Page MenuHome GnuPG
Feed All Stories

Dec 7 2021

werner added a project to T5724: gpgconf --show-configs does not show the registry values : Windows.
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
werner claimed T5724: gpgconf --show-configs does not show the registry values .
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
werner triaged T5724: gpgconf --show-configs does not show the registry values as Normal priority.
Dec 7 2021, 12:36 PM · Windows, gnupg (gpg22), Bug Report
ikloecker closed T5722: GpgME::Context::engineInfo() always returns engine info of first engine as Resolved.
Dec 7 2021, 12:15 PM · Restricted Project, gpgme, Bug Report
Jakuje renamed T5720: The libgpg-error is using old inet_addr() unconditionally from The libgpg-error is using old inet_pton() unconditionally to The libgpg-error is using old inet_addr() unconditionally.
Dec 7 2021, 12:12 PM · gpgrt, Bug Report
ikloecker committed rM1a1e9145877a: cpp: Factor out common code of GpgME::engineInfo() overloads (authored by ikloecker).
cpp: Factor out common code of GpgME::engineInfo() overloads
Dec 7 2021, 12:05 PM
ikloecker committed rM0eddc867c31d: cpp: Return engine info for engine used by the context (authored by ikloecker).
cpp: Return engine info for engine used by the context
Dec 7 2021, 12:05 PM
werner set Due Date to Jan 17 2022, 12:00 AM on T5691: Release libgcrypt 1.10.0.
Dec 7 2021, 11:17 AM · FIPS, Release Info, libgcrypt
gniibe moved T5723: libgcrypt: Remove random-fips.c from Backlog to Next on the FIPS board.
Dec 7 2021, 11:15 AM · FIPS, libgcrypt
gniibe triaged T5723: libgcrypt: Remove random-fips.c as Normal priority.
Dec 7 2021, 11:15 AM · FIPS, libgcrypt
gniibe moved T5710: FIPS: disable DSA for FIPS from Backlog to Next on the FIPS board.
Dec 7 2021, 11:13 AM · FIPS, libgcrypt
ikloecker claimed T5722: GpgME::Context::engineInfo() always returns engine info of first engine.
Dec 7 2021, 11:00 AM · Restricted Project, gpgme, Bug Report
ikloecker created T5722: GpgME::Context::engineInfo() always returns engine info of first engine.
Dec 7 2021, 11:00 AM · Restricted Project, gpgme, Bug Report
aheinecke committed rWbabeaddd496e: Bump LTS version to 3.1.21 (authored by aheinecke).
Bump LTS version to 3.1.21
Dec 7 2021, 10:27 AM
aheinecke committed rWef2a45a9dd72: Minor spelling fix in l10n (authored by aheinecke).
Minor spelling fix in l10n
Dec 7 2021, 10:27 AM
ikloecker added a comment to T5718: Provide list of supported/compliant key algorithms.

Hmm,

$ gpg --with-colons --list-config curve
cfg:curve:cv25519;ed25519;cv448;ed448;nistp256;nistp384;nistp521;brainpoolP256r1;brainpoolP384r1;brainpoolP512r1;secp256k1

How would Kleopatra know that cv* is for encryption, ed* is for signing, and all other curves are for both uses? Or are the cv/ed prefixes a (de facto) standard?

Dec 7 2021, 9:37 AM · gnupg24, gnupg (gpg23), Feature Request
gniibe committed rC05472c1882df: build: cipher/Makefile.am, doc/Makefile.am: add a missing space (authored by Alexander Kanavin <alex.kanavin@gmail.com>).
build: cipher/Makefile.am, doc/Makefile.am: add a missing space
Dec 7 2021, 8:08 AM
gniibe committed rG4cf8bdb04855: po: Update Japanese Translation. (authored by gniibe).
po: Update Japanese Translation.
Dec 7 2021, 8:07 AM
gniibe committed rG14de7b1e5904: gpg: Accept Ed25519 private key in SOS which reserves leading zeros. (authored by gniibe).
gpg: Accept Ed25519 private key in SOS which reserves leading zeros.
Dec 7 2021, 8:07 AM
gniibe triaged T5721: gpg22: Update *.m4 to prefer use of gpgrt-config and *.pc to *-config as Wishlist priority.
Dec 7 2021, 8:00 AM · gnupg (gpg22)
gniibe renamed T5034: dev: Deprecate libassuan-config, libgcrypt-config, ksba-config, ntbtls-config, npth-config, and gpg-error-config from dev: Deprecate libassuan-config, libgcrypt-config, ksba-config, ntbtls-config, npth-config, ang gpg-error-config to dev: Deprecate libassuan-config, libgcrypt-config, ksba-config, ntbtls-config, npth-config, and gpg-error-config.
Dec 7 2021, 7:54 AM
gniibe added a project to T5120: Incompatible Ed25519 secret key (no-encryption): Restricted Project.
Dec 7 2021, 7:43 AM · gnupg (gpg22), Bug Report
werner added a comment to T5718: Provide list of supported/compliant key algorithms.

You may run

Dec 7 2021, 7:40 AM · gnupg24, gnupg (gpg23), Feature Request
gniibe added a comment to T5120: Incompatible Ed25519 secret key (no-encryption).

For GnuPG 2.2, it's better to be conservative (least change of behavior, if any).

Dec 7 2021, 7:17 AM · gnupg (gpg22), Bug Report
gniibe added a comment to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.

We have tests in gniibe/new-pk-api, which can be backported.

  • t-dsa
  • t-ecdsa
  • t-rsa-pss
  • t-rsa-15
Dec 7 2021, 6:02 AM · FIPS, libgcrypt, Feature Request
gniibe added a comment to T5512: Implement service indicators.

Thank you, applied.

Dec 7 2021, 3:37 AM · Feature Request, FIPS, libgcrypt
gniibe committed rC8ca3fe07d03e: md: Fix disabled check. (authored by gniibe).
md: Fix disabled check.
Dec 7 2021, 3:35 AM
gniibe committed rCe96980022e5e: Properly enforce disablement in other pubkey API (authored by Jakuje).
Properly enforce disablement in other pubkey API
Dec 7 2021, 3:32 AM
gniibe committed rCbea8b9672c3c: tests: Add paren for readability. (authored by gniibe).
tests: Add paren for readability.
Dec 7 2021, 3:32 AM
gniibe committed rC3152a565d9a4: md: Fix checking to use ->disabled instead of ->fips directly. (authored by gniibe).
md: Fix checking to use ->disabled instead of ->fips directly.
Dec 7 2021, 3:32 AM
gniibe added a comment to T5706: libgcrypt: random: Remove the feature getting randomness from random daemon.

The patch has been applied.

Dec 7 2021, 2:35 AM · libgcrypt
gniibe committed rE7fac8e02d80d: configure: Add missing check for logging (authored by Jakuje).
configure: Add missing check for logging
Dec 7 2021, 2:18 AM
gniibe committed rC754ad5815b5b: random: Remove use of experimental random daemon. (authored by gniibe).
random: Remove use of experimental random daemon.
Dec 7 2021, 2:13 AM
gniibe added a project to T5706: libgcrypt: random: Remove the feature getting randomness from random daemon: Restricted Project.
Dec 7 2021, 2:12 AM · libgcrypt
gniibe claimed T5720: The libgpg-error is using old inet_addr() unconditionally.

Thank you, applied.

Dec 7 2021, 1:56 AM · gpgrt, Bug Report

Dec 6 2021

werner committed rW40738a133052: appimage: Obviously we need to fix libexec before building the image. (authored by werner).
appimage: Obviously we need to fix libexec before building the image.
Dec 6 2021, 10:29 PM
werner committed rW2fc66e79fe42: appimage: Fix RUNPATH for libexec (authored by werner).
appimage: Fix RUNPATH for libexec
Dec 6 2021, 9:24 PM
werner committed rWf8c6c8473c9b: NEWS: Fix a version number (authored by werner).
NEWS: Fix a version number
Dec 6 2021, 9:24 PM
Jakuje created T5720: The libgpg-error is using old inet_addr() unconditionally.
Dec 6 2021, 8:54 PM · gpgrt, Bug Report
werner committed rDc6b0875c83b2: verein: Update board to the last election. (authored by werner).
verein: Update board to the last election.
Dec 6 2021, 7:17 PM
ikloecker placed T5592: AppImage of Kleopatra up for grabs.
Dec 6 2021, 4:23 PM · Restricted Project, kleopatra, Feature Request
ikloecker placed T5697: Kleopatra: Crashes or hangs on circular certificate chains up for grabs.
Dec 6 2021, 4:22 PM · Restricted Project, kleopatra, Bug Report
dannytsen added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Thanks jukivili for the review.

Dec 6 2021, 3:37 PM · patch, ppc, libgcrypt, Feature Request
Saturneric added a project to T5719: Notice an error of tofu_info_t introduction in gpgme document : gpgme.
Dec 6 2021, 1:38 PM · Documentation, gpgme, Bug Report
Saturneric created T5719: Notice an error of tofu_info_t introduction in gpgme document .
Dec 6 2021, 1:37 PM · Documentation, gpgme, Bug Report
Jakuje added a comment to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.

I have just a note about this issue, that it would be helpful to exercise this new API in some tests. Right now, only the old API is tested.

Dec 6 2021, 12:38 PM · FIPS, libgcrypt, Feature Request
Jakuje added a comment to T5512: Implement service indicators.

It turns out that the asymmetric key operations are not yet properly enforced with the .disabled flag. While the other key crypto usually has some "open" api, where this can be simply captured, the pubkey API has several entry points and the "test_algo" is not enough to check for disabled key types.

Dec 6 2021, 11:56 AM · Feature Request, FIPS, libgcrypt
werner added a comment to T5706: libgcrypt: random: Remove the feature getting randomness from random daemon.

Yeah, remove it.

Dec 6 2021, 11:28 AM · libgcrypt
ikloecker changed the status of T5717: Kleopatra: Case insensitive algo compare in Kleopatras new key dialog from Open to Testing.
Dec 6 2021, 11:18 AM · Feature Request, kleopatra, Restricted Project
ikloecker committed rKLEOPATRA8f87d82ecd62: Use primary algo also for encryption subkey if not specified otherwise (authored by ikloecker).
Use primary algo also for encryption subkey if not specified otherwise
Dec 6 2021, 11:16 AM
ikloecker committed rKLEOPATRAf22bcf8e7168: Use cv25519 for subkey if default key algo is "ed25519" (authored by ikloecker).
Use cv25519 for subkey if default key algo is "ed25519"
Dec 6 2021, 11:16 AM
ikloecker committed rKLEOPATRAa310e16f6521: Use case-insensitive string matching to find curve (authored by ikloecker).
Use case-insensitive string matching to find curve
Dec 6 2021, 11:16 AM
Jakuje added a comment to T5636: Run integrity checks + selftests from library constructor in FIPS.

Thank you. My local tests (in emulated fips mode and normal mode) do not show any errors with current master branch.

Dec 6 2021, 11:03 AM · FIPS, libgcrypt, Bug Report
piec added a comment to T5657: dirmngr: libdns sends malformed dns requests.

Hi guys, I just tested the git version (426d82fcf1c133bfc1d5c931109d71db3f3815a9) and it works well thank you.

Dec 6 2021, 11:02 AM · Info Needed, Bug Report, dns, dirmngr
ikloecker created T5718: Provide list of supported/compliant key algorithms.
Dec 6 2021, 10:04 AM · gnupg24, gnupg (gpg23), Feature Request
ikloecker added a comment to T5717: Kleopatra: Case insensitive algo compare in Kleopatras new key dialog.

Just to be correct: Kleopatra takes the default key algorithm from gpg's default_pubkey_algo pseudo option. (Technically, this pseudo option probably uses gpg's --default-new-key-algo option, but only if the latter is set.)

Dec 6 2021, 9:56 AM · Feature Request, kleopatra, Restricted Project
ikloecker claimed T5717: Kleopatra: Case insensitive algo compare in Kleopatras new key dialog.
Dec 6 2021, 9:45 AM · Feature Request, kleopatra, Restricted Project
ikloecker added a comment to U9 Report a Gpg4win Bug.

I get

Access Denied: Restricted Application
Dec 6 2021, 9:40 AM · gpg4win
aheinecke added a comment to T5716: Kleopatra: Error when cross-compiling on debian buster.

Ingo: Exactly we have the problem that we don't compile build tools before building for the target. So we take the build tooling like kconfig_compiler from the system we compile on. This means that we compile with the tooling from debian buster. Except for Qt which handles stuff like that directly and builds for example moc and the other tools correcly for the build system first.

Dec 6 2021, 9:23 AM · Restricted Project, kleopatra
gniibe added a comment to T5636: Run integrity checks + selftests from library constructor in FIPS.

And please let me know the change rC751fcadd34ed: random: Release memory in DRBG. affects t-secmem failure.

Dec 6 2021, 7:08 AM · FIPS, libgcrypt, Bug Report
gniibe added a comment to T5636: Run integrity checks + selftests from library constructor in FIPS.

IIUC, one of the causes for the failure of secmem was resource release of DRBG memory.

Dec 6 2021, 3:34 AM · FIPS, libgcrypt, Bug Report
gniibe committed rC751fcadd34ed: random: Release memory in DRBG. (authored by gniibe).
random: Release memory in DRBG.
Dec 6 2021, 3:31 AM
gniibe committed rC5425052f38cd: fips: Factor out check_fips_system_setting function. (authored by gniibe).
fips: Factor out check_fips_system_setting function.
Dec 6 2021, 3:31 AM
gniibe added a comment to T5636: Run integrity checks + selftests from library constructor in FIPS.

Thank you for testing.

Dec 6 2021, 3:23 AM · FIPS, libgcrypt, Bug Report
gniibe committed rCb14aaf1a2dc7: cipher,tests: Consitent use of #if/#endif for algo selection. (authored by gniibe).
cipher,tests: Consitent use of #if/#endif for algo selection.
Dec 6 2021, 1:55 AM
gniibe claimed T5714: tests: Do not run tests for algorithms that are not built-in.

Applied. Thank you.

Dec 6 2021, 1:54 AM · libgcrypt, Bug Report
gniibe committed rCb601ef4dc9f9: tests: Unbreak tests with SM4 disabled (authored by Jakuje).
tests: Unbreak tests with SM4 disabled
Dec 6 2021, 1:49 AM
gniibe committed rC57b61b0f4f1b: tests: Conditionalize other algorithms that might not be built-in (authored by Jakuje).
tests: Conditionalize other algorithms that might not be built-in
Dec 6 2021, 1:49 AM
gniibe closed T5657: dirmngr: libdns sends malformed dns requests as Resolved.

Fixed in 2.2.33.

Dec 6 2021, 1:01 AM · Info Needed, Bug Report, dns, dirmngr
gniibe changed the status of T5393: gnupg coverity static analysis reports from Open to Testing.
Dec 6 2021, 12:59 AM · gnupg (gpg23), Bug Report
gniibe abandoned D541: w32: Support poll with FD backend.

An application should use syshd, instead.

Dec 6 2021, 12:58 AM
gniibe closed T5644: Heuristic for default reader detection as Resolved.
Dec 6 2021, 12:57 AM · Restricted Project, Feature Request, gnupg (gpg22)

Dec 5 2021

aheinecke changed the destination URL U9 Report a Gpg4win Bug from https://dev.gnupg.org/maniphest/task/edit/form/5/ to https://dev.gnupg.org/w/gpg4win-or-gnupg-vs-desktop-bug-report/.
Dec 5 2021, 6:26 PM · gpg4win
werner added a project to Gpg4win or GnuPG VS-Desktop Bug Report: gpg4win.
Dec 5 2021, 4:14 PM · gpg4win
werner added a comment to U9 Report a Gpg4win Bug.

@aheinecke: Please change the Original URL to https://dev.gnupg.org/w/gpg4win-or-gnupg-vs-desktop-bug-report/
. This creates a cover sheet which does not ask the user to login or register an account to later just realize that she may seatch the tracker w/o an account.

Dec 5 2021, 4:13 PM · gpg4win
werner created an object: Gpg4win or GnuPG VS-Desktop Bug Report.
Dec 5 2021, 4:09 PM · gpg4win
l10n daemon script <scripty@kde.org> committed rKLEOPATRAc2fc9f669a44: GIT_SILENT made messages (after extraction) (authored by l10n daemon script <scripty@kde.org>).
GIT_SILENT made messages (after extraction)
Dec 5 2021, 1:46 AM

Dec 4 2021

jukivili added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Thanks, however I didn't see your email on mailing-list. Maybe the email got stuck on the way.

Dec 4 2021, 12:46 PM · patch, ppc, libgcrypt, Feature Request

Dec 3 2021

ikloecker placed T5708: Kleopatra: Configure expiration date default in config up for grabs.
Dec 3 2021, 7:46 PM · kleopatra, g10code, Restricted Project
ikloecker placed T5690: Kleopatra: Custom placeholder text in newcertificatewizard up for grabs.
Dec 3 2021, 7:46 PM · kleopatra, Restricted Project
ikloecker placed T5689: Kleopatra: Make config pages hideable again up for grabs.
Dec 3 2021, 7:46 PM · kleopatra, Restricted Project
ikloecker placed T5688: Kleopatra: Configure to hide CSR creation up for grabs.
Dec 3 2021, 7:46 PM · kleopatra, Restricted Project
ikloecker changed the status of T5715: Kleopatra: After importing a secret key and setting ownertrust in the dialog the key is not updated from Open to Testing.

Should be fixed. It's possible that the changes in KeyCache now cause unwanted recursion if some listener to keyListingDone() triggers a new key listing by some operation. This needs to be fixed for each listener separately.

Dec 3 2021, 7:45 PM · kleopatra, Restricted Project
ikloecker committed rLIBKLEOf5f757504454: Allow new refresh job if the previous job is done (authored by ikloecker).
Allow new refresh job if the previous job is done
Dec 3 2021, 6:23 PM
ikloecker committed rKLEOPATRAfb35bf858ded: Prevent recursion if post processing triggers another key listing (authored by ikloecker).
Prevent recursion if post processing triggers another key listing
Dec 3 2021, 6:19 PM
ikloecker moved T5715: Kleopatra: After importing a secret key and setting ownertrust in the dialog the key is not updated from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Dec 3 2021, 5:09 PM · kleopatra, Restricted Project
ikloecker changed the status of T5711: Kleopatra: Keyserver config does not fallback to default from Open to Testing.
Dec 3 2021, 5:05 PM · Restricted Project, kleopatra
ikloecker committed rKLEOPATRA721e9825d2ac: Reset OpenPGP keyserver to default on empty value (authored by ikloecker).
Reset OpenPGP keyserver to default on empty value
Dec 3 2021, 5:00 PM
ikloecker moved T5711: Kleopatra: Keyserver config does not fallback to default from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Dec 3 2021, 4:57 PM · Restricted Project, kleopatra
ikloecker added a comment to T5713: Kleopatra: PKCS#12 Import no Error on bad passphrase.

@aheinecke Please provide an example of a PKCS#12 certificate.

Dec 3 2021, 4:27 PM · Restricted Project, kleopatra
ikloecker reassigned T5716: Kleopatra: Error when cross-compiling on debian buster from ikloecker to aheinecke.

Reassigning to Andre to check why the build system doesn't pick up kconfig_compiler from kconfig-5.77 which is used/built for gpg4win and the appimage.

Dec 3 2021, 4:25 PM · Restricted Project, kleopatra
ikloecker added a comment to T5716: Kleopatra: Error when cross-compiling on debian buster.

Or are you trying to compile Kleopatra against KF5 that comes with Debian buster?

Dec 3 2021, 4:01 PM · Restricted Project, kleopatra
ikloecker added a comment to T5716: Kleopatra: Error when cross-compiling on debian buster.

Hmm, cmake should find the right executable of kconfig_compiler. Are you sure that there is no development package of kconfig installed on the build system?

Dec 3 2021, 3:58 PM · Restricted Project, kleopatra
ikloecker added a comment to T5716: Kleopatra: Error when cross-compiling on debian buster.

The is*Immutable members were added with version 5.68. And the current packages use KF5 5.77. So this should work. Unless ...

Dec 3 2021, 3:54 PM · Restricted Project, kleopatra
werner triaged T5717: Kleopatra: Case insensitive algo compare in Kleopatras new key dialog as Normal priority.
Dec 3 2021, 12:44 PM · Feature Request, kleopatra, Restricted Project
Jakuje added a comment to T5645: RSA/DSA keygen modification for FIPS/ACVP testing.

Thanks. I did some git archeology and found the first mention of this in the following commit in 2011 without much details:

Dec 3 2021, 10:21 AM · libgcrypt, FIPS, Bug Report
aheinecke committed rW352682df0d3f: Add dist-self as dependency to all uploads (authored by aheinecke).
Add dist-self as dependency to all uploads
Dec 3 2021, 9:26 AM
gniibe committed rCe4a450d1d966: rsa: Allow e=0 to select 65537 for keygeneration under X931. (authored by gniibe).
rsa: Allow e=0 to select 65537 for keygeneration under X931.
Dec 3 2021, 9:18 AM
gniibe added a comment to T5645: RSA/DSA keygen modification for FIPS/ACVP testing.

Adding the case for == 0 only might be problematic, because I don't think it's an alias for a secure value; I think that == 0 means that it's up to libgcrypt to select the value (just like other generate_* functions).

Dec 3 2021, 9:14 AM · libgcrypt, FIPS, Bug Report
gniibe committed rC78ce1f9e0afe: random: Add missing header file to the release tarball (authored by Jakuje).
random: Add missing header file to the release tarball
Dec 3 2021, 8:25 AM