM · gnupg22 (gnupg-2.2.54), Keyserver, gnupg26, Bug Report
werner moved T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver from WIP to Done on the gnupg26 board.
Thu, Apr 16, 3:14 PM · gnupg22 (gnupg-2.2.54), Keyserver, gnupg26, Bug Report
werner closed T8197: "gpg --refresh-keys" aborts with "gpg: keyserver refresh failed: No data" if too many keys are missing on keyserver as Resolved.

Reporter has tested 2.5 - the code in 2.2 is identical; no need for separate testing

Thu, Apr 16, 3:13 PM · gnupg22 (gnupg-2.2.54), Keyserver, gnupg26, Bug Report
werner changed the status of T8078: GpgAgent: trustlist.txt still requires LF on the last line from Open to Testing.
Thu, Apr 16, 3:07 PM · gnupg22, Bug Report, gpgagent, gnupg26
ebo edited projects for T7866: Allow separate LDAP keyserver for uploading, added: vsd33 (vsd-3.3.6), gnupg22 (gnupg-2.2.53); removed gnupg22, vsd34.
Thu, Apr 16, 3:04 PM · gnupg22, vsd33 (vsd-3.3.6), LDAP, Feature Request, gnupg26
werner moved T8078: GpgAgent: trustlist.txt still requires LF on the last line from Backlog to WIP on the gnupg26 board.

I reworked the reading using our dedicated line reading functions which is used at other places. Extra benefit is that the code now also prints a status line ERROR which gives information on the first faulty line. Thus gpg-connect-agent listtrusted /bye can be sued to quickly check for errors without configuring a log file.

Thu, Apr 16, 3:02 PM · gnupg22, Bug Report, gpgagent, gnupg26
ebo added a comment to T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate.

Without GpgsmCompatibility set and with the trust in the Root-CA established in the global trustlist file (the local one does not work for vs-complicane without GpgsmCompatibility=de-vs-trustlist , as expected), the compliance of a signature or decryption is now shown correctly and in accordance with the certificate status shown in Kleopatra. If the Root-CA is only trusted locally, the certificate and the signature are shown as "certified" resp. "not-compliant".
In short: everything works as expected if GpgsmCompatibility is not set.

Thu, Apr 16, 2:02 PM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26
timegrid moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from gnupg-2.2.53 to gnupg-2.2.54 on the gnupg22 board.
Thu, Apr 16, 12:41 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
timegrid moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from QA to gnupg-2.2.53 on the gnupg22 board.
Thu, Apr 16, 12:41 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
ebo edited projects for T8222: Show RSA-PSS certificates as de-vs compliant in X.509 key listings, added: gnupg22 (gnupg-2.2.54); removed gnupg22.
Thu, Apr 16, 12:39 PM · gnupg22 (gnupg-2.2.54), Bug Report, S/MIME, gnupg26
timegrid removed a project from T7333: Allow gpg to auto-upload a new own key to LDAP servers: Info Needed.
Thu, Apr 16, 12:22 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
timegrid moved T7333: Allow gpg to auto-upload a new own key to LDAP servers from QA to vsd-3.3.7 on the vsd33 board.
Thu, Apr 16, 12:22 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
timegrid added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

auto-key-upload should not be triggered on revocation cert import, so everything seems fine.

Thu, Apr 16, 12:21 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
timegrid added a comment to T8222: Show RSA-PSS certificates as de-vs compliant in X.509 key listings.

Looks good to me on vsd-3.3.7-beta90.9 @ win10.

Thu, Apr 16, 11:56 AM · gnupg22 (gnupg-2.2.54), Bug Report, S/MIME, gnupg26
timegrid added a comment to T7333: Allow gpg to auto-upload a new own key to LDAP servers.

Note: Keyserver has to start with ldap: for this to work, otherwise it is silently ignored.

Thu, Apr 16, 11:12 AM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26

Wed, Apr 15

timegrid added a project to T7333: Allow gpg to auto-upload a new own key to LDAP servers: Info Needed.

In general looks good to me on vsd-3.3.90.9 / gpg 2.2.54-beta4.

Wed, Apr 15, 6:40 PM · gnupg22 (gnupg-2.2.53), vsd33 (vsd-3.3.7), gnupg26
ebo added a comment to T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate.

with GnuPG-VS-Desktop-3.3.90.9-Beta-Standard gpgsm now never shows the line [GNUPG:] VERIFICATION_COMPLIANCE_MODE 23. Therefore Kleopatra always shows "not VS compliant" now on verification and decryption. Even though the certificate is shown a VS-compliant in the list an when encryping:

Wed, Apr 15, 4:08 PM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26
werner changed the status of T8078: GpgAgent: trustlist.txt still requires LF on the last line from Testing to Open.
Wed, Apr 15, 3:05 PM · gnupg22, Bug Report, gpgagent, gnupg26
werner removed a project from T8078: GpgAgent: trustlist.txt still requires LF on the last line: gnupg24.
Wed, Apr 15, 2:56 PM · gnupg22, Bug Report, gpgagent, gnupg26
ebo moved T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate from Backlog to QA on the vsd33 board.
Wed, Apr 15, 2:48 PM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26
werner added a comment to T8078: GpgAgent: trustlist.txt still requires LF on the last line.

gnupg22 received this patch meanwhile: rG7bc969d388086b4f3aeee3c5389b7baf055689d7

Wed, Apr 15, 2:46 PM · gnupg22, Bug Report, gpgagent, gnupg26
werner changed the status of T8078: GpgAgent: trustlist.txt still requires LF on the last line from Open to Testing.
Wed, Apr 15, 2:44 PM · gnupg22, Bug Report, gpgagent, gnupg26
werner changed the status of T8222: Show RSA-PSS certificates as de-vs compliant in X.509 key listings from Open to Testing.
Wed, Apr 15, 2:44 PM · gnupg22 (gnupg-2.2.54), Bug Report, S/MIME, gnupg26
werner moved T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate from WiP to QA on the gnupg22 board.
Wed, Apr 15, 2:43 PM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26
werner added a project to T8188: gpgsm: No error/warning on verification or decryption in case of trusted but not VS-compliant certificate: vsd33.
Wed, Apr 15, 11:56 AM · gnupg22 (gnupg-2.2.54), vsd33 (vsd-3.3.7), vsd, gnupg26

Tue, Apr 14

werner moved T8222: Show RSA-PSS certificates as de-vs compliant in X.509 key listings from Backlog to WIP on the gnupg26 board.
Tue, Apr 14, 5:20 PM · gnupg22 (gnupg-2.2.54), Bug Report, S/MIME, gnupg26
werner triaged T8222: Show RSA-PSS certificates as de-vs compliant in X.509 key listings as Normal priority.
Tue, Apr 14, 5:18 PM · gnupg22 (gnupg-2.2.54), Bug Report, S/MIME, gnupg26