Don't filter out expired signing/encryption certificates
Use new key flags to check for sign and encryption capability, so that
expired certificates are still shown. This gives the user the chance
to notice that something is wrong with a certificate they want to use.
- GnuPG-bug-id: T6753