Page MenuHome GnuPG
Feed Advanced Search

Today

werner triaged T7990: export-minimal unexpectedly omits expired key as High priority.
Fri, Jan 9, 2:47 PM · gnupg26, Feature Request, Gentoo
timegrid added a comment to T7866: Allow separate LDAP keyserver for uploading.

The behaviour might have changed a bit because of the ldap: prefix i use now, or i have missed this case the last time:
Given some cert on the "download" server, I can find it, if dirmngr.conf contains only the "download" server, or if the "download" server is listed first:

Fri, Jan 9, 2:17 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner closed T7663: Certificated signed using SHA-1 isn't trusted, but needs --force-sign-key to re-sign. as Resolved.
Fri, Jan 9, 1:42 PM · gnupg26, Feature Request
werner added a comment to T7866: Allow separate LDAP keyserver for uploading.

Independent of keyserver order in dirmngr.conf, --search-keys still offers keys from the upload server, but the download fails:

Fri, Jan 9, 1:35 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
werner added a comment to T7866: Allow separate LDAP keyserver for uploading.

For "Although the upload server is used for upload, the gpg message still displays the first keyserver" see T8025

Fri, Jan 9, 1:28 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
ebo closed T7914: Card s/n number missing in gpgsm as Resolved.

in Gpg4win-5.0.0-beta479

Fri, Jan 9, 12:08 PM · gnupg22 (gnupg-2.2.52), scd, S/MIME, Feature Request, gnupg26
werner edited projects for T6421: Improve error message if no reset code (PUK) is set, added: gnupg26; removed gnupg22, gnupg24.

I think we won't fix that for 2.2

Fri, Jan 9, 11:32 AM · gnupg26, Feature Request, gpgrt
werner edited projects for T6436: Double pinentry on change password, added: gnupg26; removed gnupg24.
Fri, Jan 9, 11:28 AM · gnupg26, Feature Request, gnupg22, Restricted Project
werner closed T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server as Resolved.
Fri, Jan 9, 11:22 AM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WiP to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:22 AM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner moved T7914: Card s/n number missing in gpgsm from WiP to gnupg-2.2.52 on the gnupg22 board.
Fri, Jan 9, 11:17 AM · gnupg22 (gnupg-2.2.52), scd, S/MIME, Feature Request, gnupg26
timegrid added a comment to T7773: Add reencrypt mail option to copy only encrypted mails .

Tested with gpg4win-5.0.0-beta479 @ win11

Fri, Jan 9, 10:25 AM · gpd5x, Feature Request, gpgol2
timegrid closed T7773: Add reencrypt mail option to copy only encrypted mails as Resolved.
Fri, Jan 9, 10:21 AM · gpd5x, Feature Request, gpgol2
timegrid moved T7773: Add reencrypt mail option to copy only encrypted mails from QA to Done on the gpgol2 board.
Fri, Jan 9, 10:21 AM · gpd5x, Feature Request, gpgol2
timegrid moved T7773: Add reencrypt mail option to copy only encrypted mails from QA to Done on the gpd5x board.

@tfry tested this, and it seems fine.

Fri, Jan 9, 10:21 AM · gpd5x, Feature Request, gpgol2

Yesterday

ebo updated the task description for T8022: Kleopatra: Add option to extract a tar.gpg archive directly into a given directory.
Thu, Jan 8, 11:08 AM · Feature Request, vsd34, gpd5x, gpgtar, kleopatra
ebo triaged T8022: Kleopatra: Add option to extract a tar.gpg archive directly into a given directory as Normal priority.
Thu, Jan 8, 10:37 AM · Feature Request, vsd34, gpd5x, gpgtar, kleopatra

Wed, Jan 7

anthumchris added a comment to T8021: Implement gpg key management API.

completed: draft all gpg key function names

Wed, Jan 7, 12:52 PM · gpgme, Feature Request
anthumchris updated the task description for T8021: Implement gpg key management API.
Wed, Jan 7, 12:47 PM · gpgme, Feature Request
anthumchris added a comment to T7975: Official GPGme interface/bindings for Nodejs (node).

I decided to prioritize developer experience and provide simplified, high-level functional abstractions instead of maintaining 1:1 parity with the underlying gpgme library functions. See example in T8021

Wed, Jan 7, 12:39 PM · gpgme, Feature Request
anthumchris updated the task description for T8021: Implement gpg key management API.
Wed, Jan 7, 12:35 PM · gpgme, Feature Request
anthumchris changed the status of T8005: TypeScript support, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), from Open to Testing.
Wed, Jan 7, 12:30 PM · gpgme, Feature Request
anthumchris changed the status of T8005: TypeScript support from Open to Testing.
Wed, Jan 7, 12:30 PM · gpgme, Feature Request
anthumchris changed the status of T8021: Implement gpg key management API from Open to Testing.
Wed, Jan 7, 12:29 PM · gpgme, Feature Request
werner added a parent task for T8019: gpg does not print warning about untrusted key when verifying signatures made by expired (and untrusted) keys: T7790: Kleopatra: "no trusted certification" should have precedence over "expired" in signature verification.
Wed, Jan 7, 12:03 PM · Feature Request, S/MIME, OpenPGP, gnupg26
werner triaged T8019: gpg does not print warning about untrusted key when verifying signatures made by expired (and untrusted) keys as Normal priority.

Traditionally we have considered expired and revoked more or less similar. The idea is that an expired key might have been compromised but the owner did not found a way to revoke it. We may want to change this policy because some users don't care too much about expired keys (cf. T7990) .

Wed, Jan 7, 12:03 PM · Feature Request, S/MIME, OpenPGP, gnupg26
anthumchris closed T8004: Bindings for The GnuPG UI Server Protocol, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), as Invalid.
Wed, Jan 7, 11:52 AM · gpgme, Feature Request
anthumchris closed T8004: Bindings for The GnuPG UI Server Protocol as Invalid.

I may have misinterpreted what The GnuPG UI Server Protocol is. Instead, I will provide high-level functions to all of gpgme's underlying features

Wed, Jan 7, 11:52 AM · gpgme, Feature Request
anthumchris added a subtask for T7975: Official GPGme interface/bindings for Nodejs (node): T8005: TypeScript support.
Wed, Jan 7, 11:46 AM · gpgme, Feature Request
anthumchris edited parent tasks for T8005: TypeScript support, added: T7975: Official GPGme interface/bindings for Nodejs (node); removed: T8004: Bindings for The GnuPG UI Server Protocol.
Wed, Jan 7, 11:46 AM · gpgme, Feature Request
anthumchris removed a subtask for T8004: Bindings for The GnuPG UI Server Protocol: T8005: TypeScript support.
Wed, Jan 7, 11:46 AM · gpgme, Feature Request

Tue, Jan 6

the13thletter added a comment to T8013: gpgconf does not support the --enable-win32-openssh-support option for gpg-agent.

Frankly, he OpenSSH support for Windows was experimental and I have never tested it. If it can be confirmed that this really works and is useful, it will be easy to add the opeion to gpgconf.

Tue, Jan 6, 10:04 PM · Feature Request, ssh, gnupg26, Windows
timegrid closed T1825: Add a re-encrypt to additional key as Resolved.
Tue, Jan 6, 12:57 PM · gpd5x, gnupg26, Feature Request
werner added a comment to T1825: Add a re-encrypt to additional key.

Regarding my comment T1825#191055 : The mane page has long been updated and gpgme support is also available. For the symmetric session key, see the feature request T8016

Tue, Jan 6, 12:53 PM · gpd5x, gnupg26, Feature Request
werner triaged T8016: Keep symmetric encryption keys with --add-recipients as Low priority.
Tue, Jan 6, 12:51 PM · gpd5x, gnupg26, Feature Request
timegrid moved T1825: Add a re-encrypt to additional key from QA to Done on the gnupg26 board.
Tue, Jan 6, 12:28 PM · gpd5x, gnupg26, Feature Request
timegrid moved T1825: Add a re-encrypt to additional key from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

  • gpg --show-only-session-key --decrypt FILE shows only the session key
  • gpg --add-recipients -r UID1 FILE adds recipients (tested with one or more uids)
  • gpg --change-recipients -r UID FILE changes the recipients (tested with one or more uids)
Tue, Jan 6, 12:28 PM · gpd5x, gnupg26, Feature Request
werner triaged T8013: gpgconf does not support the --enable-win32-openssh-support option for gpg-agent as Normal priority.

Frankly, he OpenSSH support for Windows was experimental and I have never tested it. If it can be confirmed that this really works and is useful, it will be easy to add the opeion to gpgconf. Note that the gpgconf option feature handles only a subset of all options on purpose.

Tue, Jan 6, 8:53 AM · Feature Request, ssh, gnupg26, Windows

Mon, Jan 5

timegrid moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from QA to Done on the gnupg26 board.
Mon, Jan 5, 12:54 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
timegrid moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WIP to Done on the gpd5x board.

The problem was the keyserver configuration, which does not include a scheme (ldap:):

keyserver ldap.gnupg.test:389:uid=LordPrivySeal,ou=GnuPG Users,dc=gnupg,dc=test:pass:dc=gnupg,dc=test:
Mon, Jan 5, 12:53 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x

Sun, Jan 4

anthumchris closed T8010: Publish to NPM registry, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), as Resolved.
Sun, Jan 4, 11:45 PM · gpgme, Feature Request
anthumchris closed T8010: Publish to NPM registry as Resolved.

Published to NPM as gpgmejs, which provides disambiguation from gpgme, gpgmepp, gpgmepy, etc.

Sun, Jan 4, 11:45 PM · gpgme, Feature Request
anthumchris changed the status of T8010: Publish to NPM registry, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), from Open to Testing.
Sun, Jan 4, 10:45 PM · gpgme, Feature Request
anthumchris changed the status of T8010: Publish to NPM registry from Open to Testing.
Sun, Jan 4, 10:45 PM · gpgme, Feature Request
anthumchris triaged T8010: Publish to NPM registry as Normal priority.
Sun, Jan 4, 10:44 PM · gpgme, Feature Request
anthumchris closed T8003: Create first gnupgme nodejs binding for gpg version as Resolved.

completed working test and repo:
https://github.com/anthumchris/gpgmejs/

Sun, Jan 4, 4:25 AM · gpgme, Feature Request
anthumchris closed T8003: Create first gnupgme nodejs binding for gpg version, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), as Resolved.
Sun, Jan 4, 4:25 AM · gpgme, Feature Request

Fri, Jan 2

anthumchris renamed T8009: Wasm for browser support from Consider Wasm for browser support to Wasm for browser support.
Fri, Jan 2, 3:34 PM · gpgme, Feature Request
anthumchris updated the task description for T8009: Wasm for browser support.
Fri, Jan 2, 3:33 PM · gpgme, Feature Request
anthumchris updated the task description for T8009: Wasm for browser support.
Fri, Jan 2, 3:33 PM · gpgme, Feature Request
anthumchris updated the task description for T8009: Wasm for browser support.
Fri, Jan 2, 3:33 PM · gpgme, Feature Request
anthumchris triaged T8009: Wasm for browser support as Normal priority.
Fri, Jan 2, 3:32 PM · gpgme, Feature Request

Thu, Jan 1

anthumchris renamed T8004: Bindings for The GnuPG UI Server Protocol from Bindings for GnuPG UI Server Protocol to Bindings for The GnuPG UI Server Protocol.
Thu, Jan 1, 3:34 PM · gpgme, Feature Request
anthumchris triaged T8005: TypeScript support as Normal priority.
Thu, Jan 1, 3:32 PM · gpgme, Feature Request
anthumchris triaged T8004: Bindings for The GnuPG UI Server Protocol as Normal priority.
Thu, Jan 1, 3:28 PM · gpgme, Feature Request
anthumchris triaged T8003: Create first gnupgme nodejs binding for gpg version as Normal priority.
Thu, Jan 1, 3:25 PM · gpgme, Feature Request
anthumchris closed T7992: Research Node.js Addons as Resolved.

Completed working base repository with developer workflows for watching files and rebuilding/retesting:
https://github.com/anthumchris/node-addon

Thu, Jan 1, 3:21 PM · gpgme, Feature Request
anthumchris closed T7992: Research Node.js Addons, a subtask of T7975: Official GPGme interface/bindings for Nodejs (node), as Resolved.
Thu, Jan 1, 3:21 PM · gpgme, Feature Request

Wed, Dec 31

anthumchris updated subscribers of T7992: Research Node.js Addons.
Wed, Dec 31, 4:51 PM · gpgme, Feature Request

Tue, Dec 30

anthumchris added a comment to T7975: Official GPGme interface/bindings for Nodejs (node).
Tue, Dec 30, 2:36 PM · gpgme, Feature Request

Sun, Dec 28

anthumchris triaged T7992: Research Node.js Addons as Normal priority.
Sun, Dec 28, 4:26 PM · gpgme, Feature Request
anthumchris claimed T7975: Official GPGme interface/bindings for Nodejs (node).
Sun, Dec 28, 3:26 PM · gpgme, Feature Request

Tue, Dec 23

thesamesam added a comment to T7897: Include key preferences in --with-colons.

Thank you!

Tue, Dec 23, 1:57 PM · Gentoo, Feature Request

Thu, Dec 18

werner placed T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server up for grabs.
Thu, Dec 18, 12:11 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WIP to QA on the gnupg26 board.
Thu, Dec 18, 12:11 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
werner added a comment to T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server.

Well, I tested this again. I created a new key and saved a copy. The I updated the expiration date to 2035 and sent the key to the LDAP server. Then I deleted the updated key locally and imported the old copy. Thus I have now:

Thu, Dec 18, 12:09 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x
TobiasFella added a comment to T7107: Kleopatra: Option "PublicKeyEncryptionOnly".

https://invent.kde.org/pim/kleopatra/-/merge_requests/428

Thu, Dec 18, 11:17 AM · gpd5x, Feature Request, kleopatra
TobiasFella closed T7535: Kleopatra: "Decrypt/Verify all files in folder" doesn't work as Resolved.
Thu, Dec 18, 11:01 AM · Feature Request, kleopatra

Wed, Dec 17

ebo added a comment to T7981: Draft: Kleopatra: Show "No secret key" error for S/MIME protocol.

The aim of this ticket is to map the message in Kleo for the corresponding gpg case to the "Not found" error in gpgsm and thus show the other message instead.

Wed, Dec 17, 10:03 AM · Feature Request, gpd5x, kleopatra
ebo renamed T7981: Draft: Kleopatra: Show "No secret key" error for S/MIME protocol from Kleopatra: Show "No secret key" error for S/MIME protocol to Draft: Kleopatra: Show "No secret key" error for S/MIME protocol.
Wed, Dec 17, 9:52 AM · Feature Request, gpd5x, kleopatra
ebo created T7981: Draft: Kleopatra: Show "No secret key" error for S/MIME protocol.
Wed, Dec 17, 9:00 AM · Feature Request, gpd5x, kleopatra

Tue, Dec 16

m.eik added a comment to T7774: Add reencrypt option to mail and folder encryption to output a list of encrypted mails.
In T7774#209645, @ebo wrote:

isn't this done?

Tue, Dec 16, 12:16 PM · gpd5x, Feature Request, gpgol2
TobiasFella changed the status of T7581: Kleopatra: Create team key from Open to Testing.
Tue, Dec 16, 10:24 AM · Feature Request, gpd5x, kleopatra
anthumchris added a comment to T7975: Official GPGme interface/bindings for Nodejs (node).

Thanks, I'll start here and see how it was done with JS for the browser: https://dev.gnupg.org/source/gpgme/browse/master/lang/js/

Tue, Dec 16, 4:45 AM · gpgme, Feature Request

Mon, Dec 15

ikloecker added a comment to T7975: Official GPGme interface/bindings for Nodejs (node).

Note that we have moved almost all bindings out of gpgme into separate repos. I suggest to develop such bindings externally. And you'll have to find external resources to learn how to create nodejs bindings for gpgme.

Mon, Dec 15, 5:33 PM · gpgme, Feature Request
ikloecker closed T7584: Okular: Move config files to GNUPGHOME as Wontfix.

Yes, this is obsolete with T7717: Location of qt-application config files. Closing as Wontfix because we use product-specific folders outside of GNUPGHOME.

Mon, Dec 15, 5:07 PM · Feature Request, okular
timegrid edited projects for T4446: please add --quick-revoke-subkey, added: gnupg26; removed Restricted Project, gnupg24.
Mon, Dec 15, 11:14 AM · gnupg26, Feature Request

Sun, Dec 14

werner added a project to T7975: Official GPGme interface/bindings for Nodejs (node): gpgme.
Sun, Dec 14, 4:03 PM · gpgme, Feature Request

Sat, Dec 13

anthumchris created T7975: Official GPGme interface/bindings for Nodejs (node).
Sat, Dec 13, 7:48 PM · gpgme, Feature Request

Fri, Dec 12

ebo edited projects for T7099: Disable the import of certain card objects, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 3:34 PM · gpd5x, gnupg26, scd, Feature Request
ebo moved T7773: Add reencrypt mail option to copy only encrypted mails from Backlog to QA on the gpd5x board.
Fri, Dec 12, 3:16 PM · gpd5x, Feature Request, gpgol2
ebo edited projects for T7773: Add reencrypt mail option to copy only encrypted mails , added: gpd5x; removed Restricted Project.
Fri, Dec 12, 3:16 PM · gpd5x, Feature Request, gpgol2
ebo updated subscribers of T7774: Add reencrypt option to mail and folder encryption to output a list of encrypted mails.

isn't this done?

Fri, Dec 12, 3:15 PM · gpd5x, Feature Request, gpgol2
ebo edited projects for T7774: Add reencrypt option to mail and folder encryption to output a list of encrypted mails, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 3:14 PM · gpd5x, Feature Request, gpgol2
timegrid updated the task description for T6719: Support Proxy-Authorization: Negotiate on Windows.
Fri, Dec 12, 3:09 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid added a project to T6719: Support Proxy-Authorization: Negotiate on Windows: test on hold.
Fri, Dec 12, 3:07 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid moved T6719: Support Proxy-Authorization: Negotiate on Windows from WiP to QA on the gnupg22 board.
Fri, Dec 12, 3:07 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid moved T6719: Support Proxy-Authorization: Negotiate on Windows from QA to done on the gnupg24 board.
Fri, Dec 12, 3:06 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid moved T6719: Support Proxy-Authorization: Negotiate on Windows from WiP to QA on the gnupg24 board.
Fri, Dec 12, 3:06 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid moved T6719: Support Proxy-Authorization: Negotiate on Windows from Backlog to QA on the gpd5x board.
Fri, Dec 12, 3:05 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
timegrid edited projects for T6719: Support Proxy-Authorization: Negotiate on Windows, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 3:05 PM · Active Directory, test on hold, gpd5x, gnupg24, gnupg22, Feature Request
ebo updated the task description for T6620: Add a way to extract ECC key parameters from a public key.
Fri, Dec 12, 3:02 PM · gpd5x, kleopatra, Feature Request, gpgme
timegrid edited projects for T6620: Add a way to extract ECC key parameters from a public key, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 3:01 PM · gpd5x, kleopatra, Feature Request, gpgme
timegrid moved T1825: Add a re-encrypt to additional key from Backlog to QA on the gpd5x board.
Fri, Dec 12, 2:57 PM · gpd5x, gnupg26, Feature Request
timegrid edited projects for T1825: Add a re-encrypt to additional key, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 2:57 PM · gpd5x, gnupg26, Feature Request
timegrid edited projects for T7101: Automagically create a PGP key from a X.509 cert, added: gnupg26; removed Restricted Project, gnupg.
Fri, Dec 12, 2:56 PM · gnupg26, Feature Request, S/MIME, OpenPGP
timegrid edited projects for T7593: Check the trustlist de-vs flag in the per key compliance check, added: gpd5x; removed Restricted Project.
Fri, Dec 12, 2:55 PM · gpd5x, gnupg26, vsd, Feature Request
timegrid closed T6211: KMail should process "Confirm your key publication" messages from WKS-Server as Resolved.

Resolved without further testing

Fri, Dec 12, 2:51 PM · KMail, Restricted Project, Feature Request
ebo removed a project from T1235: adding automatic refresh-key: Restricted Project.
Fri, Dec 12, 2:27 PM · gnupg26, gnupg22, Feature Request
ebo moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from QA to WIP on the gnupg26 board.
Fri, Dec 12, 1:30 PM · gnupg22 (gnupg-2.2.52), gnupg26, Feature Request, gpd5x