Page MenuHome GnuPG
Feed Advanced Search

Today

werner triaged T7947: Add feature to gpg-card to set the retry count to a different value. as Normal priority.

Yubikeys allow that. See my mail to the mailing list.

Tue, Nov 25, 3:00 PM · Feature Request, scd, gnupg26
ebo renamed T7936: GpgOL: Add option to except internal domains from encryption from Draft: GpgOL: Add option to except internal domains from encryption to GpgOL: Add option to except internal domains from encryption.
Tue, Nov 25, 11:53 AM · Feature Request, vsd, gpgol
gniibe added a comment to T7873: Decrypt to foo.gpg.part files and rename.

The extension .part is used by Mozilla/Firefox. Curl uses .tmp. Is that OK for Windows machine to use .part?

Tue, Nov 25, 5:41 AM · Feature Request, gnupg26

Yesterday

rodolfoser added a comment to T7947: Add feature to gpg-card to set the retry count to a different value..

Seems like the OpenPGP Card Specification does not allow the change of retry counters.

Mon, Nov 24, 10:41 PM · Feature Request, scd, gnupg26
werner triaged T7944: GnuPG: full-gen-key for kyber keys without passphrase will ask for passphrase twice as Low priority.

That is a feature not a bug. Make also sense if your threat model is store-trafic-no-decrypt-later. If you can get the key you will also be abale to get the cleartext. Any nobody can remember a passphrase on par with the claimed Kyber security level.

Mon, Nov 24, 6:01 PM · PQC, Feature Request, gnupg26

Sat, Nov 22

werner created T7947: Add feature to gpg-card to set the retry count to a different value..
Sat, Nov 22, 11:34 AM · Feature Request, scd, gnupg26

Fri, Nov 21

alexk added a project to T7866: Allow separate LDAP keyserver for uploading: gnupg22.
Fri, Nov 21, 4:09 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner added a project to T7866: Allow separate LDAP keyserver for uploading: vsd34.
Fri, Nov 21, 4:08 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
gniibe added a comment to T7873: Decrypt to foo.gpg.part files and rename.

When --output option is used and the user uses temporary file and is ready for checking an error, that is, it's already prepared, it's redundant and useless, indeed.

Fri, Nov 21, 7:23 AM · Feature Request, gnupg26
gniibe added a comment to T7720: w32: Synchronous spawning gpg-agent/dirmngr/keyboxd.

Let me explain about the change rG57affc4e98ab.

Fri, Nov 21, 6:44 AM · gnupg, Feature Request, Bug Report

Thu, Nov 20

ebo added a comment to T7581: Kleopatra: Create team key.

The tool tip for the menu is missing.
Please add the typical "Save at" dialog (instead of automatic saving with info "Key was saved at"). We should have consistent behavior when saving secret (and public) keys.

Thu, Nov 20, 2:48 PM · Feature Request, gpd5x, kleopatra
gniibe changed the status of T7720: w32: Synchronous spawning gpg-agent/dirmngr/keyboxd, a subtask of T7716: gpgrt:w32: Synchronous spawning detached process, with standard input and standard error, from Open to Testing.
Thu, Nov 20, 7:07 AM · gpgrt, Feature Request, Bug Report
gniibe changed the status of T7720: w32: Synchronous spawning gpg-agent/dirmngr/keyboxd from Open to Testing.

Applied the change to master: rG57affc4e98ab: common,agent,dirmngr,kbx:w32: Synchronous spawning daemon process.

Thu, Nov 20, 7:07 AM · gnupg, Feature Request, Bug Report
gniibe closed T7716: gpgrt:w32: Synchronous spawning detached process, with standard input and standard error as Resolved.
Thu, Nov 20, 7:06 AM · gpgrt, Feature Request, Bug Report
gniibe added a comment to T7716: gpgrt:w32: Synchronous spawning detached process, with standard input and standard error.

Applied the change to master: rG57affc4e98ab: common,agent,dirmngr,kbx:w32: Synchronous spawning daemon process.

Thu, Nov 20, 7:00 AM · gpgrt, Feature Request, Bug Report

Wed, Nov 19

werner triaged T7936: GpgOL: Add option to except internal domains from encryption as Normal priority.
Wed, Nov 19, 5:50 PM · Feature Request, vsd, gpgol
werner closed T7897: Include key preferences in --with-colons as Resolved.
Wed, Nov 19, 5:46 PM · Gentoo, Feature Request
werner moved T7914: Card s/n number missing in gpgsm from WIP to QA on the gnupg26 board.
Wed, Nov 19, 5:42 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner added a comment to T7917: Check for revocation of the ADSK's original subkey .

With the next gpg release (2.5.14) the keyboxd has an extended fingerprint table which carries a flags column. A bit in this column can eventually be used to mark subkeys with the "R" key flag and the search funtion can be enhanced to ignore keys with that flag set. This way we can more easily lookup the actual ADSK key (with the "E" key flag) and check whether this subkey has been revoked.

Wed, Nov 19, 11:04 AM · Feature Request, OpenPGP, gnupg26

Tue, Nov 18

werner added a project to T7133: Add feature to load designated revoker from LDAP: backport.
Tue, Nov 18, 8:01 PM · backport, vsd34, Feature Request, gnupg22
ebo created T7936: GpgOL: Add option to except internal domains from encryption.
Tue, Nov 18, 4:14 PM · Feature Request, vsd, gpgol

Mon, Nov 17

gniibe updated subscribers of T7873: Decrypt to foo.gpg.part files and rename.

@ikloecker says that Kleo already support this feature. (I didn't know that.)
So, compatibility flag to switch on/off the feature would be needed,
or this feature is not needed in GnuPG at all.

Mon, Nov 17, 10:26 AM · Feature Request, gnupg26
ikloecker assigned T7581: Kleopatra: Create team key to TobiasFella.
Mon, Nov 17, 8:56 AM · Feature Request, gpd5x, kleopatra
gniibe added a comment to T7873: Decrypt to foo.gpg.part files and rename.

Here is my attempt to do that:

Mon, Nov 17, 8:19 AM · Feature Request, gnupg26

Sun, Nov 16

werner moved T7914: Card s/n number missing in gpgsm from Backlog to WiP on the gnupg22 board.
Sun, Nov 16, 7:12 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner edited projects for T7914: Card s/n number missing in gpgsm, added: gnupg22; removed gnupg.
Sun, Nov 16, 7:12 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner changed the status of T7914: Card s/n number missing in gpgsm from Open to Testing.

Fix applied. Thanks.

Sun, Nov 16, 7:10 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26

Sat, Nov 15

werner closed T7896: Escape binary data in NOTATION* for status-fd as Resolved.
Sat, Nov 15, 4:50 PM · gnupg, OpenPGP, Feature Request
mgorny added a comment to T7896: Escape binary data in NOTATION* for status-fd.

I can confirm that the patch fixes the issue. Thanks!

Sat, Nov 15, 9:16 AM · gnupg, OpenPGP, Feature Request

Fri, Nov 14

werner edited projects for T7133: Add feature to load designated revoker from LDAP, added: vsd34; removed vsd33.
Fri, Nov 14, 12:45 PM · backport, vsd34, Feature Request, gnupg22
werner triaged T7914: Card s/n number missing in gpgsm as Normal priority.
Fri, Nov 14, 12:42 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner renamed T7914: Card s/n number missing in gpgsm from Kleopatra: wrong info given for S/MIME secret key location on card to Card s/n number missing in gpgsm.
Fri, Nov 14, 12:40 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner added projects to T7914: Card s/n number missing in gpgsm: gnupg26, Feature Request.
Fri, Nov 14, 12:38 PM · gnupg22, scd, S/MIME, Feature Request, gnupg26
werner triaged T7917: Check for revocation of the ADSK's original subkey as High priority.
Fri, Nov 14, 11:03 AM · Feature Request, OpenPGP, gnupg26

Thu, Nov 13

ebo closed T7580: Kleopatra: Add a dialog window to the disable/enable certificate action, a subtask of T7216: Kleopatra: Integrate "disabled" feature from gpg, as Resolved.
Thu, Nov 13, 3:33 PM · Feature Request, kleopatra

Mon, Nov 10

werner created T7917: Check for revocation of the ADSK's original subkey .
Mon, Nov 10, 11:06 AM · Feature Request, OpenPGP, gnupg26

Thu, Nov 6

werner changed the status of T7896: Escape binary data in NOTATION* for status-fd from Open to Testing.
Thu, Nov 6, 9:06 AM · gnupg, OpenPGP, Feature Request
gniibe added a comment to T7873: Decrypt to foo.gpg.part files and rename.

Here is my idea to implement the feature:
(1) Extend struct iobuf_struct to have a field of temporary output (of int), just after real_fname.

  • OUTPUTFILE: When it's 1, a file generated with real_fname original suffix removed and appended .tmp is used for the output

(2) Modify get_output_file in plaintext.c and make_outfile_name in openfile.c, so that OUTPUTFILE above is used and the field in iobuf_struct is marked.
(3) Modify proc_encrypted in mainproc.c so that rename .tmp file to the OUTPUTFILE or remove it when failure.

Thu, Nov 6, 3:54 AM · Feature Request, gnupg26

Wed, Nov 5

werner added a comment to T7896: Escape binary data in NOTATION* for status-fd.

Alright, I change it from for notation data (and name).

[GNUPG:] NOTATION_NAME foo@foo.org
[GNUPG:] NOTATION_FLAGS 0 1
[GNUPG:] NOTATION_DATA bla%20bla%20��%20blub

with change:

[GNUPG:] NOTATION_NAME foo@foo.org
[GNUPG:] NOTATION_FLAGS 0 1
[GNUPG:] NOTATION_DATA bla%20bla%20%81%82%20blub
Wed, Nov 5, 4:49 PM · gnupg, OpenPGP, Feature Request
werner added a comment to T7896: Escape binary data in NOTATION* for status-fd.

Since rfc2440 the PGP specs say:

Wed, Nov 5, 3:55 PM · gnupg, OpenPGP, Feature Request

Mon, Nov 3

mgorny added a comment to T7896: Escape binary data in NOTATION* for status-fd.

That's a good question. Looking at https://datatracker.ietf.org/doc/draft-koch-librepgp/, it doesn't really specify what encoding is used for "human-readable" notation, so I'd personally lean towards encoding it to stay on the safe side. Unless I'm mistaken, status-fd will only be used locally, so escaping overhead should not be a problem.

Mon, Nov 3, 5:43 PM · gnupg, OpenPGP, Feature Request
werner changed the status of T7897: Include key preferences in --with-colons from Open to Testing.

Will be in 2.5.14 but I am not yet sure whether or when we put support into gpgme

Mon, Nov 3, 4:45 PM · Gentoo, Feature Request
werner added a comment to T7897: Include key preferences in --with-colons.

There will be a new "pfc" record to emit the used preferences after a "uid" record. --list-options show-pref must be given.

Mon, Nov 3, 4:32 PM · Gentoo, Feature Request
werner triaged T7897: Include key preferences in --with-colons as Normal priority.
Mon, Nov 3, 4:02 PM · Gentoo, Feature Request
werner raised the priority of T7251: Autofetch signature keys used by a trusted introducer from Normal to High.
Mon, Nov 3, 2:05 PM · Restricted Project, Feature Request, gnupg22
werner edited projects for T7896: Escape binary data in NOTATION* for status-fd, added: Feature Request, OpenPGP, gnupg; removed Bug Report.

The question is who shall correct the wrong encoding of notation data (assuming it is flagged as human readable). Escaping is a solution but needs a lot of extra bytes.

Mon, Nov 3, 9:58 AM · gnupg, OpenPGP, Feature Request
gniibe closed T7138: Windows (Semi-hosted environment): filename and network access, a subtask of T6508: Port GnuPG to 64-bit Windows, as Resolved.
Mon, Nov 3, 3:41 AM · Windows 64, Feature Request, gnupg26

Sun, Nov 2

thesamesam created T7897: Include key preferences in --with-colons.
Sun, Nov 2, 5:35 AM · Gentoo, Feature Request

Mon, Oct 27

svuorela changed the status of T7773: Add reencrypt mail option to copy only encrypted mails from Open to Testing.
Mon, Oct 27, 12:32 PM · Restricted Project, Feature Request, gpgol2

Oct 24 2025

werner triaged T7873: Decrypt to foo.gpg.part files and rename as Normal priority.
Oct 24 2025, 9:37 AM · Feature Request, gnupg26

Oct 23 2025

werner merged T7779: dirmngr: use different keyserver for sending and receiving certificates into T7866: Allow separate LDAP keyserver for uploading.
Oct 23 2025, 1:40 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26

Oct 22 2025

werner moved T1825: Add a re-encrypt to additional key from Backlog to QA on the gnupg26 board.
Oct 22 2025, 2:25 PM · gnupg26, Restricted Project, Feature Request
werner changed the status of T1825: Add a re-encrypt to additional key from Open to Testing.
Oct 22 2025, 2:25 PM · gnupg26, Restricted Project, Feature Request
werner moved T7866: Allow separate LDAP keyserver for uploading from WIP to QA on the gnupg26 board.
Oct 22 2025, 2:24 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26

Oct 21 2025

werner changed the status of T7866: Allow separate LDAP keyserver for uploading from Open to Testing.

Implemented but not tested at all.

Oct 21 2025, 10:48 AM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner triaged T7866: Allow separate LDAP keyserver for uploading as Normal priority.
Oct 21 2025, 10:42 AM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
gniibe changed the status of T7138: Windows (Semi-hosted environment): filename and network access, a subtask of T6508: Port GnuPG to 64-bit Windows, from Open to Testing.
Oct 21 2025, 4:57 AM · Windows 64, Feature Request, gnupg26

Oct 19 2025

thesamesam added a comment to T5993: gpg should reject compressed packets outside of messages.

For completeness, that's https://gitlab.freedesktop.org/poppler/poppler/-/issues/1595. dkg obviously filed that but it may be useful for others finding themselves here.

Oct 19 2025, 7:52 PM · Feature Request, gnupg

Oct 9 2025

ebo changed the status of T7269: Attachments vanish from forward encrypted message from Testing to Open.
Oct 9 2025, 4:33 PM · vsd34, gpd5x, Feature Request, gpgol
ebo moved T7269: Attachments vanish from forward encrypted message from Backlog to Triage on the gpgol board.
Oct 9 2025, 4:33 PM · vsd34, gpd5x, Feature Request, gpgol

Oct 8 2025

gniibe closed T7723: gpgrt:w32: Fix for inheriting stdin/stdout/stderr with "NUL", a subtask of T7716: gpgrt:w32: Synchronous spawning detached process, with standard input and standard error, as Resolved.
Oct 8 2025, 9:09 AM · gpgrt, Feature Request, Bug Report
gniibe closed T7723: gpgrt:w32: Fix for inheriting stdin/stdout/stderr with "NUL" as Resolved.

Fixed in 1.56.

Oct 8 2025, 9:09 AM · Windows, gpgrt, Feature Request, Bug Report

Oct 3 2025

gniibe added a comment to T7720: w32: Synchronous spawning gpg-agent/dirmngr/keyboxd.

I updated the branch.

Oct 3 2025, 4:55 AM · gnupg, Feature Request, Bug Report

Oct 2 2025

svuorela added a comment to T7773: Add reencrypt mail option to copy only encrypted mails .

We also discussed emails that can't be decrypted. They are due to implementation details just currently skipped. They will also be so in the future as an implementation detail.

Oct 2 2025, 3:17 PM · Restricted Project, Feature Request, gpgol2

Oct 1 2025

ebo removed a project from T7098: Change the GpgOL encryption icon according to its state: Restricted Project.
Oct 1 2025, 2:28 PM · vsd34, gpd5x, Feature Request, gpgol

Sep 24 2025

werner added a comment to T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server.

Also implemented for 2.2

Sep 24 2025, 4:58 PM · gnupg22, gnupg26, Feature Request, gpd5x
werner claimed T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server.
Sep 24 2025, 1:38 PM · gnupg22, gnupg26, Feature Request, gpd5x

Sep 23 2025

ebo added a comment to T7269: Attachments vanish from forward encrypted message.

I see no workaround.
The attachments in the original mail are not gone, yes.
But the mail can't be forwarded with them.

Sep 23 2025, 3:39 PM · vsd34, gpd5x, Feature Request, gpgol
ebo edited projects for T7269: Attachments vanish from forward encrypted message, added: vsd34; removed vsd33.
Sep 23 2025, 3:37 PM · vsd34, gpd5x, Feature Request, gpgol

Sep 19 2025

ebo added a comment to T7581: Kleopatra: Create team key.

ok, changed the text in the description of the ticket accordingly, but put two more "team" back in.

Sep 19 2025, 12:10 PM · Feature Request, gpd5x, kleopatra
ebo updated the task description for T7581: Kleopatra: Create team key.
Sep 19 2025, 12:09 PM · Feature Request, gpd5x, kleopatra
hej added a comment to T7581: Kleopatra: Create team key.

Dialogtext (winzige Politur):

Sep 19 2025, 11:48 AM · Feature Request, gpd5x, kleopatra

Sep 18 2025

ebo updated the task description for T7581: Kleopatra: Create team key.
Sep 18 2025, 4:26 PM · Feature Request, gpd5x, kleopatra
ebo added a comment to T7581: Kleopatra: Create team key.

We decided to

Sep 18 2025, 3:54 PM · Feature Request, gpd5x, kleopatra

Sep 17 2025

ebo added a comment to T7581: Kleopatra: Create team key.

We got new suggestions for this:

Sep 17 2025, 3:51 PM · Feature Request, gpd5x, kleopatra

Sep 12 2025

ebo updated the task description for T7269: Attachments vanish from forward encrypted message.
Sep 12 2025, 10:24 AM · vsd34, gpd5x, Feature Request, gpgol

Sep 11 2025

ebo moved T7269: Attachments vanish from forward encrypted message from Backlog to QA on the gpd5x board.
Sep 11 2025, 2:40 PM · vsd34, gpd5x, Feature Request, gpgol
ebo moved T7269: Attachments vanish from forward encrypted message from Backlog to QA on the vsd33 board.
Sep 11 2025, 2:39 PM · vsd34, gpd5x, Feature Request, gpgol
ebo added a project to T7269: Attachments vanish from forward encrypted message: vsd33.
Sep 11 2025, 2:39 PM · vsd34, gpd5x, Feature Request, gpgol
ebo edited projects for T7269: Attachments vanish from forward encrypted message, added: gpd5x; removed Restricted Project.
Sep 11 2025, 2:35 PM · vsd34, gpd5x, Feature Request, gpgol

Sep 10 2025

ebo moved T7581: Kleopatra: Create team key from Backlog to WIP on the gpd5x board.
Sep 10 2025, 12:23 PM · Feature Request, gpd5x, kleopatra

Sep 9 2025

timegrid moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WIP to QA on the gpd5x board.
Sep 9 2025, 3:52 PM · gnupg22, gnupg26, Feature Request, gpd5x

Sep 2 2025

werner moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WIP to QA on the gnupg26 board.
Sep 2 2025, 2:59 PM · gnupg22, gnupg26, Feature Request, gpd5x

Aug 29 2025

ebo edited projects for T7098: Change the GpgOL encryption icon according to its state, added: vsd34; removed vsd33.
Aug 29 2025, 12:30 PM · vsd34, gpd5x, Feature Request, gpgol

Aug 28 2025

alexk added a project to T2380: Auto-refresh key if it is close to its expiration date.: vsd34.

Especially when an LDAP is configured, keys should be automatically refreshed in short intervals (5 days? Configurable?) to notify users about revoked keys or signatures from a trusted key.
Keys that are close to their expiration dates should be prioritized.
Maybe users want to configure for what mail domains a lookup on a configured LDAP should be done.

Aug 28 2025, 2:31 PM · vsd34, gnupg, OpenPGP, Feature Request
ebo closed T4515: GpgOL 2.3.3 - Attachment Problem (Encryption) as Wontfix.

I think it is save to say that we will not implement pgp/inline encryption with attachments

Aug 28 2025, 2:20 PM · Feature Request, gpg4win, gpgol

Aug 27 2025

werner lowered the priority of T7618: gpgsm: Allow selecting keys by SHA2 fpr from Normal to Wishlist.

The problem here is that we don't have the sha-2 fingerprint in our SQL tables. Thus we would not only need to do a full table search but also parse the actual blob to compute the sha-2 fingerprint.

Aug 27 2025, 4:14 PM · S/MIME, gnupg26, Feature Request
werner closed T7713: Allow to skip the qualified signature confirmation prompt as Resolved.

I have done testing using my QES certificate with all combinations of the two options.

Aug 27 2025, 12:02 PM · S/MIME, Feature Request, gnupg26

Aug 25 2025

werner closed T7792: Adding four additional options after selecting Kyber (encrypt only) when using addkey as Resolved.

Thanks for reporting/requesting.

Aug 25 2025, 4:53 PM · PQC, gnupg26, Feature Request
werner triaged T7792: Adding four additional options after selecting Kyber (encrypt only) when using addkey as Normal priority.
Aug 25 2025, 4:30 PM · PQC, gnupg26, Feature Request

Aug 23 2025

William updated the task description for T7792: Adding four additional options after selecting Kyber (encrypt only) when using addkey.
Aug 23 2025, 9:03 PM · PQC, gnupg26, Feature Request
William created T7792: Adding four additional options after selecting Kyber (encrypt only) when using addkey.
Aug 23 2025, 8:58 PM · PQC, gnupg26, Feature Request

Aug 21 2025

werner renamed T7787: Support exporting for of Kyber+ECC keys and subkeys from Cannot export secret keys to Support exporting for of Kyber+ECC keys and subkeys.
Aug 21 2025, 11:17 AM
werner triaged T7787: Support exporting for of Kyber+ECC keys and subkeys as Normal priority.

Well, I will re-use this as a feature request to add this feature. Workaround is to list the key with --with-keygrip and backup the ~/.gnupg/private-keys-v1.d/<keygrip>.key files.

Aug 21 2025, 11:16 AM

Aug 13 2025

ebo closed T6694: Random numbers from gpgme as Resolved.
Aug 13 2025, 11:14 AM · gpd5x, gpgpass, gpgme, Feature Request

Aug 11 2025

werner triaged T7774: Add reencrypt option to mail and folder encryption to output a list of encrypted mails as Normal priority.
Aug 11 2025, 9:44 AM · Restricted Project, Feature Request, gpgol2
werner triaged T7773: Add reencrypt mail option to copy only encrypted mails as Normal priority.
Aug 11 2025, 9:41 AM · Restricted Project, Feature Request, gpgol2

Aug 7 2025

werner placed T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server up for grabs.
Aug 7 2025, 12:04 PM · gnupg22, gnupg26, Feature Request, gpd5x

Aug 4 2025

timegrid moved T7700: Kleopatra: Move kleopatrarc away from %LOCALAPPDATA% from WIP to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta357 @ win10 for the following migrations (as stated in the description):

  • gpg4win 4.3.1 -> gpg4win 5.0
  • gpg4win 4.4.1 -> gpg4win 5.0
Aug 4 2025, 7:10 PM · gpd5x, Feature Request, kleopatra, vsd34
gniibe added a comment to T7720: w32: Synchronous spawning gpg-agent/dirmngr/keyboxd.

Pushed the changes in {gniibe/synch-spawn} branch.
It consists of three commits:

Aug 4 2025, 7:52 AM · gnupg, Feature Request, Bug Report