Page MenuHome GnuPG
Feed Advanced Search

May 30 2017

neal committed rD4b261eb78c21: campaign: Fix some typos. (authored by neal).
campaign: Fix some typos.
May 30 2017, 2:55 PM
neal committed rD3e3c947feb49: campaign: It's Gillmor, not Gillmore. (authored by neal).
campaign: It's Gillmor, not Gillmore.
May 30 2017, 2:55 PM

May 27 2017

neal committed rDcc9d79dfef03: web: Add youtube verification file. (authored by neal).
web: Add youtube verification file.
May 27 2017, 12:59 PM

May 24 2017

neal added a comment to T2905: EFL-based pinentry.
In T2905#97835, @wltjr wrote:

I am not sure where the underscore comes from. Seems to come from pinentry, but GTK and QT do not have that, so I think its something I am doing wrong.

May 24 2017, 8:44 AM · pinentry, Feature Request

May 22 2017

neal committed rD5928829d4614: campaign: add french translation (authored by guilhem).
campaign: add french translation
May 22 2017, 2:17 PM

May 19 2017

neal added a comment to F136477: youtube-captions-mobile.png.

Firefox on Android 7.1

May 19 2017, 7:24 PM
neal committed rD92f93a0029e3: campaign: Replace "will" with "intend to" (authored by neal).
campaign: Replace "will" with "intend to"
May 19 2017, 12:06 PM

May 16 2017

neal committed rD3f49038aeaa0: campaign: One camp-headshot style is enough. (Merge them.) (authored by neal).
campaign: One camp-headshot style is enough. (Merge them.)
May 16 2017, 12:48 PM
neal committed rDf0aa26d6c950: campaign: Use a %-value for border-radius. (authored by neal).
campaign: Use a %-value for border-radius.
May 16 2017, 12:03 PM
neal committed rD4fbd5f61fac2: campaign: Increase headshot height; use abs. size for border-radius. (authored by neal).
campaign: Increase headshot height; use abs. size for border-radius.
May 16 2017, 11:15 AM
neal committed rD990e9d617833: campaign: Avoid a possible break between a work and a comma. (authored by neal).
campaign: Avoid a possible break between a work and a comma.
May 16 2017, 11:13 AM
neal committed rDcb3c7115d866: campaign: Remove a few redundant words. (authored by neal).
campaign: Remove a few redundant words.
May 16 2017, 11:13 AM
neal committed rD3b74cd116d4a: campaign: Use a dedicated class to shape the headshots. (authored by neal).
campaign: Use a dedicated class to shape the headshots.
May 16 2017, 11:10 AM
neal committed rD607c764f7f1b: campaign: Replace guillotined head shots. (authored by neal).
campaign: Replace guillotined head shots.
May 16 2017, 10:49 AM

May 15 2017

neal committed rD5b0a8a990f8a: campaign: Change leading sentence. (authored by neal).
campaign: Change leading sentence.
May 15 2017, 3:27 PM
neal committed rD66bc857270cc: campaign: Minor improvements to text. (authored by neal).
campaign: Minor improvements to text.
May 15 2017, 3:24 PM
neal committed rDa3ca0af11df9: campaign: Add link in the navbar to the about section. (authored by neal).
campaign: Add link in the navbar to the about section.
May 15 2017, 3:10 PM
neal committed rD96c35eb954c3: campaign: Improve text. (authored by neal).
campaign: Improve text.
May 15 2017, 1:40 PM

May 12 2017

neal added a comment to T3036: Implement recurring donations.

And 5 euros quarterly to 60 euros yearly, etc.

May 12 2017, 1:46 PM

Apr 28 2017

neal committed rCAMP0a20c89d42c5: Add image of gnuk. (authored by neal).
Add image of gnuk.
Apr 28 2017, 10:44 PM
neal committed rCAMPd71068907864: Add more content, tweat layout. (authored by neal).
Add more content, tweat layout.
Apr 28 2017, 10:30 PM
neal committed rCAMP11a5c46f38dc: Fix overlap with video and donation buttons. (authored by neal).
Fix overlap with video and donation buttons.
Apr 28 2017, 2:31 PM

Apr 22 2017

neal committed rD8630a81c45b2: web: Add picture of neal. (authored by neal).
web: Add picture of neal.
Apr 22 2017, 10:58 PM
neal committed rCAMP85e19688fcf1: Replace --- with — (authored by neal).
Replace --- with —
Apr 22 2017, 12:42 PM
neal committed rCAMP3fe8a00e7ab3: Add the plea. (authored by neal).
Add the plea.
Apr 22 2017, 12:40 PM
neal committed rCAMPe668629ed533: Make testimonials their own section. (authored by neal).
Make testimonials their own section.
Apr 22 2017, 12:40 PM
neal committed rCAMP403c2805aa51: Tweak testimonials layout. (authored by neal).
Tweak testimonials layout.
Apr 22 2017, 12:27 PM
neal committed rCAMP028904688cc3: Use bootstrap styles of styling the quotations. (authored by neal).
Use bootstrap styles of styling the quotations.
Apr 22 2017, 11:57 AM
neal committed rCAMP99a6a8aa0f0a: Change testimonial code to use bootstrap's divs instead of html's tables (authored by neal).
Change testimonial code to use bootstrap's divs instead of html's tables
Apr 22 2017, 11:49 AM
neal committed rCAMP3d9f2f893289: Remove extraneous quotation marks. (authored by neal).
Remove extraneous quotation marks.
Apr 22 2017, 10:25 AM
neal committed rCAMP06f04f83f346: Attempt at implementing and filling in testimonial section. (authored by neal).
Attempt at implementing and filling in testimonial section.
Apr 22 2017, 1:22 AM

Apr 12 2017

neal added a comment to T3074: key management for security@gnupg.org.

There is a prototype implementation in the branch neal/encrypted-mailing-lists . A paper describing the design is at: ftp://ftp.gnupg.org/people/neal/openpgp-mailing-lists.pdf . The design was reviewed by Matt Green and DKG. DKG suggested using a slightly different OpenPGP construct (specfically, using user attribute packets instead of my encrypted subkey hack).

Apr 12 2017, 10:26 AM · g10code Sprint

Apr 6 2017

neal created T3066: wks should automatically refresh keys.
Apr 6 2017, 1:58 PM · gnupg

Mar 17 2017

neal closed T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument' as Resolved.
Mar 17 2017, 7:39 PM · Bug Report, gnupg
neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

I marking this as resolved since I think the issue is fixed. If this is not the
case, please reopen.

Mar 17 2017, 7:39 PM · Bug Report, gnupg
neal removed a project from T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument': Restricted Project.
Mar 17 2017, 7:39 PM · Bug Report, gnupg
neal removed a project from T2914: TOFU Conflict Status fd output broken: Restricted Project.
Mar 17 2017, 7:39 PM · rc, Bug Report, gnupg, TOFU
neal closed T2914: TOFU Conflict Status fd output broken as Resolved.
Mar 17 2017, 7:39 PM · rc, Bug Report, gnupg, TOFU
neal added a comment to T2914: TOFU Conflict Status fd output broken.

I'm marking this as resolved since I think is fixed. Please reopen if this is
not the case.

Mar 17 2017, 7:39 PM · rc, Bug Report, gnupg, TOFU
neal added a project to T2959: with --tofu-default-policy=ask, Assertion "conflict_set" in get_trust failed (../../g10/tofu.c:2787): Restricted Project.
Mar 17 2017, 2:49 PM · Restricted Project, Debian, Bug Report, gnupg
neal added a comment to T2959: with --tofu-default-policy=ask, Assertion "conflict_set" in get_trust failed (../../g10/tofu.c:2787).

This should be fixed in b1106b4 . The problem had to do with an incorrect
assumption that a key with policy 'ask' necessarily had at least one conflict.
This assumption may not hold if --tofu-default-policy is set to ask.
Thankfully, the assertion caught this.

Mar 17 2017, 2:49 PM · Restricted Project, Debian, Bug Report, gnupg

Mar 16 2017

neal added a comment to T2959: with --tofu-default-policy=ask, Assertion "conflict_set" in get_trust failed (../../g10/tofu.c:2787).

Thanks for reporting this. I can reproduce it and will hopefully have a good
fix soon.

Mar 16 2017, 8:56 AM · Restricted Project, Debian, Bug Report, gnupg

Mar 2 2017

neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

Glenn: I'm not exactly sure why your scenario exposed this issue. I suspect
that it has something to do with you have never used this key for encryption
prior to the verification, but it would require more investigation to confirm.

Mar 2 2017, 8:32 PM · Bug Report, gnupg

Feb 13 2017

neal added a comment to T2950: Unable to set expiry when using --faked-system-time.

Unfortunately, it is also used in the test suite to deal with expiration times.

Feb 13 2017, 3:50 PM · gnupg, Bug Report

Feb 8 2017

neal renamed T2950: Unable to set expiry when using --faked-system-time from Unable to set expiry to Unable to set expiry when using --faked-system-time.
Feb 8 2017, 10:59 AM · gnupg, Bug Report
neal placed T2950: Unable to set expiry when using --faked-system-time up for grabs.
Feb 8 2017, 10:58 AM · gnupg, Bug Report
neal updated subscribers of T2950: Unable to set expiry when using --faked-system-time.
Feb 8 2017, 10:57 AM · gnupg, Bug Report
neal added a project to T2950: Unable to set expiry when using --faked-system-time: Bug Report.
Feb 8 2017, 10:57 AM · gnupg, Bug Report

Feb 2 2017

neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

This should be fixed by 407f5f9baea5591f148974240a87dfb43e5efef3 .

Thanks for reporting this!

Feb 2 2017, 4:03 PM · Bug Report, gnupg
neal added a project to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument': Restricted Project.
Feb 2 2017, 4:03 PM · Bug Report, gnupg
neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

Feb 2 2017, 3:36 PM · Bug Report, gnupg
neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

According to SUSv3:

If the subject sequence is empty or does not have the expected form, no

conversion is performed

...
If no conversion could be performed, 0 is returned  and errno may be set to

[EINVAL].

  http://pubs.opengroup.org/onlinepubs/007908799/xsh/strtol.html

It appears that MacOS X sets errno to EINVAL, but glibc doesn't.
(The attached program should expose the behavior; I haven't run it yet on Max OS
X, but I'd be interested in the result.)

Feb 2 2017, 3:36 PM · Bug Report, gnupg
neal added a project to T2929: tofu: Missing entry in the bindings table for new key: Restricted Project.
Feb 2 2017, 2:25 PM · Bug Report, gnupg, gnupg (gpg22)
neal added a comment to T2929: tofu: Missing entry in the bindings table for new key.

The underlying problem is that bindings for ultimately trusted keys were not
registered with the TOFU data.

Fixed in 769272ba87f282a69e8d5f9bb27c86e6bec4496b

Feb 2 2017, 2:25 PM · Bug Report, gnupg, gnupg (gpg22)
neal added a comment to T2914: TOFU Conflict Status fd output broken.

This should be fixed in 027b81b35fe36692005b8dba22d9eb2db05e8c80.

Feb 2 2017, 1:31 PM · rc, Bug Report, gnupg, TOFU
neal added a project to T2914: TOFU Conflict Status fd output broken: Restricted Project.
Feb 2 2017, 1:31 PM · rc, Bug Report, gnupg, TOFU

Jan 30 2017

neal added a comment to T2914: TOFU Conflict Status fd output broken.

To be clear the initial output is not wrong. At the time the information is
initially requested, the message has not yet been processed.

Anyway, I think I'm working on a fix so this is a non-issue.

Jan 30 2017, 2:27 PM · rc, Bug Report, gnupg, TOFU

Jan 14 2017

neal added a comment to T2914: TOFU Conflict Status fd output broken.

It's true that the user is listed 4 times, but this is because tofu.c:get_trust
is called four times. For instance, the first time it is called to show the
"gpg: Good signature from "tofu_conflict@example.com" [marginal]" line, and the
second time is it called to register the signature (tofu_register_signature).
This also explains why the signature count increases between the first and
second versions.

Note that each of these outputs is preceded by a KEY_CONSIDERED lined (for the
same key). Since the TOFU conflict information is per key, I'd expect an
implementation to say: Oh, there is already some conflict information for key X.
This must be a more up to date version, so I'll delete that first instead of
appending to it. Is this an unreasonable expectation?

It should be possible to change the behavior to only output the TOFU_STATS lines
if a TOFU_STATS_LONG line is also output (but I need to think about it some
more). Would this be better?

Jan 14 2017, 11:31 PM · rc, Bug Report, gnupg, TOFU

Jan 6 2017

neal added projects to T2915: Key import on a machine with date moved back: gnupg, Bug Report.
Jan 6 2017, 9:25 PM · Bug Report, gnupg
neal updated subscribers of T2915: Key import on a machine with date moved back.
Jan 6 2017, 9:25 PM · Bug Report, gnupg
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-December/032262.html on T2915: Key import on a machine with date moved back.
Jan 6 2017, 9:25 PM · Bug Report, gnupg
neal added a comment to T2912: command line keytocard.

Also see: https://github.com/mabels/gnupg/tree/quick-keytocard

Jan 6 2017, 5:15 PM · gnupg (gpg23), Feature Request
neal added a project to T2236: Importing a key with badly ordered packets doesn't reorder it, and while --edit-key does reorder it doesn't move the signature packets to the right place: gnupg (gpg22).
Jan 6 2017, 3:57 PM · gnupg (gpg22), Bug Report
neal added projects to T2913: python: default op_keylist_start parameters.: Bug Report, gpgme.
Jan 6 2017, 3:39 PM · gpgme, Bug Report
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-December/032272.html on T2913: python: default op_keylist_start parameters..
Jan 6 2017, 3:39 PM · gpgme, Bug Report
neal updated subscribers of T2913: python: default op_keylist_start parameters..
Jan 6 2017, 3:39 PM · gpgme, Bug Report
neal added projects to T2912: command line keytocard: Feature Request, gnupg.
Jan 6 2017, 3:33 PM · gnupg (gpg23), Feature Request
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-December/032253.html on T2912: command line keytocard.
Jan 6 2017, 3:33 PM · gnupg (gpg23), Feature Request
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-November/032235.html on T2911: Key creation problem with 2.1.16 (passphrase param).
Jan 6 2017, 3:25 PM · Bug Report, gnupg
neal added projects to T2911: Key creation problem with 2.1.16 (passphrase param): gnupg, Bug Report.
Jan 6 2017, 3:25 PM · Bug Report, gnupg
neal set Version to 1.8.0 on T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.
Jan 6 2017, 3:01 PM · MacOS, gpgme, Bug Report
neal added projects to T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra: Bug Report, gpgme.
Jan 6 2017, 3:01 PM · MacOS, gpgme, Bug Report
neal updated subscribers of T2910: gpgme 1.8 build failure: strdup undeclared on MacOSX Sierra.
Jan 6 2017, 3:01 PM · MacOS, gpgme, Bug Report
neal set Version to 2.1.15 on T2909: GnuPG 2.1.15 - delete-secret-keys seems not to accept loopback pinentry.
Jan 6 2017, 2:59 PM · Bug Report, gnupg
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-November/032168.html on T2909: GnuPG 2.1.15 - delete-secret-keys seems not to accept loopback pinentry.
Jan 6 2017, 2:59 PM · Bug Report, gnupg
neal added projects to T2909: GnuPG 2.1.15 - delete-secret-keys seems not to accept loopback pinentry: gnupg, Bug Report.
Jan 6 2017, 2:59 PM · Bug Report, gnupg
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-November/032138.html on T2908: dirmngr can't be build w/o LDAP.
Jan 6 2017, 2:35 PM · dirmngr, gnupg (gpg22), Bug Report, gnupg
neal updated subscribers of T2908: dirmngr can't be build w/o LDAP.
Jan 6 2017, 2:35 PM · dirmngr, gnupg (gpg22), Bug Report, gnupg
neal added projects to T2908: dirmngr can't be build w/o LDAP: gnupg, Bug Report.
Jan 6 2017, 2:35 PM · dirmngr, gnupg (gpg22), Bug Report, gnupg
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-October/031960.html on T2907: make DNS look ups more parallel.
Jan 6 2017, 1:02 PM · Feature Request, gnupg
neal added projects to T2907: make DNS look ups more parallel: gnupg, Bug Report.
Jan 6 2017, 1:02 PM · Feature Request, gnupg
neal updated subscribers of T2907: make DNS look ups more parallel.
Jan 6 2017, 1:02 PM · gnupg, Feature Request
neal updated subscribers of T2906: read/parse pubkeys in gpgme without importing.
Jan 6 2017, 12:45 PM · Duplicate, gpgme, Feature Request
neal added projects to T2906: read/parse pubkeys in gpgme without importing: Feature Request, gpgme.
Jan 6 2017, 12:45 PM · Duplicate, gpgme, Feature Request
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-October/031918.html on T2906: read/parse pubkeys in gpgme without importing.
Jan 6 2017, 12:45 PM · Duplicate, gpgme, Feature Request
neal set External Link to https://lists.gnupg.org/pipermail/gnupg-devel/2016-October/031807.html on T2905: EFL-based pinentry.
Jan 6 2017, 12:26 PM · pinentry, Feature Request
neal added projects to T2905: EFL-based pinentry: Feature Request, pinentry.
Jan 6 2017, 12:26 PM · pinentry, Feature Request
neal updated subscribers of T2905: EFL-based pinentry.
Jan 6 2017, 12:26 PM · pinentry, Feature Request

Dec 21 2016

neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

FWIW, I doubt that 2.1.17 fixes the issue. But, I've improved the debugging
out, so if you would try to reproduce the problem, it would still be useful.
Thanks!

Dec 21 2016, 8:30 PM · Bug Report, gnupg

Dec 9 2016

neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

Thanks for the feedback! Can you please compile gpg with debugging symbols, add
a break point on log_debug in string_to_ulong (in g10/tofu.c), and then do 'run
--verify ts.txt'. When you hit the breakpoint, please do a 'bt full', print out
the value of "string" and "tail" (using gdb's 'p' command), and repeat (continue
execution using 'c').

Thanks!

Dec 9 2016, 10:24 AM · Bug Report, gnupg

Dec 6 2016

neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

Thanks! I tried reproducing this issue with your tofu.db (using HEAD), but I
didn't see the warning:

$ gpg --verify /tmp/TrueTimeStamp-certificate-4793.txt
gpg: Signature made Thu 24 Nov 2016 08:08:29 AM CET
gpg: using DSA key 6F3B2E6AB748A8F8
gpg: Good signature from "TrueTimeStamp <signing-department@TrueTimeStamp.org>"
[marginal]
gpg: signing-department@truetimestamp.org: Verified 2 signatures in the past

12 days.  Encrypted 0 messages.

gpg: Warning: you have yet to encrypt a message to this key!
gpg: Warning: if you think you've seen more signatures by this key and user

id, then this key might be a forgery!  Carefully examine the email address
for small variations.  If the key is suspect, then use
  gpg --tofu-policy bad 83289060F40DED088CF246B56F3B2E6AB748A8F8
to mark it as being bad.

gpg: WARNING: This key is not certified with sufficiently trusted signatures!
gpg: It is not certain that the signature belongs to the owner.
Primary key fingerprint: 8328 9060 F40D ED08 8CF2 46B5 6F3B 2E6A B748 A8F8

Most likely, this is because when you verifies the message, the error was fixed.
Can you confirm this for me by trying to reproduce the error with your current
tofu.db? If there is no error, could you send me a copy of the tofu.db from
before the initial verification?

Thanks!

Dec 6 2016, 1:20 PM · Bug Report, gnupg

Dec 2 2016

neal added a comment to T2812: TOFU very slow on Windows.

In general, parallel operations aren't great, but I find that such bad
performance surprising.

If you update a key, only that key's effective policy is rechecked, not all
keys. But, the effective policy of conflicting keys is always rechecked.

Dec 2 2016, 11:22 AM · Stalled, Bug Report, gnupg, Windows 32, Windows, TOFU
neal added a comment to T2859: TOFU not affected by Key deletion.

No need to apologize for the dup; I was just noting it here for the record.

I think that your assumption is that the local keyring is somehow trusted. In
that case, I think it make sense that deleted keys would clear conflicts.

I'm curious when you think people delete keys. My intuition is that it is not a
very common pattern. Do you have any thoughts on this?

I encourage you to first try and find a consensus before implementing a
different policy at the higher level.

Dec 2 2016, 10:29 AM · Stalled, Bug Report, gnupg
neal added a comment to T2853: Signature Verification returning 'gpg: DBG: tofu.c:2772: strtoul failed for DB returned string (tail=): Invalid argument'.

Thanks for reporting this! Unfortunately, I'm not able to reproduce this. I
hope you can help me figure out what is wrong. Would you be willing to share
your tofu.db with me? Feel free to send it to me directly
(8F17777118A33DDA9BA48E62AACB3243630052D9); it contains some privacy sensitive
information (namely, who you communicate with).

Thanks!

Dec 2 2016, 9:53 AM · Bug Report, gnupg
neal added a comment to T2742: tofu confused when keys are deleted from keyring.

This issue has also been reported in https://bugs.gnupg.org/gnupg/Issue2859

Werner replied there and I agree with his conclusion.

Dec 2 2016, 9:40 AM · Duplicate, TOFU, Bug Report, gnupg
neal added a comment to T2859: TOFU not affected by Key deletion.

Note: this is a dup of T2742

I tend to agree with Werner: if we discover a conflict, it needs to be resolved
and deleting a key is not a sufficient resolution.

Dec 2 2016, 9:39 AM · Stalled, Bug Report, gnupg

Nov 30 2016

neal added a project to T2817: TOFU validity conflict not set on conflict: Restricted Project.
Nov 30 2016, 11:44 AM · Restricted Project, Bug Report, gnupg, TOFU
neal added a comment to T2817: TOFU validity conflict not set on conflict.

This should be fixed in: 2f27cb12e30c9f6e780354eecc3ff0039ed52c63 .

Nov 30 2016, 11:44 AM · Restricted Project, Bug Report, gnupg, TOFU

Nov 23 2016

neal updated subscribers of T2850: auto-key-locate is annoying.
Nov 23 2016, 3:25 PM · gnupg (gpg23), gnupg, Feature Request
neal added projects to T2850: auto-key-locate is annoying: Feature Request, gnupg.
Nov 23 2016, 3:25 PM · gnupg (gpg23), gnupg, Feature Request