Page MenuHome GnuPG
Feed Advanced Search

Nov 8 2023

werner moved T6802: Trying to sign with a brainpool X509 key results in non-compliance error from Backlog to QA on the gnupg24 board.
Nov 8 2023, 5:19 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner changed the status of T6802: Trying to sign with a brainpool X509 key results in non-compliance error from Open to Testing.
Nov 8 2023, 5:18 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner added projects to T6802: Trying to sign with a brainpool X509 key results in non-compliance error: Bug Report, gnupg22, gnupg24.
Nov 8 2023, 2:22 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report

Oct 31 2023

ebo moved T6728: Kleopatra: encryption via "Encrypt folder" has unicode issue from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Oct 31 2023, 2:07 PM · gpgme (gpgme 1.23.x), kleopatra, Restricted Project

Oct 30 2023

ikloecker added a comment to T6736: Year 2038 issue for key validity date.

Eva tested a few expiration dates for new keys: For 2038-01-18 the date is correct. For 2038-01-20 and 2106-02-05 the expiration date of the new key is 2038-01-21 and 2106-02-06 respectively. Kleopatra passes the date as ISO date.

Oct 30 2023, 4:52 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
ebo changed the status of T6736: Year 2038 issue for key validity date from Testing to Open.
Oct 30 2023, 4:02 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
ebo changed the status of T6736: Year 2038 issue for key validity date, a subtask of T4195: Fix time API in gpgme, from Testing to Open.
Oct 30 2023, 4:02 PM · gnupg, kleopatra, Restricted Project, gpgme, Feature Request
ebo moved T6736: Year 2038 issue for key validity date from QA to WiP on the gnupg22 board.
Oct 30 2023, 4:01 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
ebo added a comment to T6736: Year 2038 issue for key validity date.

hmm, almost. With VS-Desktop-3.1.90.258-Beta I do not get an error any more, a key is generated. But the "vaild until" date is off by one day, it is one day later as the one given at key generation.

Oct 30 2023, 4:00 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
ebo closed T6253: GpgSM: Backport ECC support to 2.2 as Resolved.

works: my brainpool X509 testcertificate is shown as compliant

Oct 30 2023, 3:24 PM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME
ebo moved T6736: Year 2038 issue for key validity date from gnupg-2.2.42 to QA on the gnupg22 board.
Oct 30 2023, 2:55 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
ebo closed T6497: gpgtar does not return failure code to gpgme as Resolved.

In VS-Desktop-3.1.90.258-Beta it is "no space left on device" now in the encrypt/verify window.

Oct 30 2023, 2:54 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project

Oct 27 2023

werner added a comment to T4195: Fix time API in gpgme.

A quick test shows that the latest patches allow to set and show an expiration date beyond 2038. A new VSD beta will soon be available to customers. And we should also think about getting a gpg4win bug fix release out.

Oct 27 2023, 8:31 AM · gnupg, kleopatra, Restricted Project, gpgme, Feature Request
werner added a parent task for T6736: Year 2038 issue for key validity date: T4195: Fix time API in gpgme.
Oct 27 2023, 8:29 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner added a subtask for T4195: Fix time API in gpgme: T6736: Year 2038 issue for key validity date.
Oct 27 2023, 8:29 AM · gnupg, kleopatra, Restricted Project, gpgme, Feature Request

Oct 26 2023

werner changed the status of T6736: Year 2038 issue for key validity date from Open to Testing.
Oct 26 2023, 4:26 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner moved T6736: Year 2038 issue for key validity date from WiP to QA on the gnupg24 board.
Oct 26 2023, 4:25 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner moved T6736: Year 2038 issue for key validity date from WiP to QA on the gnupg22 board.

For 32 bit WIndows I now hacked some extra code to handle the expiration time if given as ISO string. Although gpg won't display the time correctly on the command line, Kleopatra does this and also allows to set the expiration time.

Oct 26 2023, 12:04 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner moved T6736: Year 2038 issue for key validity date from QA to WiP on the gnupg24 board.
Oct 26 2023, 9:41 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner changed the status of T6736: Year 2038 issue for key validity date from Testing to Open.

Or better wait. We can now pass "seconds=2147483648" as expire value but that is added to the creation date which might not want we want. I'll look again into this.

Oct 26 2023, 9:41 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report
werner changed the status of T6736: Year 2038 issue for key validity date from Open to Testing.
Oct 26 2023, 9:33 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report

Oct 25 2023

aheinecke changed the status of T6728: Kleopatra: encryption via "Encrypt folder" has unicode issue from Open to Testing.

This works now. Tested both decrypt and encrypt. Sadly just one commit after GPGME 1.23.0 but this was a miscommunication because I was a bit unavailable :( But we can patch this into our installer.

Oct 25 2023, 5:46 PM · gpgme (gpgme 1.23.x), kleopatra, Restricted Project

Oct 24 2023

werner changed the status of T6395: ADSK Feature from Testing to Open.

While trying to replicate your findings I might have found a but in the import code which rejected one of the keys (using gnupg 2.2). I'll take care of this.

Oct 24 2023, 4:14 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), OpenPGP
werner placed T6253: GpgSM: Backport ECC support to 2.2 up for grabs.
Oct 24 2023, 2:55 PM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME
werner added a comment to T6253: GpgSM: Backport ECC support to 2.2.

T6536 has been fixed. With today's commits the Brainpool curves are now also flagged as compliant in gpgsm.

Oct 24 2023, 2:55 PM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME
werner moved T6736: Year 2038 issue for key validity date from Backlog to QA on the gnupg22 board.
Oct 24 2023, 1:47 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report

Oct 20 2023

ebo added a project to T6644: GnuPG: Allow non compliant signatures in compliance mode: kleopatra.

and it is also confusing that you can choose the key for signing in Kleopatra, it is displayed with a green check mark but then you run into an error:

Oct 20 2023, 12:26 PM · kleopatra, gnupg22, Restricted Project

Oct 18 2023

aheinecke assigned T6545: Support CRL extension issuingDistributionPoint to werner.
Oct 18 2023, 2:44 PM · Restricted Project, libksba, gnupg24, gnupg22, Feature Request
ebo closed T6708: Allow to inhibit the use of a default PGP keyserver as Resolved.
Oct 18 2023, 8:56 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request

Oct 16 2023

ikloecker removed a project from T6708: Allow to inhibit the use of a default PGP keyserver: kleopatra.

Needed changes in Kleopatra are tracked in T6761.

Oct 16 2023, 2:15 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner added a comment to T6708: Allow to inhibit the use of a default PGP keyserver.

I am pretty sure that we have done everything in gnupg. Now if we only had a workboard for kleopatra.

Oct 16 2023, 1:47 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
ikloecker added a comment to T6736: Year 2038 issue for key validity date.

Some time ago, I have checked and hopefully fixed all usage of time_t in Kleopatra and GpgME to make sure we always use unsigned 32-bit integer arithmetic. Dates entered by the users are capped to some date in 2106 (a few days before the overflow date).

Oct 16 2023, 10:51 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report

Oct 13 2023

ebo added a comment to T6708: Allow to inhibit the use of a default PGP keyserver.

Well I have looked at this ticket and posted a comment. We should talk about if there is anything left to do or not. I suspect that the gpg side is done and I should open one (or probably better several) ticket(s) for the kleopatra side.

Oct 13 2023, 3:59 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
ebo closed T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before as Resolved.

works now with VS-Desktop-3.1.90.246-Beta

Oct 13 2023, 3:13 PM · gnupg22 (gnupg-2.2.42), Restricted Project
ebo added a comment to T6497: gpgtar does not return failure code to gpgme.

The error message in Kleo is now (with VS-Desktop-3.1.90.246-Beta) "Broken pipe". But in the linked error protocol you can find the gpg error message "no space left on device". So I would find this message acceptable.

Oct 13 2023, 2:17 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project
aheinecke added a comment to T6545: Support CRL extension issuingDistributionPoint.

And yes in gpgsm.conf both the extensions are also marked with ignore-cert-extension.

Oct 13 2023, 10:59 AM · Restricted Project, libksba, gnupg24, gnupg22, Feature Request
aheinecke added a comment to T6545: Support CRL extension issuingDistributionPoint.

While remembering this I added to our standard.conf (and for testing first to my local conf):

Oct 13 2023, 10:48 AM · Restricted Project, libksba, gnupg24, gnupg22, Feature Request
ebo closed T6528: gpg: No error status when encrypting to full disk as Resolved.

works!

Oct 13 2023, 10:20 AM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.3), Restricted Project

Oct 5 2023

werner moved T6497: gpgtar does not return failure code to gpgme from WiP to QA on the gnupg22 board.
Oct 5 2023, 4:00 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project
werner changed the status of T6528: gpg: No error status when encrypting to full disk from Open to Testing.

I forgot to backport one patch. With that patch we get what we expect:

Oct 5 2023, 3:50 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.3), Restricted Project
werner moved T6708: Allow to inhibit the use of a default PGP keyserver from WiP to QA on the gnupg22 board.

Form the Gnupg-2.2 commit rG936954a18a2df made sure that the hkps:// prefixing from kleopatra is ignored.

Oct 5 2023, 11:35 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner moved T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before from WiP to QA on the gnupg22 board.
Oct 5 2023, 11:30 AM · gnupg22 (gnupg-2.2.42), Restricted Project
werner moved T6253: GpgSM: Backport ECC support to 2.2 from WiP to QA on the gnupg22 board.

That has been done modulo the bug which existed for both versions, I fixed today (T6536)

Oct 5 2023, 11:30 AM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME
werner added a comment to T6395: ADSK Feature .

@ebo: Du have the Ted Tester key (i.e. the ADSK key) also in you keyring?

Oct 5 2023, 11:27 AM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), OpenPGP
aheinecke added a comment to T6728: Kleopatra: encryption via "Encrypt folder" has unicode issue.

According to werner the gnupg tools use GetCommandLineW even when they are not build with -municode.
So a solution could be to build gpgme-w32-spawn with -municode and start the child process with CreateProcessW, this would also solve the problem that GnuPG could itself be installed into Paths which are not representable in the local 8 bit encoding.

Oct 5 2023, 9:49 AM · gpgme (gpgme 1.23.x), kleopatra, Restricted Project

Oct 2 2023

aheinecke added a project to T6728: Kleopatra: encryption via "Encrypt folder" has unicode issue: gnupg22.
Oct 2 2023, 2:31 PM · gpgme (gpgme 1.23.x), kleopatra, Restricted Project

Sep 29 2023

werner claimed T6736: Year 2038 issue for key validity date.

I am not sure whether we need to fix things in kleo but at some places gpg uses atoi() to parse the seconds since epoch. This should be fixed because that is the way gpgme provides the expiry time. I will also look into the ISO date string parser.

Sep 29 2023, 11:41 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Bug Report

Sep 28 2023

ebo moved T6253: GpgSM: Backport ECC support to 2.2 from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Sep 28 2023, 1:20 PM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME

Sep 27 2023

ebo moved T6497: gpgtar does not return failure code to gpgme from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Sep 27 2023, 3:09 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project

Sep 26 2023

ebo closed T6263: Allow OCB encryption in 2.2 as Resolved.

Works, setting "compatibility-flags vsd-allow-ocb" in the gpg.conf causes new keys to be generated with the AEAD feature flag OCB. And encryption to that key then uses OCB mode as long as the compatibility-flags is set.

Sep 26 2023, 9:41 AM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request

Sep 25 2023

ebo changed the status of T6708: Allow to inhibit the use of a default PGP keyserver from Testing to Open.

This works insofar that it is now possible to set "none" (via the registry in VSD):

Sep 25 2023, 1:18 PM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
gniibe added a comment to T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before.

In 2.2, KEYINFO output doesn't support A-flag for the information if card is online or not.
We need to clean up this discrepancy.

Sep 25 2023, 8:23 AM · gnupg22 (gnupg-2.2.42), Restricted Project
gniibe added a comment to T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before.

I pushed rGff42ed0d69bb: gpg: Enhance agent_probe_secret_key to return bigger value. to fix this issue.

Sep 25 2023, 8:12 AM · gnupg22 (gnupg-2.2.42), Restricted Project

Sep 22 2023

ikloecker added a comment to T6497: gpgtar does not return failure code to gpgme.

I think there is a timing issue between the termination of a job and the retrieval of gpg's output, so that gpg's output is sometimes truncated or even completely empty. This is a general problem and not specific for this ticket.

Sep 22 2023, 8:39 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project
ebo moved T6395: ADSK Feature from QA to WiP on the gnupg22 board.

Encryption to the ADSK seems to work but I'm not sure if everything is displayed as expected.

Sep 22 2023, 4:29 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), OpenPGP
ebo closed T6503: Do not make use of the VirtualStore under Windows as Resolved.

works with VS-Desktop-3.2.0.0-beta214, too.
You are now informed that you do not have permissions to write there.

Sep 22 2023, 1:17 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, kleopatra
ebo moved T6497: gpgtar does not return failure code to gpgme from QA to WiP on the gnupg22 board.
Sep 22 2023, 1:09 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project
ebo moved T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before from QA to WiP on the gnupg22 board.

For VS-Desktop-3.2.0.0-beta214 this does not work yet. If a keystub exists, it is not overwritten.

Sep 22 2023, 1:02 PM · gnupg22 (gnupg-2.2.42), Restricted Project
ebo moved T6497: gpgtar does not return failure code to gpgme from Restricted Project Column to Restricted Project Column on the Restricted Project board.

Kleopatra now shows:

Sep 22 2023, 9:59 AM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.2), Bug Report, Restricted Project

Sep 21 2023

ebo closed T6093: gpg: Continues export of secret key if first passphrase dialog was canceled as Resolved.

works in 22, too (tested with VS-Desktop-3.2.0.0-beta214)

Sep 21 2023, 4:28 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.1), Bug Report, Restricted Project
ebo changed the status of T6528: gpg: No error status when encrypting to full disk from Testing to Open.

Does not work yet on VS-Desktop-3.2.0.0-beta214:

Sep 21 2023, 4:17 PM · gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.3), Restricted Project
ebo closed T6534: gpg's progress_filter needs to use uint64_t as Resolved.

Tested in VS-Desktop-3.2.0.0-beta214 by encrypting a large file with Kleopatra. The progress bar shows percentage finished, progress looks all right

Sep 21 2023, 4:13 PM · gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.3), Feature Request, Restricted Project, Windows

Sep 18 2023

ebo moved T6559: GPGSM: "always trust like override" or "force" option from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Sep 18 2023, 3:42 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
ebo closed T6559: GPGSM: "always trust like override" or "force" option as Resolved.
Sep 18 2023, 3:39 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
ebo added a comment to T6559: GPGSM: "always trust like override" or "force" option.

Tested on the command line with

  • a previously valid certificate after setting its root certificate to untrusted
  • a expired certificate without the root certificate in the certificate list
Sep 18 2023, 3:31 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
werner renamed T6719: Support Proxy-Authorization: Negotiate on Windows from For WIndows support Proxy-Authorization: Negotiate to Support Proxy-Authorization: Negotiate on Windows.
Sep 18 2023, 9:18 AM · gnupg24, gnupg22, Feature Request, Restricted Project

Sep 15 2023

werner triaged T6719: Support Proxy-Authorization: Negotiate on Windows as High priority.
Sep 15 2023, 9:06 AM · gnupg24, gnupg22, Feature Request, Restricted Project

Sep 14 2023

ebo moved T6253: GpgSM: Backport ECC support to 2.2 from QA to WiP on the gnupg22 board.

pkcs12 import should be backported, too

Sep 14 2023, 3:08 PM · gnupg22 (gnupg-2.2.42), Restricted Project, Feature Request, S/MIME

Sep 12 2023

ebo closed T6399: Missing trustdb check on import of certificate as Resolved.

works

Sep 12 2023, 3:56 PM · gnupg22 (gnupg-2.2.42), OpenPGP, Restricted Project

Sep 8 2023

werner moved T6559: GPGSM: "always trust like override" or "force" option from Backlog to QA for next release on the gpgme board.
Sep 8 2023, 3:45 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
werner added a project to T6559: GPGSM: "always trust like override" or "force" option: gpgme.
Sep 8 2023, 3:45 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
werner moved T6534: gpg's progress_filter needs to use uint64_t from Backlog to done on the gpgme board.

Was already with gpgme 1.21.0. Note that I used the done column but in future a milestone would be more useful than that catch all "done".

Sep 8 2023, 3:41 PM · gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), gnupg24 (gnupg-2.4.3), Feature Request, Restricted Project, Windows

Sep 7 2023

werner edited projects for T1235: adding automatic refresh-key, added: gnupg22, gnupg24; removed gnupg.
Sep 7 2023, 11:53 AM · gnupg24, gnupg22, Restricted Project, Feature Request
ebo changed the status of T6559: GPGSM: "always trust like override" or "force" option from Open to Testing.
Sep 7 2023, 10:51 AM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
ebo changed the status of T6708: Allow to inhibit the use of a default PGP keyserver from Open to Testing.
Sep 7 2023, 10:50 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request

Sep 6 2023

werner claimed T6556: gpgtar: Removes existing output file on error.
Sep 6 2023, 8:07 PM · gnupg22, gnupg24, Restricted Project, gpgtar, Bug Report
werner added a comment to T6556: gpgtar: Removes existing output file on error.

That should be easy on Unix but on Windows we have the nul nul: and iirc also /dev/nul.

Sep 6 2023, 8:07 PM · gnupg22, gnupg24, Restricted Project, gpgtar, Bug Report
ikloecker added a comment to T6556: gpgtar: Removes existing output file on error.

@iklocker: Which gpg bug to you mean?

Sep 6 2023, 3:44 PM · gnupg22, gnupg24, Restricted Project, gpgtar, Bug Report
werner added a comment to T6556: gpgtar: Removes existing output file on error.

@iklocker: Which gpg bug to you mean?

Sep 6 2023, 2:21 PM · gnupg22, gnupg24, Restricted Project, gpgtar, Bug Report
werner moved T6399: Missing trustdb check on import of certificate from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Sep 6 2023, 12:15 PM · gnupg22 (gnupg-2.2.42), OpenPGP, Restricted Project
werner changed the status of T6399: Missing trustdb check on import of certificate from Open to Testing.

Bugs goes back to 2002 where we stopped checking trust for keys without any signature. This was really useful but has this strange behaviour.

Sep 6 2023, 12:15 PM · gnupg22 (gnupg-2.2.42), OpenPGP, Restricted Project
werner added a comment to T6708: Allow to inhibit the use of a default PGP keyserver.

BTW, with one of the recent gpgme fixes we now get

$~/b/gpgme/tests/run-keylist  --extern --verbose foo
run-keylist: file /home/wk/s/gpgme/tests/run-keylist.c line 414: <Dirmngr> No keyserver available

which is what users (and kleopatra) expects.

Sep 6 2023, 9:57 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner moved T6708: Allow to inhibit the use of a default PGP keyserver from Backlog to QA on the gnupg24 board.
Sep 6 2023, 9:52 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner added a project to T6708: Allow to inhibit the use of a default PGP keyserver: vsd.

Note that for vsd we also need to change our default configuration file. The new "none" value provides a better error message than the old default of assuming that the AD carries the keyserver (which it does not in practise).

Sep 6 2023, 9:52 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner triaged T6708: Allow to inhibit the use of a default PGP keyserver as Normal priority.
Sep 6 2023, 9:36 AM · gnupg24 (gnupg-2.4.4), gnupg22 (gnupg-2.2.42), Restricted Project, vsd, Feature Request
werner changed the status of T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before from Open to Testing.

Thank you.

Sep 6 2023, 8:25 AM · gnupg22 (gnupg-2.2.42), Restricted Project
gniibe added a comment to T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before.

Backported to 2.2 branch.

Sep 6 2023, 3:10 AM · gnupg22 (gnupg-2.2.42), Restricted Project

Sep 5 2023

werner reopened T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before as "Open".
Sep 5 2023, 4:45 PM · gnupg22 (gnupg-2.2.42), Restricted Project
werner edited projects for T3456: GPG does not import secret subkeys from --export-secret-subkeys output if subkey stubs existed before, added: gnupg22; removed gnupg.
Sep 5 2023, 4:44 PM · gnupg22 (gnupg-2.2.42), Restricted Project

Sep 4 2023

aheinecke added a parent task for T6559: GPGSM: "always trust like override" or "force" option: T6702: Kleopatra: Use GPGME_ENCRYPT_ALWAYS_TRUST.
Sep 4 2023, 8:49 AM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
aheinecke added a parent task for T6559: GPGSM: "always trust like override" or "force" option: T6701: GpgOL: Use GPGME_ENCRYPT_ALWAYS_TRUST.
Sep 4 2023, 8:45 AM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project

Sep 1 2023

thesamesam added a comment to T6556: gpgtar: Removes existing output file on error.

Thanks. For the record, done at https://lists.gnupg.org/pipermail/gnupg-users/2023-August/066692.html.

Sep 1 2023, 5:15 AM · gnupg22, gnupg24, Restricted Project, gpgtar, Bug Report

Aug 31 2023

werner moved T6559: GPGSM: "always trust like override" or "force" option from Backlog to QA on the gnupg24 board.
Aug 31 2023, 12:36 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
werner placed T6559: GPGSM: "always trust like override" or "force" option up for grabs.
Aug 31 2023, 12:08 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project
werner moved T6559: GPGSM: "always trust like override" or "force" option from Backlog to QA on the gnupg22 board.
Aug 31 2023, 12:07 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project

Aug 30 2023

werner claimed T6559: GPGSM: "always trust like override" or "force" option.
Aug 30 2023, 6:13 PM · gnupg24 (gnupg-2.4.4), gpgme (gpgme 1.23.x), gnupg22 (gnupg-2.2.42), Feature Request, gpgol, S/MIME, kleopatra, Restricted Project

Aug 28 2023

werner added a comment to T6399: Missing trustdb check on import of certificate.

I am not sure about the initial state of the key. What you are doing is to sign the key with itself (self-signature). Why?
In any case, I can't replicate this. Let's talk about this next week.

Aug 28 2023, 5:35 PM · gnupg22 (gnupg-2.2.42), OpenPGP, Restricted Project
werner moved T6421: Improve error message if no reset code (PUK) is set from WiP to Backlog on the gnupg22 board.

Not easy do decide whether something is a PIN or a PUK and we will need to check a lot of places. So, not now.

Aug 28 2023, 5:07 PM · Feature Request, gnupg22, gnupg24, gpgrt

Aug 25 2023

werner claimed T6421: Improve error message if no reset code (PUK) is set.
Aug 25 2023, 4:05 PM · Feature Request, gnupg22, gnupg24, gpgrt
werner claimed T6399: Missing trustdb check on import of certificate.
Aug 25 2023, 4:05 PM · gnupg22 (gnupg-2.2.42), OpenPGP, Restricted Project