Page MenuHome GnuPG
Feed All Stories

Dec 13 2021

mrybczyn added a comment to T5729: Crypto tokens for GnuPG maintainers - an offer.

Thank you for the answer then! You can probably review our guide then https://github.com/ossf/great-mfa-project/blob/main/guide/token-usage-guide.md :)

Dec 13 2021, 6:25 PM · dev.gnupg.org
werner added a comment to T5732: Backport option reading in gpgconf to 2.2.

A clumsy workaround for the Kleo bug is to put "keyserver ldap:///" into the global gpg.conf after an ignore section containing keyserver. This will let gpgconf emit "ldap:///" unless a local gpg.conf exists.

Dec 13 2021, 5:30 PM · Restricted Project, Bug Report, kleopatra, backport, gnupg (gpg22)
ikloecker committed rKLEOPATRA9f1fb2f8a41b: Disable WKD lookup if QGpgME does not support it (authored by ikloecker).
Disable WKD lookup if QGpgME does not support it
Dec 13 2021, 5:15 PM
ikloecker closed T5733: gpgme: Allow setting key origin when importing keys from data as Resolved.
Dec 13 2021, 4:53 PM · gpgme, kleopatra, Restricted Project
ikloecker closed T5733: gpgme: Allow setting key origin when importing keys from data, a subtask of T5334: Kleopatra: Add more support for WKS / WKD, as Resolved.
Dec 13 2021, 4:53 PM · kleopatra, Restricted Project
ikloecker committed rMc89226d47fa8: doc: Fix a few errors in the documentation of gpgme_op_import_* (authored by ikloecker).
doc: Fix a few errors in the documentation of gpgme_op_import_*
Dec 13 2021, 4:52 PM
ikloecker committed rM60880adafa93: core: Allow specifiying a key origin when importing keys (authored by ikloecker).
core: Allow specifiying a key origin when importing keys
Dec 13 2021, 4:52 PM
ikloecker moved T5733: gpgme: Allow setting key origin when importing keys from data from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Dec 13 2021, 4:13 PM · gpgme, kleopatra, Restricted Project
ikloecker triaged T5733: gpgme: Allow setting key origin when importing keys from data as Normal priority.
Dec 13 2021, 4:13 PM · gpgme, kleopatra, Restricted Project
werner changed Due Date from Dec 31 2021, 12:00 AM to Jan 31 2022, 12:00 AM on T5732: Backport option reading in gpgconf to 2.2.
Dec 13 2021, 1:58 PM · Restricted Project, Bug Report, kleopatra, backport, gnupg (gpg22)
werner added a project to T5732: Backport option reading in gpgconf to 2.2: Restricted Project.
Dec 13 2021, 1:57 PM · Restricted Project, Bug Report, kleopatra, backport, gnupg (gpg22)
ikloecker closed T5728: qgpgme: Add support for doing a WKD lookup without implicit import as Resolved.
Dec 13 2021, 1:55 PM · gpgme, Restricted Project
ikloecker closed T5728: qgpgme: Add support for doing a WKD lookup without implicit import, a subtask of T5334: Kleopatra: Add more support for WKS / WKD, as Resolved.
Dec 13 2021, 1:55 PM · kleopatra, Restricted Project
ikloecker committed rKLEOPATRAa240f45cdd45: Perform WKD lookup additionally to keyserver lookup (authored by ikloecker).
Perform WKD lookup additionally to keyserver lookup
Dec 13 2021, 1:54 PM
werner triaged T5732: Backport option reading in gpgconf to 2.2 as High priority.
Dec 13 2021, 1:51 PM · Restricted Project, Bug Report, kleopatra, backport, gnupg (gpg22)
werner closed T5641: Release GnuPG 2.2.33 as Resolved.
Dec 13 2021, 1:46 PM · Release Info, gnupg (gpg22)
aheinecke added a comment to T5728: qgpgme: Add support for doing a WKD lookup without implicit import.

Nice. The way with KS_GET and assuan is much better then I thought about using a temporary home and a --locate-key

Dec 13 2021, 11:00 AM · gpgme, Restricted Project
ikloecker committed rM0e70a2313afb: qt: Fix example for using the asynchronous job API (authored by ikloecker).
qt: Fix example for using the asynchronous job API
Dec 13 2021, 10:55 AM
ikloecker committed rMed7e7df2e14f: qt: Support WKD lookup without implicit import (authored by ikloecker).
qt: Support WKD lookup without implicit import
Dec 13 2021, 10:55 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO70525374dfbe: GIT_SILENT: it compiles fine without deprecated methods (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: it compiles fine without deprecated methods
Dec 13 2021, 8:13 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO4806896073c6: Port I18N_NOOP (authored by Laurent Montel <montel@kde.org>).
Port I18N_NOOP
Dec 13 2021, 8:13 AM
Laurent Montel <montel@kde.org> committed rLIBKLEO385cc542faa6: GIT_SILENT: time to increase dep (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: time to increase dep
Dec 13 2021, 7:42 AM
Laurent Montel <montel@kde.org> committed rKLEOPATRA0e685f1d2025: GIT_SILENT: time to increase dep (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: time to increase dep
Dec 13 2021, 7:31 AM
gniibe committed rEe17cf023d894: build: Detect a system with musl, as a variant of GNU System. (authored by gniibe).
build: Detect a system with musl, as a variant of GNU System.
Dec 13 2021, 6:33 AM
gniibe committed rEf15c06951bb9: build: Fix have_lock_optimization code for 'guessing yes'. (authored by gniibe).
build: Fix have_lock_optimization code for 'guessing yes'.
Dec 13 2021, 6:33 AM
gniibe updated the task description for T5731: libgcrypt,w32: Possible API change for include file(s).
Dec 13 2021, 5:28 AM · libgcrypt
gniibe triaged T5731: libgcrypt,w32: Possible API change for include file(s) as Normal priority.
Dec 13 2021, 5:27 AM · libgcrypt
MangoCats added a comment to T5730: During make, compile error under Ubuntu 21.10.

Thanks. If I'm reading correctly, that fix was pushed in July. Any idea when the next release might come out?

Dec 13 2021, 4:08 AM · gpgme, Bug Report
gniibe claimed T5730: During make, compile error under Ubuntu 21.10.

Thank you for your report.

Dec 13 2021, 3:13 AM · gpgme, Bug Report

Dec 12 2021

werner committed rW40dd26869379: build: Fix upload of encrypted installers. (authored by werner).
build: Fix upload of encrypted installers.
Dec 12 2021, 8:14 PM
jukivili added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Few comments on new patch:

Dec 12 2021, 7:18 PM · patch, ppc, libgcrypt, Feature Request
MangoCats renamed T5730: During make, compile error under Ubuntu 21.10 from During make, compile Error under Ubuntu 21.10 to During make, compile error under Ubuntu 21.10.
Dec 12 2021, 7:14 PM · gpgme, Bug Report
MangoCats created T5730: During make, compile error under Ubuntu 21.10.
Dec 12 2021, 7:12 PM · gpgme, Bug Report
werner edited projects for T5729: Crypto tokens for GnuPG maintainers - an offer, added: dev.gnupg.org; removed Feature Request.

Thanks for the offer. However, the core developers are using tokens for more than a decade meanwhile. We even make our own tokens ;-).

Dec 12 2021, 5:10 PM · dev.gnupg.org

Dec 11 2021

Albert Astals Cid <aacid@kde.org> committed rKLEOPATRAac014d57237f: GIT_SILENT Update Appstream for new release (authored by Albert Astals Cid <aacid@kde.org>).
GIT_SILENT Update Appstream for new release
Dec 11 2021, 3:16 AM

Dec 10 2021

dannytsen added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Hi jukivili,

Dec 10 2021, 3:21 PM · patch, ppc, libgcrypt, Feature Request
mrybczyn created T5729: Crypto tokens for GnuPG maintainers - an offer.
Dec 10 2021, 2:00 PM · dev.gnupg.org
werner closed T5726: Setting "compliance de-vs" in gpg.conf with libgcrypt 1.9.0 and newer causes confusing error messages as Resolved.

The first is a warning and the other error codes are exactly what we want.

Dec 10 2021, 1:53 PM · Not A Bug, libgcrypt, gnupg
ikloecker committed rMf3177d3ee0a1: cpp,tests: Add test runner for doing a WKD lookup without import (authored by ikloecker).
cpp,tests: Add test runner for doing a WKD lookup without import
Dec 10 2021, 12:52 PM
ikloecker moved T5728: qgpgme: Add support for doing a WKD lookup without implicit import from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Dec 10 2021, 12:16 PM · gpgme, Restricted Project
ikloecker triaged T5728: qgpgme: Add support for doing a WKD lookup without implicit import as Normal priority.
Dec 10 2021, 12:16 PM · gpgme, Restricted Project
ikloecker closed T5727: gpgme: Add support for dirmngr (and all other components) to dirinfo() as Resolved.
Dec 10 2021, 12:14 PM · gpgme, Restricted Project
ikloecker closed T5727: gpgme: Add support for dirmngr (and all other components) to dirinfo(), a subtask of T5334: Kleopatra: Add more support for WKS / WKD, as Resolved.
Dec 10 2021, 12:14 PM · kleopatra, Restricted Project
ikloecker committed rM5f1ba4011619: cpp: Add new supported components to API docs of dirInfo() (authored by ikloecker).
cpp: Add new supported components to API docs of dirInfo()
Dec 10 2021, 12:10 PM
ikloecker committed rM0ac3679a7450: core: Support all components with dirinfo() (authored by ikloecker).
core: Support all components with dirinfo()
Dec 10 2021, 12:10 PM
ikloecker triaged T5727: gpgme: Add support for dirmngr (and all other components) to dirinfo() as Normal priority.
Dec 10 2021, 12:00 PM · gpgme, Restricted Project
gniibe committed rG61ac580a2075: gpg: Emit compatible Ed25519 signature. (authored by gniibe).
gpg: Emit compatible Ed25519 signature.
Dec 10 2021, 8:32 AM
gniibe added a project to T5331: Possibly incompatible Ed25519 signature between other implementations and 2.3-bata: Restricted Project.
Dec 10 2021, 7:45 AM · gnupg (gpg23), Bug Report
gniibe added a comment to T5331: Possibly incompatible Ed25519 signature between other implementations and 2.3-bata.

Adding comments, fixing "const" qualifier, I pushed the change.

Dec 10 2021, 7:44 AM · gnupg (gpg23), Bug Report
Laurent Montel <montel@kde.org> committed rLIBKLEOf800b4721eff: GIT_SILENT: prepare 21.12.1 (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare 21.12.1
Dec 10 2021, 7:06 AM
gniibe added a comment to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.

Thank you, applied.

Dec 10 2021, 6:55 AM · FIPS, libgcrypt, Feature Request
gniibe committed rC02583e1216bc: tests: Include the new input files for tests (authored by Jakuje).
tests: Include the new input files for tests
Dec 10 2021, 6:55 AM

Dec 9 2021

Albert Astals Cid <aacid@kde.org> committed rKLEOPATRA46f871e4ac41: GIT_SILENT Update Appstream for new release (authored by Albert Astals Cid <aacid@kde.org>).
GIT_SILENT Update Appstream for new release
Dec 9 2021, 5:33 PM
Jakuje created T5726: Setting "compliance de-vs" in gpg.conf with libgcrypt 1.9.0 and newer causes confusing error messages.
Dec 9 2021, 5:33 PM · Not A Bug, libgcrypt, gnupg
werner committed rW1ddf9b9a3841: build: Fix encryption of installers (authored by werner).
build: Fix encryption of installers
Dec 9 2021, 5:15 PM
Jakuje added a comment to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.

It turned out that the new *.inp files are not part of the release tarball, which makes the tests from generated tarball fail. The attached patch should fix this issue.

Dec 9 2021, 5:06 PM · FIPS, libgcrypt, Feature Request
Yuri Chornoivan <yurchor@ukr.net> committed rKLEOPATRA9f75889b3e36: Fix minor typo (authored by Yuri Chornoivan <yurchor@ukr.net>).
Fix minor typo
Dec 9 2021, 9:24 AM
gniibe added a comment to T5331: Possibly incompatible Ed25519 signature between other implementations and 2.3-bata.

A patch created:

Dec 9 2021, 7:30 AM · gnupg (gpg23), Bug Report
gniibe committed rC7d8403b59a10: tests,fips: Align the use of variable in_fips_mode. (authored by gniibe).
tests,fips: Align the use of variable in_fips_mode.
Dec 9 2021, 1:53 AM
gniibe committed rC5b82f4b4dbf3: Adjust tests for proper disablement of non-approve PK operations (authored by Jakuje).
Adjust tests for proper disablement of non-approve PK operations
Dec 9 2021, 1:53 AM
gniibe added a comment to T5710: FIPS: disable DSA for FIPS.

Thank you, applied.

Dec 9 2021, 1:53 AM · FIPS, libgcrypt

Dec 8 2021

Laurent Montel <montel@kde.org> committed rLIBKLEO11cb53668995: GIT_SILENT: fix some reuse lint warning (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: fix some reuse lint warning
Dec 8 2021, 7:33 PM
ikloecker created T5725: Kleopatra: Certificate lookup shows only one result even if there are 100s matches.
Dec 8 2021, 5:00 PM · Restricted Project, kleopatra, Bug Report
Jakuje added a comment to T5710: FIPS: disable DSA for FIPS.

Sorry for the noise. There were couple of other places which I missed initially and which are covered in the v2 patch which follows:

Dec 8 2021, 1:25 PM · FIPS, libgcrypt
Jakuje added a comment to T5710: FIPS: disable DSA for FIPS.

It turns out together with rCe96980022e5e some tests are failing in FIPS mode. The attached patch should handle the failures.

Dec 8 2021, 12:39 PM · FIPS, libgcrypt
gniibe added a comment to T5331: Possibly incompatible Ed25519 signature between other implementations and 2.3-bata.

GnuPG 2.2 does:

  • In g10/sign.c:do_sign, it keeps leading zeros for Ed25519 signature, as opaque MPI
  • In g10/build-packet.c:do_signature which calls gpg_mpi_write to output the (opaque) MPI, leading zeros are removed.
Dec 8 2021, 12:20 PM · gnupg (gpg23), Bug Report
gniibe added a comment to T5699: libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl and macOS.

Let me explain concretely.

Dec 8 2021, 12:18 PM · gpgrt, Bug Report
aheinecke added a comment to T5690: Kleopatra: Custom placeholder text in newcertificatewizard.

While testing I noticed that another requirement was to hide the advanced button. I have added this myself.

Dec 8 2021, 10:44 AM · kleopatra, Restricted Project
aheinecke committed rKLEOPATRA2dd2f9820f55: Add setting to hide advanced options for new keys (authored by aheinecke).
Add setting to hide advanced options for new keys
Dec 8 2021, 10:44 AM
outer added a comment to T5699: libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl and macOS.

Excuse me NIBE san. What if any action do you expect me to take on this matter?
__outer

Dec 8 2021, 10:22 AM · gpgrt, Bug Report
gniibe closed T4951: Support point compression in Libgcrypt as Resolved.

Reading compressed point format has been done.
If writing support is needed, please open another task.

Dec 8 2021, 9:12 AM · Feature Request, libgcrypt
gniibe added a project to T5215: gnugp1: Fix build errors with gcc-10: Restricted Project.
Dec 8 2021, 9:10 AM · gnupg (gpg14), patch, Bug Report
gniibe added a project to T5393: gnupg coverity static analysis reports: Restricted Project.
Dec 8 2021, 9:09 AM · gnupg (gpg23), Bug Report
gniibe added a project to T5572: gnupg1: Missing extern-inline.m4 for gl_EXTERN_INLINE: Restricted Project.
Dec 8 2021, 9:07 AM · gnupg (gpg14)
gniibe added a project to T5579: libksba parallel build error (windows): Restricted Project.
Dec 8 2021, 9:07 AM · libksba, Bug Report
gniibe added a project to T5617: fips: Check library integrity before running selftests: Restricted Project.
Dec 8 2021, 9:06 AM · FIPS, libgcrypt, Bug Report
gniibe closed T5623: gpg2 hangs on many tasks on OpenIndiana (Illumos) as Resolved.
Dec 8 2021, 9:06 AM · Solaris, gnupg (gpg23)
gniibe renamed T5699: libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl and macOS from libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl to libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl and macOS.
Dec 8 2021, 9:05 AM · gpgrt, Bug Report
gniibe added a project to T5699: libgpg-error 1.43 fails t-lock-single-thread test on x86_64 with musl and macOS: Restricted Project.
Dec 8 2021, 9:04 AM · gpgrt, Bug Report
gniibe added a project to T5714: tests: Do not run tests for algorithms that are not built-in: Restricted Project.
Dec 8 2021, 9:03 AM · libgcrypt, Bug Report
gniibe added a project to T5723: libgcrypt: Remove random-fips.c: Restricted Project.
Dec 8 2021, 9:03 AM · FIPS, libgcrypt
gniibe added a project to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation: Restricted Project.
Dec 8 2021, 9:00 AM · FIPS, libgcrypt, Feature Request
gniibe added a project to T5244: libgcrypt: Restrict MD5 use: Restricted Project.
Dec 8 2021, 8:59 AM · Bug Report, FIPS, libgcrypt
gniibe triaged T5636: Run integrity checks + selftests from library constructor in FIPS as Normal priority.
Dec 8 2021, 8:57 AM · FIPS, libgcrypt, Bug Report
Laurent Montel <montel@kde.org> committed rKLEOPATRA8458194b302f: GIT_SILENT: fix some reuse lint warnings (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: fix some reuse lint warnings
Dec 8 2021, 8:54 AM
gniibe lowered the priority of T5576: New set of API for public key cryptography from High to Wishlist.
Dec 8 2021, 2:51 AM · libgcrypt, Feature Request
gniibe added a comment to T5576: New set of API for public key cryptography.

This new API is not for FIPS directly (any more), as we introduced pk_hash_sign/verify for FIPS.

Dec 8 2021, 2:51 AM · libgcrypt, Feature Request
gniibe removed a subtask for T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation: T5576: New set of API for public key cryptography.
Dec 8 2021, 2:49 AM · FIPS, libgcrypt, Feature Request
gniibe removed a parent task for T5576: New set of API for public key cryptography: T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.
Dec 8 2021, 2:49 AM · libgcrypt, Feature Request
gniibe added a comment to T4894: FIPS: RSA/DSA/ECDSA are missing hashing operation.

Pushed the backport.

Dec 8 2021, 2:48 AM · FIPS, libgcrypt, Feature Request
gniibe committed rCa0a2b6796f58: tests: Add tests for gcry_pk_hash_sign/verify API. (authored by gniibe).
tests: Add tests for gcry_pk_hash_sign/verify API.
Dec 8 2021, 2:48 AM
gniibe changed the status of T5710: FIPS: disable DSA for FIPS from Open to Testing.
Dec 8 2021, 1:54 AM · FIPS, libgcrypt
gniibe added a comment to T5710: FIPS: disable DSA for FIPS.

I have been convinced disabling DSA makes more sense.

Dec 8 2021, 1:54 AM · FIPS, libgcrypt
gniibe committed rCea362090fc11: fips: Disable DSA in FIPS mode. (authored by Jakuje).
fips: Disable DSA in FIPS mode.
Dec 8 2021, 1:52 AM
gniibe changed the status of T5723: libgcrypt: Remove random-fips.c from Open to Testing.

Done.
(Actually, it's not in the tarball.)

Dec 8 2021, 1:50 AM · FIPS, libgcrypt
gniibe committed rC5521cac32d75: random: Remove random-fips.c from repo. (authored by gniibe).
random: Remove random-fips.c from repo.
Dec 8 2021, 1:50 AM

Dec 7 2021

dannytsen added a comment to T5700: libgcrypt: bulk AES-GCM acceleration for ppc64le.

Hi jukivili,
I ran some basic tests and it did show the errors. I am in the process investigating what went wrong. In the meantime, i also included test result that I have used in my testing from bench-slope. In this test, I captured the message with 272 bytes buffer from the original libgcrypt repo and my optimized repo. Note that the bulk version of my code do 8x unrolling and the rest will do 16 bytes. So the first 2 128 bytes ran thru gcry_ppc_aes_gcm_encrypt and the rest of the 16 bytes thru gcm_ctr_encrypt (cipher-gcm.c).

Dec 7 2021, 5:36 PM · patch, ppc, libgcrypt, Feature Request
werner added a member for g10code: ebo.
Dec 7 2021, 4:06 PM
Laurent Montel <montel@kde.org> committed rLIBKLEOe3187458cdd9: GIT_SILENT: prepare for the future CMakePreset qt6 build (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare for the future CMakePreset qt6 build
Dec 7 2021, 2:11 PM
Laurent Montel <montel@kde.org> committed rKLEOPATRAf2c49b452b11: GIT_SILENT: prepare for the future CMakePreset qt6 build (authored by Laurent Montel <montel@kde.org>).
GIT_SILENT: prepare for the future CMakePreset qt6 build
Dec 7 2021, 1:52 PM