Page MenuHome GnuPG
Feed All Stories

Jan 4 2022

gniibe added a comment to T5747: Provide a way to request non-FIPS service in FIPS mode.

The "at first" change done.

Jan 4 2022, 6:40 AM · Feature Request, FIPS, libgcrypt
gniibe committed rC034e4402dade: fips: Use flags.fips to check algo availability. (authored by gniibe).
fips: Use flags.fips to check algo availability.
Jan 4 2022, 6:13 AM
gniibe committed rCf9ba07942b10: cipher: Use const for *_spec_t, if possible. (authored by gniibe).
cipher: Use const for *_spec_t, if possible.
Jan 4 2022, 6:13 AM
gniibe committed rCc49ff1f46436: doc: Fix previous commit. (authored by gniibe).
doc: Fix previous commit.
Jan 4 2022, 6:13 AM
gniibe added a comment to T5747: Provide a way to request non-FIPS service in FIPS mode.

At first, I think that we need to change the way how libgcrypt rejects non-approved cipher/md/mac/pk.

Jan 4 2022, 3:30 AM · Feature Request, FIPS, libgcrypt
gniibe committed rC11ef7b50a708: doc: Update doc/gcrypt.texi for random/. (authored by gniibe).
doc: Update doc/gcrypt.texi for random/.
Jan 4 2022, 2:45 AM
gniibe added a project to T5752: libgcrypt: Adding aes-wrap-pad (RFC5649) support: Restricted Project.
Jan 4 2022, 12:56 AM · Feature Request, libgcrypt

Jan 3 2022

Heiko Becker <heiko.becker@kde.org> committed rKLEOPATRA66228e66f25b: GIT_SILENT Update Appstream for new release (authored by Heiko Becker <heiko.becker@kde.org>).
GIT_SILENT Update Appstream for new release
Jan 3 2022, 11:00 PM
Heiko Becker <heiko.becker@kde.org> committed rKLEOPATRA794e96e3d761: GIT_SILENT Update Appstream for new release (authored by Heiko Becker <heiko.becker@kde.org>).
GIT_SILENT Update Appstream for new release
Jan 3 2022, 11:00 PM
Heiko Becker <heiko.becker@kde.org> committed rKLEOPATRA8b2ff3f387f1: GIT_SILENT Upgrade release service version to 21.12.1. (authored by Heiko Becker <heiko.becker@kde.org>).
GIT_SILENT Upgrade release service version to 21.12.1.
Jan 3 2022, 11:00 PM
ikloecker moved T5334: Kleopatra: Add more support for WKS / WKD from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jan 3 2022, 4:41 PM · kleopatra, Restricted Project
secarica updated the task description for T5753: Romanian translation for GPA.
Jan 3 2022, 2:20 PM · gpa
secarica updated the task description for T5753: Romanian translation for GPA.
Jan 3 2022, 2:18 PM · gpa
werner committed rG4d52ba943127: doc: Fix the title of the man pages to GnuPG 2.3 (authored by werner).
doc: Fix the title of the man pages to GnuPG 2.3
Jan 3 2022, 12:21 PM
werner committed rGe83692317573: po: Fix German translation (authored by werner).
po: Fix German translation
Jan 3 2022, 12:21 PM
werner committed rGec311425cacb: doc: Typo fixes. (authored by werner).
doc: Typo fixes.
Jan 3 2022, 12:21 PM
ikloecker moved T5755: Kleopatra: Export secret subkeys from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Jan 3 2022, 12:00 PM · Restricted Project, Feature Request, kleopatra
ikloecker added a project to T5755: Kleopatra: Export secret subkeys: Restricted Project.
Jan 3 2022, 11:59 AM · Restricted Project, Feature Request, kleopatra
ikloecker renamed T5754: gpgtar needs to support longer filenames. from gpgtar needs to support lonerg filenames. to gpgtar needs to support longer filenames..
Jan 3 2022, 11:32 AM · gnupg (gpg22), gpgtar
aheinecke triaged T5755: Kleopatra: Export secret subkeys as Normal priority.
Jan 3 2022, 10:26 AM · Restricted Project, Feature Request, kleopatra
werner created T5754: gpgtar needs to support longer filenames..
Jan 3 2022, 10:25 AM · gnupg (gpg22), gpgtar
werner closed T5226: gpgtar: Windows decrypting a gpgtar archive with 8bit filename leads to wrong name as Resolved.

We have full Unicode support on the command line since 2.2.28 (2021-06-10)

Jan 3 2022, 10:23 AM · gpgtar
werner committed rWbd8757e83af5: appimage: Use env(1) to start with parameters. (authored by werner).
appimage: Use env(1) to start with parameters.
Jan 3 2022, 10:15 AM
werner committed rDa2504c94dccf: blog: s/Greenbone/GreenShield/ (authored by werner).
blog: s/Greenbone/GreenShield/
Jan 3 2022, 9:19 AM
gniibe committed rC2914f169f954: cipher: Add support of Key wrap with padding (KWP). (authored by gniibe).
cipher: Add support of Key wrap with padding (KWP).
Jan 3 2022, 7:41 AM
secarica updated the task description for T5753: Romanian translation for GPA.
Jan 3 2022, 5:20 AM · gpa
secarica triaged T5753: Romanian translation for GPA as Normal priority.
Jan 3 2022, 5:18 AM · gpa

Jan 2 2022

werner committed rDda5b32d886fc: blog: A new Future for GnuPG (authored by werner).
blog: A new Future for GnuPG
Jan 2 2022, 8:23 PM
l10n daemon script <scripty@kde.org> committed rKLEOPATRAafc026fff792: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Jan 2 2022, 1:48 AM

Jan 1 2022

Laurent Montel <montel@kde.org> committed rKLEOPATRAdd82d7fe7f97: GIT_SILENT: happy new year (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: happy new year
Jan 1 2022, 4:43 PM

Dec 31 2021

craftbyte added a reviewer for D547: Fixed reader-port infinite loop: gniibe.

Please review these changes

Dec 31 2021, 1:40 AM
craftbyte requested review of D547: Fixed reader-port infinite loop.
Dec 31 2021, 1:39 AM

Dec 30 2021

werner changed the status of T5732: Backport option reading in gpgconf to 2.2 from Open to Testing.

Backport done but diligent testing is required.

Dec 30 2021, 10:51 AM · Restricted Project, Bug Report, kleopatra, backport, gnupg (gpg22)
werner committed rGc4153f7021af: build: Fixes recent commits to still build with gpgrt 1.27. (authored by werner).
build: Fixes recent commits to still build with gpgrt 1.27.
Dec 30 2021, 10:48 AM
werner committed rGc69c51bce0f0: gpgconf: Do not list ignored options and mark forced options as r/o. (authored by werner).
gpgconf: Do not list ignored options and mark forced options as r/o.
Dec 30 2021, 10:29 AM
werner committed rG42785d7c8a52: gpgconf: Do not list ignored options and mark forced options as r/o. (authored by werner).
gpgconf: Do not list ignored options and mark forced options as r/o.
Dec 30 2021, 10:29 AM
werner committed rGbf284fdf22f4: dirmngr: Re-group the options in the --help output. (authored by werner).
dirmngr: Re-group the options in the --help output.
Dec 30 2021, 10:29 AM
werner committed rG5fb71a8e039c: gpgsm: Re-group the options in the --help output. (authored by werner).
gpgsm: Re-group the options in the --help output.
Dec 30 2021, 10:28 AM
werner committed rGf7bde071ccc8: gpg: Re-group the options in the --help output. (authored by werner).
gpg: Re-group the options in the --help output.
Dec 30 2021, 10:28 AM
werner committed rG7f9791e16789: scd: Re-group the options in the --help output. (authored by werner).
scd: Re-group the options in the --help output.
Dec 30 2021, 10:28 AM
werner committed rG593402711523: gpgconf: Take care of --homedir when reading/updating options. (authored by werner).
gpgconf: Take care of --homedir when reading/updating options.
Dec 30 2021, 10:28 AM
werner committed rG7e535503a9c6: agent: Re-group the options in the --help output. (authored by werner).
agent: Re-group the options in the --help output.
Dec 30 2021, 10:28 AM
werner committed rGf0d034ebf4fc: common: New function xreallocarray (authored by werner).
common: New function xreallocarray
Dec 30 2021, 10:28 AM
werner committed rG7a3a1ef37071: gpgconf: Rewrite the gpgconf-comp module. (authored by werner).
gpgconf: Rewrite the gpgconf-comp module.
Dec 30 2021, 10:28 AM
werner committed rG7397872445d6: gpgconf: Support reading global options (part 1). (authored by werner).
gpgconf: Support reading global options (part 1).
Dec 30 2021, 10:28 AM
werner committed rG5f890f417f13: gpgconf: Support reading global options (part 2). (authored by werner).
gpgconf: Support reading global options (part 2).
Dec 30 2021, 10:28 AM

Dec 28 2021

fedders added a comment to T5237: GPGOL loaded but doesn't open Mails in Outlook 2016.

Unfortunately same story for GpgOL v42.5.1. Tried disabling all non-Microsoft plugins, however to no avail. Signed and encrypted messages are shown as blank, whereas I can see the content of the signed e-mails in the Outlook web client and on my iOS device.

Dec 28 2021, 4:30 PM · gpg4win, gpgol

Dec 24 2021

bnavigator added a comment to D546: build: Find correct version string for Python >= 3.10.

The new revision uses the python.m4 version from automake 1.16.5 and keeps Werner's modifications with the 4th parameter.
See also https://dev.gnupg.org/T3354 and https://dev.gnupg.org/rMff6ff616aea6f59b7f2ce1176492850ecdf3851e

Dec 24 2021, 2:14 PM · Python, Feature Request, gpgme
bnavigator updated the diff for D546: build: Find correct version string for Python >= 3.10.
Dec 24 2021, 2:06 PM · Python, Feature Request, gpgme
bnavigator added a comment to D546: build: Find correct version string for Python >= 3.10.

I am not sure if you assumption about the intention is correct. After all, the openSUSE rpm build does use it for creating binding packages for all available python3 versions. If you remove the functionality to find all available versions ("flavors" in the openSUSE rpm packager lingo), the RPM build would need to introduce separate calls of configure and make.

Dec 24 2021, 12:12 PM · Python, Feature Request, gpgme
gniibe added a project to T5752: libgcrypt: Adding aes-wrap-pad (RFC5649) support: libgcrypt.
Dec 24 2021, 9:20 AM · Feature Request, libgcrypt
gniibe triaged T5752: libgcrypt: Adding aes-wrap-pad (RFC5649) support as Wishlist priority.
Dec 24 2021, 9:20 AM · Feature Request, libgcrypt
gniibe added a comment to D546: build: Find correct version string for Python >= 3.10.

Thank you for submitting the patch.

Dec 24 2021, 2:24 AM · Python, Feature Request, gpgme

Dec 23 2021

ilya_indigo added a comment to T5444: "gpg: key generation failed: Unknown elliptic curve" from "Key-Type: default".

https://bugs.kde.org/show_bug.cgi?id=447326
This problem also appears for trojita.

Dec 23 2021, 10:17 PM · gnupg24, gnupg (gpg23)
werner closed T5744: Issue with connecting to GPG server as Resolved.

The debug log was from gpg and not from dirmngr and thus it is not helpful. I also guess that an older dirmngr was still running, because the LE bug has been fixed in 2.3.4.

Dec 23 2021, 5:31 PM · Bug Report, gpg4win
bnavigator added a comment to D546: build: Find correct version string for Python >= 3.10.

Format sys.version_info[:2] instead of cutting it from sys.version[:3]
as Python versions >= 3.10 have more than 3 characters for their version
string. Bump minimum Python version to 2.1 because the new
ax_python_devel specifies this.

Dec 23 2021, 5:01 PM · Python, Feature Request, gpgme
bnavigator updated the summary of D546: build: Find correct version string for Python >= 3.10.
Dec 23 2021, 4:55 PM · Python, Feature Request, gpgme
bnavigator updated the summary of D546: build: Find correct version string for Python >= 3.10.
Dec 23 2021, 4:54 PM · Python, Feature Request, gpgme
bnavigator updated the summary of D546: build: Find correct version string for Python >= 3.10.
Dec 23 2021, 4:54 PM · Python, Feature Request, gpgme
bnavigator requested review of D546: build: Find correct version string for Python >= 3.10.
Dec 23 2021, 4:47 PM · Python, Feature Request, gpgme
bnavigator requested review of D545: build: Python without distutils.
Dec 23 2021, 4:45 PM
vsajip added a comment to T5742: Apparent regressions between 2.2.32 and 2.2.33 of GnuPG.

Will go into 2.3.4.

Dec 23 2021, 12:13 PM · Restricted Project, Bug Report, gnupg (gpg23)
ikloecker closed T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches as Resolved.
Dec 23 2021, 11:38 AM · Restricted Project, kleopatra, Bug Report
ikloecker added a comment to T5744: Issue with connecting to GPG server.

And --keyserver-options check-cert is removed from new gpg versions (((

Dec 23 2021, 11:36 AM · Bug Report, gpg4win
alexnadtoka added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@ikloecker yes sorry ok

Dec 23 2021, 11:35 AM · gnupg (gpg22), dirmngr
alexnadtoka updated subscribers of T5639: dirmngr uses the wrong Let's encrypt chain.

@bernard Right sorry. I have sent request to mailing lists

Dec 23 2021, 11:34 AM · gnupg (gpg22), dirmngr
ikloecker added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@alexnadtoka, please stop adding the same information to two different issues. Let's use T5744: Issue with connecting to GPG server for any further comments.

Dec 23 2021, 11:32 AM · gnupg (gpg22), dirmngr
ikloecker committed rKLEOPATRA46e169403327: Notify user if keyservers return results without fingerprints (authored by ikloecker).
Notify user if keyservers return results without fingerprints
Dec 23 2021, 11:25 AM
ikloecker committed rKLEOPATRAce5936a06116: Create UI of Lookup Certificates dialog in code (authored by ikloecker).
Create UI of Lookup Certificates dialog in code
Dec 23 2021, 11:25 AM
ikloecker committed rKLEOPATRAcea56e0146a1: Explicitly ignore keys without user IDs and notify the user (authored by ikloecker).
Explicitly ignore keys without user IDs and notify the user
Dec 23 2021, 11:25 AM
bernhard added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@alexnadtoka wrote:

both versions had issues(( and send two requests to RU and EN comunity . No answer for two days already

Dec 23 2021, 11:06 AM · gnupg (gpg22), dirmngr
alexnadtoka added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@bernhard yeah thank you. both versions had issues(( and send two requests to RU and EN comunity . No answer for two days already
The log clearlys says certificate is expired(( but it is not at least for keyserver... May be it is reffering to gpg key... I dont know... but it is not expired either. Probably I am missing something. Will try to contact community again.

Dec 23 2021, 10:41 AM · gnupg (gpg22), dirmngr
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

Here is log in english

Dec 23 2021, 10:28 AM · Bug Report, gpg4win
bernhard added a comment to T5639: dirmngr uses the wrong Let's encrypt chain.

@alexnadtoka When using Gpg4win-4.0.0 or 3.3.16 with an updated GnuPG the validation of dirmngr works fine with the Let's encrypt certificates again. If you have one of these versions, and you still have problems, you need to be more specific about which connection you are referring to.
Maybe it is best to ask on one of community channels (e.g. the gnupg-users mailinglist, see https://gnupg.org/documentation/mailing-lists.html )

Dec 23 2021, 10:05 AM · gnupg (gpg22), dirmngr
werner committed rD7104abaf6f91: faq: Fix a link (authored by werner).
faq: Fix a link
Dec 23 2021, 9:44 AM
werner triaged T5749: Ed25519: Signature (R,S), where S=0 is possible for EdDSA as Low priority.

The odds for this case are infinitesimal so this should not have high priority. I consider this only a code-is-as-specified thing.

Dec 23 2021, 8:50 AM · gnupg
Laurent Montel <montel@kde.org> committed rKLEOPATRAe226b9208399: GIT_SILENT: it's enabled by default too in qt6 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: it's enabled by default too in qt6
Dec 23 2021, 8:13 AM
andrewgdotcom added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

Do you have a ballpark figure for the install base (not including variants such as debian with modified defaults)? That might help us decide what counts as "overloading".

Dec 23 2021, 1:29 AM · dirmngr, Keyserver
gniibe lowered the priority of T5748: Adding poll/ppoll to NPTH from High to Normal.
Dec 23 2021, 1:22 AM · npth, Feature Request

Dec 22 2021

werner added a comment to T5751: Please remove pgp.surf.nl from default dirmngr config.

The problem is just that there are not that much keyservers left and thus I added those running by large organisations. I really don't want to overload your servers. I would also trust nlnet more than canoncial which is why I started with them.
Its all a mess. Maybe no keyserver should be the default.

Dec 22 2021, 7:54 PM · dirmngr, Keyserver
bernhard committed rW828a43ba50c0: Improve next-steps (authored by bernhard).
Improve next-steps
Dec 22 2021, 7:08 PM
andrewgdotcom created T5751: Please remove pgp.surf.nl from default dirmngr config.
Dec 22 2021, 6:47 PM · dirmngr, Keyserver
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

And --keyserver-options check-cert is removed from new gpg versions (((

Dec 22 2021, 5:11 PM · Bug Report, gpg4win
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.
Dec 22 2021, 4:48 PM · Bug Report, gpg4win
alexnadtoka reopened T5744: Issue with connecting to GPG server as "Open".
Dec 22 2021, 4:10 PM · Bug Report, gpg4win
alexnadtoka added a comment to T5744: Issue with connecting to GPG server.

@werner can you show me tutorial for proper bug submit? I think it is a bug and gpg client on Windows does not support valid LetsEncrypt certificates on keyserver. It does not work with any keys server . Tested few public keyservers as well. ((

Dec 22 2021, 4:09 PM · Bug Report, gpg4win
ikloecker changed the status of T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase from Open to Testing.

(q)gpgme now tries to detect a failed import caused by a bad passphrase and emits a bad passphrase error in this case. Kleopatra then shows a "Bad passphrase" error instead of an "Invalid object" error.

Dec 22 2021, 3:42 PM · Restricted Project, kleopatra
ikloecker added a comment to T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.

We decided to notify the user if the keyserver doesn't return fingerprints. The fingerprints are needed by Kleopatra as unique identifier for keys. Trying to make key lookup work without fingerprints isn't useful.

Dec 22 2021, 3:34 PM · Restricted Project, kleopatra, Bug Report
ikloecker committed rKLEOPATRAf95f92e5b7f1: Do not treat canceled imports as failed (authored by ikloecker).
Do not treat canceled imports as failed
Dec 22 2021, 3:30 PM
ikloecker committed rM300776f39165: cpp: Check fpr of import status for NULL (authored by ikloecker).
cpp: Check fpr of import status for NULL
Dec 22 2021, 3:29 PM
ikloecker committed rMf99451e20fd2: qt,tests: Add test runner for testing the import job (authored by ikloecker).
qt,tests: Add test runner for testing the import job
Dec 22 2021, 3:29 PM
ikloecker committed rM305d8668ca72: core: Detect bad passphrase error on certificate import (authored by ikloecker).
core: Detect bad passphrase error on certificate import
Dec 22 2021, 3:29 PM
ikloecker committed rM82f43455e941: qt: Detect an import error caused by a wrong password (authored by ikloecker).
qt: Detect an import error caused by a wrong password
Dec 22 2021, 3:29 PM
werner added a project to T5750: GpgOL links to an FSF page for "Unsicher GpgOL": Restricted Project.
Dec 22 2021, 1:42 PM · Restricted Project, Feature Request, gpgol
werner triaged T5750: GpgOL links to an FSF page for "Unsicher GpgOL" as High priority.
Dec 22 2021, 1:42 PM · Restricted Project, Feature Request, gpgol
gniibe updated the task description for T5749: Ed25519: Signature (R,S), where S=0 is possible for EdDSA.
Dec 22 2021, 12:11 PM · gnupg
gniibe created T5749: Ed25519: Signature (R,S), where S=0 is possible for EdDSA.
Dec 22 2021, 12:10 PM · gnupg
werner closed T5744: Issue with connecting to GPG server as Resolved.

Please see https://gnupg.org

Dec 22 2021, 7:26 AM · Bug Report, gpg4win
gniibe committed rPac338b99fd63: build: Fix configure.ac for newer autoconf/automake. (authored by gniibe).
build: Fix configure.ac for newer autoconf/automake.
Dec 22 2021, 5:42 AM
gniibe committed rG85db1b1a3b16: build: Remove unused old m4 files. (authored by gniibe).
build: Remove unused old m4 files.
Dec 22 2021, 5:32 AM