Re: my statements were twisted (was Security of 3DES)

2013-09-03 Thread Henry Hertz Hobbit
On 09/03/2013 04:49 PM, Peter Lebbing wrote: > To expand on what Johan Wevers said: symmetric ciphers do not change the > length > of the encrypted text (by more than the block size). They certainly do not > compress. Usually, data is compressed before encrypting it (compressing it > after > is

Re: AES256 & AES192. (Was: Can I revitalise an old key-pair?)

2013-09-02 Thread Henry Hertz Hobbit
On 09/02/2013 06:28 PM, Nicholas Cole wrote: > On Mon, Sep 2, 2013 at 5:04 AM, Henry Hertz Hobbit > wrote: > > [snip] > >> >> Paradoxically, AES256 & AES192 had >> weaknesses that made them less safe than AES (AES-128) several >> years back.

Re: Can I revitalise an old key-pair?

2013-09-01 Thread Henry Hertz Hobbit
On 09/01/2013 09:15 PM, Pete Stephenson wrote: > On Sun, Sep 1, 2013 at 2:57 PM, MartinHvidberg wrote: >> I'm returning to GPG, and Enigmail, and not for the first time. This means >> that I have earlier generated key-pairs and uploaded them to servers like >> keys.pgp.net or something like that.

Re: Recommended key size for life long key

2013-08-31 Thread Henry Hertz Hobbit
On 08/31/2013 08:27 PM, Anthony Papillion wrote: > Personally, I trust my 4096 bit key for now until ECC is integrated > into GnuPG. Then, I'll recreate my keys. Looking for a key that will > never be broken is like looking for the fountain of youth: it's a nice > idea but not realistic to plan yo

Re: GNUPG and Cast6

2013-08-29 Thread Henry Hertz Hobbit
On 08/29/2013 06:01 PM, Csabi wrote: > Hi all, > > Why does not support GNUPG the CAST6 (256 bit key) variant of the CAST > algorithm? > It supports the CAST5 (128 bit key) variant and it is the default cipher. > > Best regards, Csabi Because there is no RFC for it in OpenPGP. Unless there is a

Re: Editing a key in GnuPG2

2013-08-26 Thread Henry Hertz Hobbit
On 08/27/2013 01:29 AM, Avi wrote: > With the recent release of GPG4Win, I decided to try it once again. > One of the things I like about the shell I use is the ability to use > the GUI to start more advanced operations like editing keys (for > cleaning/disabling, etc) and setting prefs for individ

Re: Serpent?

2013-08-23 Thread Henry Hertz Hobbit
On 08/23/2013 11:00 PM, Faramir wrote: > El 22-08-2013 9:56, Robert J. Hansen escribió: > ... >> GnuPG extends this with support for Camellia-128, Camellia-192 and >> Camellia-256. I don't know the reasoning for introducing Camellia, >> but I'm sure there's a solid basis for it. > > IIRC, some

Re: Why trust gpg4win?

2013-08-22 Thread Henry Hertz Hobbit
On 08/22/2013 06:22 PM, Jasper den Ouden wrote: >> The solution of course is as you urged takethe...@gmx.de , to get a >> free operating system such as Linux or BSD, complete with free >> build tools & compile your own (even non programmers can do that, >> eg on an OS downloaded from http://www.

Re: need help for GPG 1.2.1 binary for REHL 5.8

2013-08-21 Thread Henry Hertz Hobbit
On 08/20/2013 09:43 PM, Snehendu Ghosh wrote: > Hi Peter, > > Thanks for your reply. > > In brief, the background is that we are replacing an existing > iHub system which acts as a router for files transfer to and > from Oracle EBS. In current system, for inbound interfaces, > encrypted files co

Fwd: Re: Issue with --sign option

2013-08-19 Thread Henry Hertz Hobbit
her things that are going wrong are already in the archives some place. Actually the secmem messages are just bothersome and won't cause any problems. Original Message Subject: Re: Issue with --sign option Date: Sun, 18 Aug 2013 16:18:54 +0000 From: Henry Hertz Hobbit

Re: Issue with --sign option

2013-08-18 Thread Henry Hertz Hobbit
On 08/18/2013 03:45 PM, ashish tiwari wrote: Is this a Turing test? I wrote a private reply to try to find if that is what is happening. I mean, is "--sign" as opposed to "-sign" that hard to understand? Here is what -sign chould probably mean: -s same as --sign -i same as --interactive -g

Re: No secret key on 1 file

2013-08-16 Thread Henry Hertz Hobbit
On 08/16/2013 04:20 PM, Steven Bonda wrote: > I did a lot of research and digging and was finally able to get the file to > decrypt: > > c:\temp>gpg2 --batch --try-all-secrets --passphrase pass -o temp.txt -d > temp.txt.pgp > gpg: anonymous recipient; trying secret key A328FC0E ... > gpg: WARNING:

Re: Can I create domain keys?

2013-08-14 Thread Henry Hertz Hobbit
On 08/14/2013 10:56 PM, Foo Bar wrote: > > Hello! > > Thank you for your response. Some comments inline... > > - Original Message - >> From: MFPA >> >> You can create a key with whatever information you wish to >> put in the user-id(s), truthful or otherwise. > > I have tried to enter

Re: Can I create domain keys?

2013-08-14 Thread Henry Hertz Hobbit
On 08/14/2013 08:33 AM, Johan Wevers wrote: > On 14-08-2013 5:36, Foo Bar wrote: > >> I would like to create a domain key, which can be used for all >> emails in a particular domain. For example, if the key is for >> "*@example.com", then sending to both "f...@example.com" and > "b...@example.com"

Re: self signed keys

2013-08-14 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 08/14/2013 07:47 AM, Axel Braun wrote: > Hi, > > one (stupid?) question: > > Where is the requirement to sign your own key documented? I had a > look into RFC 4880 but could not spot the requirement there. > > Thanks for clarifying Axel Th

Re: understanding GnuPG "--clearsign" option

2013-08-12 Thread Henry Hertz Hobbit
On 08/12/2013 08:40 AM, Martin T wrote: > Hi, > > one can sign the message with "--clearsign" option which adds ASCII > armored(Radix-64 encoding) "PGP signature" at the end of the text. > This "PGP signature" contains the UID of the signer, timestamp and key > ID. However, two questions: GnuPG d

Re: How to create new keyring from an existing key in an existing keyring?

2013-08-12 Thread Henry Hertz Hobbit
On 08/12/2013 09:18 AM, Peter Lebbing wrote: > On 11/08/13 23:11, adrelanos wrote: >> I could think of a way to export the key, change --homedir, create a new >> keyring, and import a the key. But is there a more elegant way? > > gpg --export 0xDEADBEEF | gpg --no-default-keyring --keyring \ > /et

Re: Question about notations and domains

2013-08-08 Thread Henry Hertz Hobbit
On 08/08/2013 09:17 PM, Khelben Blackstaff wrote: (please read the original) Short answer: Your github URL converted into an email address is NOT a good solution. Read on if you want to know why. It is not necessary to "own" the domain. For example, I could perhaps have an email account at

Re: [#JYM-378-41570]: Re: Why trust any software?

2013-08-07 Thread Henry Hertz Hobbit
On 08/07/2013 12:49 PM, Jean-David Beyer wrote: > Is the address ab...@teamspeakusa.com actually required? I know > "postmas...@teamspeakusa.com" is required and it must go to a real > person, but is any other? SKIP TO TEAMSPEAK OR SPECIFIC. Actually, even "postmaster" is no longer required. T

Re: Identifying your private key by the public KeyID

2013-08-06 Thread Henry Hertz Hobbit
/sub but still has the same key number in both --list-keys and list--secret-keys. Beyond that I will let somebody else elaborate. You put just your main key in the ~/.gnupg/gpg.conf file on Linux and everything just works. Ditto for selecting it on Windows. E/g.: pub 2048R/E05A9F9F 2013-08-06 [

Re: [#JYM-378-41570]: Re: Why trust any software?

2013-08-05 Thread Henry Hertz Hobbit
On 08/06/2013 12:42 AM, Jean-David Beyer wrote: > On 08/05/2013 09:23 AM, TeamSpeak Piracy wrote: >> Jean-David Beyer, >> >> Thank you for contacting us. This is an automated response confirming >> the receipt of your ticket. One of our agents will get back to you as >> soon as possible. For your r

Re: [#INN-651-31269]: Re: key management & APG

2013-08-05 Thread Henry Hertz Hobbit
On 08/05/2013 08:18 AM, Brad Rogers wrote: > On Mon, 05 Aug 2013 09:36:42 +0200 > Werner Koch wrote: > > Hello Werner, > >> On Sun, 4 Aug 2013 22:24, ivangrun...@gmail.com said: >>> What is with the helpdesk being a list member? >> They are. I have set the moderation flag. > > The XOrg list

Team Speak USA Test

2013-08-05 Thread Henry Hertz Hobbit
It looks like the initial guess (not my guess) is correct as my test shows (message from TeamSpeaK USA to me) http://www.securemecca.com/tmp/TeamSpeakUSA-Direct.txt http://www.securemecca.com/tmp/TeamSpeakUSA-Msg.txt Setting up a system like this which can spam a mailing list is an abuse. Whethe

Re: [#INN-651-31269]: Re: key management & APG

2013-08-04 Thread Henry Hertz Hobbit
On 08/04/2013 09:55 PM, MFPA wrote: > Hi > > > On Sunday 4 August 2013 at 9:24:51 PM, in > , Larry Brower wrote: > > >> What is with the helpdesk being a list member? > > I suspect somebody has forwarded their mail to the helpdesk, > forgetting to turn off message delivery from the list and th

Re: best practice for handing over the private key

2013-08-02 Thread Henry Hertz Hobbit
On 08/02/2013 01:31 PM, Martin T wrote: > Hi, > >> Your description sounds, to me, as if you are only generating a key for the >> other persons use. > > Not quite. At the beginning I need to use those keys myself in order > to create the needed database objects. Once those are done, I need to >

Re: change passphrase in batch mode

2013-07-29 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 07/29/2013 11:02 PM, Hauke Laging wrote: > Hello, > > is it possible to change a passphrase in batch mode? > >From what the man pages say, no. You can delete keys and there is experimental key creation with notes in the doc/DETAILS of of the s

Re: License violation: GoldBug

2013-07-27 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 If the licensing issues can be resolved GoldBug may be the only chance we have of getting people to use encryption in any form. I think it is time for attorneys to have their say. Ergo, GoldBug should have done this a little more transparently rathe

Trust of GPG4Win - Part 1

2013-07-26 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 All Disclamimer: I have no connections with the GnuPG effort other than as a thankful end user. I have a much longer Part 2 of this. After my tongue in cheek statment about the article at Technology Review I came up with what they were citing, no

Re: Why trust gpg4win?

2013-07-25 Thread Henry Hertz Hobbit
On 07/25/2013 07:34 PM, takethe...@gmx.de wrote: > Hi everybody, > > why should I trust gpg4win? I have doubts since it was ordered by the > "Bundesamt für Sicherheit in der Informationstechnik (BSI)", which has > close connections to secret services. Is gunPT any better? Finally, why > should I t

Re: PEBKAC (was GPG weakness)

2013-07-25 Thread Henry Hertz Hobbit
hout corroboration is known as hear-say. Hear-say is deemed as inadmissable in a court of law. Therefore, as Judge Hobbit I deem it inadmissable in my court-room. Furthermore I could find no place where Associate Professor Michael Donald Bailey at the University of Mich

Re: GPG detection on Windows?

2013-07-18 Thread Henry Hertz Hobbit
On 07/18/2013 05:15 PM, Anthony Papillion wrote: > Hello Everyone, > > I'm designing an application that will run on Windows and utilize > GNUPG. Right now, I'm detecting if GPG is installed by calling it > then parsing the output of the command to see if it succeeded or > failed. This is VERY me

Re: encrypting multiple files into a single output file

2013-07-16 Thread Henry Hertz Hobbit
On 07/16/2013 04:04 PM, Werner Koch wrote: > On Tue, 16 Jul 2013 17:08, ira.kirsch...@sungard.com said: > >> This will create a single "output file name" with the entire "filelist" each >> individually encrypted. > > That is the PGP Zip format, right? We support it for ages; our tool is > calle

Re: encrypting multiple files into a single output file

2013-07-16 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 07/16/2013 03:24 PM, Daniel Kahn Gillmor wrote: > Hi Ira-- > > On 07/16/2013 11:08 AM, ira.kirsch...@sungard.com wrote: >> With PGP you can do something like: pgp -e -r >> -o --archive >> >> This will create a single "output file name" with t

Re: searching for keys

2013-07-13 Thread Henry Hertz Hobbit
On 07/13/2013 09:56 PM, kardan wrote: > Hi, > > When I search for a key via browser on [1] I get an unencrypted > answer from [2]. This happens for some keys that are only > available on some servers. The problem is that the info, whose > key I am searching is presented to sniffers in plaintext. I

Re: not recognizing my passphrase after moving from XP to Win7

2013-07-11 Thread Henry Hertz Hobbit
On 07/08/2013 03:42 AM, eMyListsDDg wrote: > Hello Henry, > i copied the 32-bit XP gnupg dir contents to this dir on Win 7-64bit > > from:C:\Documents and Settings\\Application Data\gnupg > > to: C:\Users\\AppData\Roaming\gnupg\ > That is the correct folder. I have no idea on what Wi

Re: not recognizing my passphrase after moving from XP to Win7

2013-07-11 Thread Henry Hertz Hobbit
On 07/08/2013 09:22 AM, Peter Lebbing wrote: > On 07/07/13 21:53, Henry Hertz Hobbit wrote: >> I did the same there but I do modify the random_seed file with hexedit for >> each key-ring which some people object to. From my point of view that is far >> better than just

Re: Do we need / want (or already have) a mascot for OpenPGP?

2013-07-07 Thread Henry Hertz Hobbit
On 07/08/2013 01:07 AM, Werewolf wrote: > On Mon, Jul 08, 2013 at 10:24:27AM +1000, Fraser Tweedale wrote: >> How about an armadillo? > > Or a Masked armadillo? There is no such critter. There are naked-tailed, long-nosed, and hairy Armadillos but no Masked Armadillo. There is even a Pink Fairy

Re: not recognizing my passphrase after moving from XP to Win7

2013-07-07 Thread Henry Hertz Hobbit
On 07/07/2013 03:10 AM, eMyListsDDg wrote: > now i'm finding out after moving from XP to Win7 that i can't > edit my keys or decrypt email test messages. > > the passphrases to decrypt i have aren't working from command > line or my email app. > > during migration i copied all the files from > \

Re: Debian crypto strength

2013-06-27 Thread Henry Hertz Hobbit
On 06/27/2013 09:24 AM, Daniel Pocock wrote: > > Some of the discussion in this bug seems relevant to the GnuPG and > GnuPG2 packages in Debian, but the bug is against the archive > pseudo-package: > http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=612657 I wouldn't classify it as a bug but I did

Re: Transfer subkey to other keyring

2013-06-25 Thread Henry Hertz Hobbit
On 06/25/2013 06:12 PM, Jack Bates wrote: > Hello, I want to transfer a subkey from one keyring to another, but I > get the following error: > >gpg: key 7FABB65F: already in secret keyring >gpg: Total number processed: 1 >gpg: secret keys read: 1 >gpg: secret keys unchanged:

Re: GpgEX for 64 bit Windows test version

2013-06-24 Thread Henry Hertz Hobbit
On 06/24/2013 06:18 PM, Bob Henson wrote: > When I ran > > regsvr32 c:\Program Files (x86)\GNU\GnuPG2\bin\gpgex.dll > > it just caused an error, saying "The module "c:\program" failed to load. > Make sure the binary is stored at the specified path or debug it to > check for problems with the bi

Re: encrypting to a user, "There is no assurance this key belongs to the named user"

2013-06-21 Thread Henry Hertz Hobbit
On 06/21/2013 10:22 AM, Peter Lebbing wrote: > On 21/06/13 12:00, Henry Hertz Hobbit wrote: >> Who or what is "gconf"? If that is what is actually used then >> it is neither an email address or the keyid. > > I don't think that's the problem, gpg is

Re: encrypting to a user, "There is no assurance this key belongs to the named user"

2013-06-21 Thread Henry Hertz Hobbit
On 06/21/2013 07:50 AM, Michael Tokarev wrote: > Hello. > > Recently I upgraded a Debian machine from squeeze to wheezy, > which lead to upgrading gnupg from 1.4.10 to 1.4.12. And > immediately noticed that many automated tools I used stopped > working, refusing to encrypt with the error indicate

Re: How do I make the private key on a OpenPGP smartcard non exportable ?

2013-06-19 Thread Henry Hertz Hobbit
On 06/19/2013 03:21 PM, Heinz Diehl wrote: > On 18.06.2013, NdK wrote: > >> If the key is generated on-card, you have no way to backup it. No need >> for "unexportable" flag: simply there's no command to export it. > > And if the key is generated off-card and properly moved to the > smartcard af

Fail-safe backup

2013-06-13 Thread Henry Hertz Hobbit
I just answered a question on whether you could import somebody else's keys from a file named "other.txt" rather than "other.asc" or "other.gpg". While perhaps technically correct I also pointed out that Windows depends on the proper file-name extension and some Linux distros like OpenSuSE are ver

Re: File extension is .txt for gpg import. Is that ok?

2013-06-13 Thread Henry Hertz Hobbit
On 06/13/2013 03:20 AM, Anilkumar Padmaraju wrote: > Hi Gnupg Users, > > I have question that on of the user gave a file to import and the file > is having .txt extension, for example test.txt. I usually import > files having .asc or .gpg extensions. Can I do "gpg --import > test.txt" with that

Re: Clarifying the GnuPG License

2013-06-12 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 06/12/2013 09:49 AM, Nils Faerber wrote: > Am 12.06.2013 07:24, schrieb Navin: >> Hi, > Hi! > >> Since GnuPG comes under the GPL, I would like to clarify if a >> person's proprietary software makes use of GnuPG purely by >> invocation of the comm

Re: Why OpenPGP is not wanted - stupid is in vogue right now

2013-06-11 Thread Henry Hertz Hobbit
On 06/10/2013 08:46 AM, Henry Hertz Hobbit wrote: > is because for what ever reason they want to complain like mad > about Prism but then go to Facebook and broadcast their personal > lives to the entire world. Why? I would like to say I don't > know why and that it could be us

Why OpenPGP is not wanted - stupid is in vogue right now

2013-06-10 Thread Henry Hertz Hobbit
My personal observations agrees with Rob Hansen's studies 100%. Even when required to use encryption people hate doing it and their concept is entirely focused on the ciphering with them thinking that people who use encryption are trying to hide something. They don't even begin to understand that s

Re: Recommendations for handling (multiple) user IDs - personal and company ones

2013-06-09 Thread Henry Hertz Hobbit
On 06/10/2013 03:14 AM, Hauke Laging wrote: What a mouthful. I shortened it to those things most relevant to me. My keys are NOT part of the WoT due mostly to nobody around my home having OpenPGP keys. I would say that I have a higher option that you do of the Wot when contrasted with one SSL

Re: certificat for a key pair

2013-05-29 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 05/29/2013 07:27 PM, Doug Barton wrote: > On 05/29/2013 12:09 PM, Henry Hertz Hobbit wrote: | On 05/29/2013 > 06:12 AM, edgard devaux wrote: |> hello using Gnupg with linux > debian 7.0 and gnome; i created a |> key pair. my e-mai

Re: certificat for a key pair

2013-05-29 Thread Henry Hertz Hobbit
On 05/29/2013 06:12 AM, edgard devaux wrote: > hello > using Gnupg with linux debian 7.0 and gnome; i created a key pair. > my e-mail client asks me a certificat for personal to sign , and an > other certificat for the key. > How can i get this certificat for keyring , i don't find where . > e

Re: Relevance of e-mail (was [OT] Why are you using the GPG / PGP keys?)

2013-05-28 Thread Henry Hertz Hobbit
On 05/28/2013 04:32 PM, Peter Lebbing wrote: > Personally, I /am/ interested in why people use their keys (the original > question), and not in the relevance of e-mail. I use OpenPGP to sign my downloads for others. Everybody using my stuff are either French, Belgian, or Canadian French. The Lin

Re: [OT] Why are you using the GPG / PGP keys?

2013-05-28 Thread Henry Hertz Hobbit
On 05/28/2013 04:17 PM, Forlasanto wrote: > The fact remains that email is "the house that Jack built." The wall > plugs are upside down, the wiring is sketchy at best, the plumbing is > crazy and doesn't function correctly, the house is half wood and half > brick, and/Jack forgot to put locks on t

Re: [OT] Why are you using the GPG / PGP keys?

2013-05-24 Thread Henry Hertz Hobbit
On 05/24/2013 09:09 PM, Zece Anonimescu wrote: > Robert J. Hansen wrote: >> This is something I wrote for PGP-Basics a few weeks ago. It's bleak >> and depressing, but I believe it's an accurate picture of where things >> currently stand: It looks spot on to me. I cannot get anybody to use

Re: --textmode not retaining the originating EOR

2013-05-24 Thread Henry Hertz Hobbit
On 05/24/2013 04:49 PM, irak wrote: > I don't understand your answer. The original encrypted (.pgp) is provided by > a client that transmits the file to me using a binary transmission. On my > Linux server when I previously deciphered the file, it resulted in a file > with CRLF as the EOR. When I u

Re: Generating/Exporting under another user-account(Log on as a batch job rights)

2013-05-22 Thread Henry Hertz Hobbit
On 05/21/2013 05:06 PM, Werner Koch wrote: > On Tue, 21 May 2013 18:28, hhhob...@securemecca.net said: > >> 5. At the of the PATH you add: >>;C:\Program Files\GNU\GnuPG\ >>(if it already has a ";" at the end you only need one >> semi-colon) > > You should not add this but > > ;C

Windows 101 & GPG4WIN

2013-05-21 Thread Henry Hertz Hobbit
All: I assume anybody who has used Windows for a modicum of time knows the following: 0. I take an extremely dim view of not setting your Windows system up to show the ENTIRE file name, including the extension. I have thousands of malware ending in ".pdf.exe". But it is appropriate for

Re: Generating/Exporting under another user-account(Log on as a batch job rights)

2013-05-21 Thread Henry Hertz Hobbit
On 05/21/2013 08:48 AM, Lema KB wrote: > thanks for your replies > > i do have gnupg4win-2.1.0.exe. > > i wanted just to pen this Kleopatra.exe under another user (on cmd using > runas command) to see the list of keys. but it says it's missing > libkleo.dll file. but it opens from start-menu. >

Re: Total Newbie Can't Unpack Tar Ball on AIX

2013-05-21 Thread Henry Hertz Hobbit
On 05/20/2013 08:57 PM, Bettina Huber wrote: > Been told I now have to use this to develop keys and sign a file that gets > ftp'd > to the bank. We do not need to encrypt the file. Have read some of the > documentation, but understand very little of it - I can do basic commands, > but > noth

Re: Generating/Exporting under another user-account(Log on as a batch job rights)

2013-05-17 Thread Henry Hertz Hobbit
On 05/17/2013 12:57 PM, Lema KB wrote: > hi all > > I have to generate a key-pair using another user-account (which is given > right in local security settings to log on as a batch job) and export its > public key. > > i did generate on windows cmd, but after i taped the passphrase, cmd window >

Re: GnuPG 1.4.13

2013-05-15 Thread Henry Hertz Hobbit
On 05/14/2013 04:39 PM, Laurent Jumet wrote: > > Hello Henry ! > > Henry Hertz Hobbit wrote: > >>>>> ftp://ftp.gnupg.org/gcrypt/binary/gnupg-w32cli-1.4.13.exe >>> >>>> Thanks very much - duly installed. >>> >>>

Re: GnuPG 1.4.13

2013-05-14 Thread Henry Hertz Hobbit
On 05/14/2013 09:24 AM, Laurent Jumet wrote: > > Hello Bob ! > > Bob Henson wrote: > >>> ftp://ftp.gnupg.org/gcrypt/binary/gnupg-w32cli-1.4.13.exe > >> Thanks very much - duly installed. > > I'm using this for my own, you may find it useful too: > > http://www.pointdechat.net/MyMan_GnuPG

Re: How can I extract the --embedded-filename for scripting?

2013-05-09 Thread Henry Hertz Hobbit
On 05/09/2013 08:30 AM, Peter Lebbing wrote: > On 08/05/13 21:01, Werner Koch wrote: >> That is not crude but a standard Unix pattern. > > I considered putting the status-fd stuff into a file, then reading the file > and > finally deleting it a much cruder method than connecting the parsing logic

Re: Suggest please

2013-05-03 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 05/03/2013 08:43 PM, Henry Hertz Hobbit wrote: First, I think public key encryption is apropos for what you are doing if privacy is a concern. The way you approached it without telling us you are on Windows until later on indicates privacy IS

Re: Suggest please

2013-05-03 Thread Henry Hertz Hobbit
First, a restriction on who can access folder restricted to just a group on 'nix should probably be: drwxrwx--- (chmod 770 dir - all group members can write) drwxr-x--- (chmod 750 dir - only owner can write) http://www.securemecca.com/public/ChmodTable.txt On OpenVMS you can and the military

Re: Suggest please

2013-05-03 Thread Henry Hertz Hobbit
On 05/03/2013 08:45 AM, Lema KB wrote: Werner is of course correct but since you need to do a send to userid_1, userid_2, and userid_3 you will need the public key for all three of the recipients. You need the public key for each person you want to send a public key enciphered (encrypted) file

Re: random_seed - no locks available

2013-04-29 Thread Henry Hertz Hobbit
On 04/29/2013 02:43 PM, M Russell wrote: > Hello, > > I hope someone might be able to lend me a hand. I am running > into an error message that I resolve. I get a lock error when > trying to encrypt or decrypt a file. I found other forums > that suggest deleting the random_seed file and killing

OpenSuse 11.4 - OOPS!

2013-04-29 Thread Henry Hertz Hobbit
Correction. My signfile script makes detached signatures with no problems, the pcrypt script makes public encrypted files with no problems, and the decrypt script decrypts the publicly encrypted files with no problems on OpenSuse 11.4. Here is what gets printed in the xterm when I try to do a a

Re: gpgee operation failed

2013-04-29 Thread Henry Hertz Hobbit
On 04/29/2013 03:39 AM, 儒風管理部-潘右文 wrote: > Hi there , > > Can someone help me with this error? > > I reinstalled the program , and encrypt the file again, still don’t work. > > I used to encrypt file without any issue. My program version is 1.1.4. > > Thanks. Are you saing it used to encrypt

Re: gpgee operation failed

2013-04-29 Thread Henry Hertz Hobbit
On 04/29/2013 03:39 AM, 儒風管理部-潘右文 wrote: > Hi there , > > Can someone help me with this error? > > I reinstalled the program , and encrypt the file again, still don’t work. > > I used to encrypt file without any issue. My program version is 1.1.4. > > Thanks. Has the key expired? I notice y

No passphrase required

2013-04-22 Thread Henry Hertz Hobbit
Both of my Linux systems were recently involved in a test of about a dozen plus replacments for OpenSuse 11.4 and Ubuntu 10.04. After all the experimenting was over I ended up with the same operating systems but swapped with each having the OS that was on the other machine before the experimentati

Re: One Private Key for several users

2013-04-22 Thread Henry Hertz Hobbit
On 04/22/2013 11:52 AM, Peter Lebbing wrote: > On 22/04/13 12:44, Henry Hertz Hobbit wrote: >> I just copy my whole key ring (contents of ~/.gnupg folder on Linux) >> among my multiple OS with the random_seed file modified with hexedit >> and the 0-9 & A-F modified with

Re: One Private Key for several users

2013-04-22 Thread Henry Hertz Hobbit
On 04/22/2013 07:28 AM, Lema KB wrote: > Hi all > > Is there any other way of using one and the same private-key by several > users, except exporting the priv-key? > We are decrypting some csv-files on a virtual machine. and it's for us not > so appropriate to share private-key through exporting.

Re: question on decryption with missing passcode

2013-04-17 Thread Henry Hertz Hobbit
On 04/18/2013 12:28 AM, Daniel Kahn Gillmor wrote: > On 04/17/2013 06:25 PM, Daniel Kahn Gillmor wrote: >> On 04/17/2013 05:05 PM, Beith, Linda wrote: >>> Gpg: can't open 'rwu.dbdump_Nov2012.sql.gz.gpg' Gpg: >>> decrypt_message filed: file open error >> >> >> This message suggests that there is a

Re: question on decryption with missing passcode

2013-04-17 Thread Henry Hertz Hobbit
On 04/17/2013 11:39 PM, Henry Hertz Hobbit wrote: > On 04/17/2013 09:05 PM, Beith, Linda wrote: > >> Gpg: can't open 'rwu.dbdump_Nov2012.sql.gz.gpg' >> Gpg: decrypt_message filed: file open error > > Daniel Kahn Gillmor is correct on this being a file permi

Re: question on decryption with missing passcode

2013-04-17 Thread Henry Hertz Hobbit
On 04/17/2013 09:05 PM, Beith, Linda wrote: > Gpg: can't open 'rwu.dbdump_Nov2012.sql.gz.gpg' > Gpg: decrypt_message filed: file open error Daniel Kahn Gillmor is correct on this being a file permissions problem or maybe an OS problem for a file of that large size. Like Daniel, I assume the first

Re: Backing up Private Keys

2013-04-15 Thread Henry Hertz Hobbit
On 04/15/2013 09:07 PM, Robert J. Hansen wrote: > On 4/15/2013 1:24 AM, Ashley Holman wrote: >> I also have a followup question. Is it acceptable practice to make a >> paper backup of your private key by exporting it in ascii armored mode >> and printing it onto some paper? (with a passphrase app

Re: Using smartcard as RNG

2013-04-14 Thread Henry Hertz Hobbit
On 04/14/2013 12:18 AM, Henry Hertz Hobbit wrote: > On 04/13/2013 11:04 AM, Pete Stephenson wrote: > >> [1] http://www.entropykey.co.uk/ [3] > I take it back. Farther down Aaron's page it DOES say it fills up /dev/random. So it IS compatible. I am doing way too many thin

Re: Using smartcard as RNG

2013-04-13 Thread Henry Hertz Hobbit
On 04/14/2013 12:55 AM, Hauke Laging wrote: > Am So 14.04.2013, 00:18:09 schrieb Henry Hertz Hobbit: >> On 04/13/2013 11:04 AM, Pete Stephenson wrote: >> >> >>> [1] http://www.entropykey.co.uk/ [3] >> >> >> >> Are you sure you aren't adv

Re: Using smartcard as RNG

2013-04-13 Thread Henry Hertz Hobbit
On 04/13/2013 11:04 AM, Pete Stephenson wrote: > [1] http://www.entropykey.co.uk/ [3] Are you sure you aren't advertising it? Using the URL you supplied, this one has been written about and the link you are looking for (well, at least one of them) is from its links: http://www.entropykey.co.u

Re: gpg2 does not ask for pass phrase

2013-04-11 Thread Henry Hertz Hobbit
On 04/10/2013 03:18 PM, Werner Koch wrote: > Hi, > > please write to gnupg-users@gnupg.org and not to the webmaster address. > > Thanks, > > Werner > Sorry. Right now I am not subscribed and haven't been for years. It is just that this is a serious issue where I had no way that I could eas

Re: Compression routines - please include 7-Zip

2007-08-20 Thread Henry Hertz Hobbit
Settle down. I am arguing for the inclusion of 7zip IN THE FUTURE! I am just afraid it is going to get overlooked again yet one more time. The fact that 7zip doesn't store the UID:GID is a plus in my mind. It allows you to get what ever UID:GID YOU are when you unzip it. That is better than som

Compression routines - please include 7-Zip

2007-08-20 Thread Henry Hertz Hobbit
Werner: Für die Unterzeichnung danke. This is amazing for somebody whose father was run out of nothern Mexico (Me-hico) by Pancho Villa's raiders. I have been using the 7-Zip compression long enough to give Igor Pavlov the nod he has longed for. Bzip2 is good. 7-Zip is better. If you want to kn

Re: Windows / Linux encoding issues

2007-07-30 Thread Henry Hertz Hobbit
Sacha <[EMAIL PROTECTED]> wrote: > I've created my key pair using WinPT under Windows 2000. I used special > characters (like ?, ?, ?, ?, etcetera) in my passphrase. > > Since a hard drive crash, I've installed Gentoo Linux on the computer > and I can not found my Windows 2000 installation CD. I

Re: gpg2 for windows?

2007-07-18 Thread Henry Hertz Hobbit
On Wed, 2007-07-18 at 12:41 -0600, Henry Hertz Hobbit wrote: > On Wed, 2007-07-18 at 00:08 +0200, Werner Koch wrote: > I would say it a little differently than that Werner. bzip2 is NOT part > of Windows. It sounds to me like you are asking for the world. Which > ZIP add on program

Re: gpg2 for windows?

2007-07-18 Thread Henry Hertz Hobbit
On Wed, 2007-07-18 at 00:08 +0200, Werner Koch wrote: > On Wed, 18 Jul 2007 00:08, [EMAIL PROTECTED] said: > > > Are there any plans to provide a gpg2 installer for windows? > > as i am not interested in using the gpg4win package. Nevertheless, use it. It is what they are standardizing on and y

Re: decrypting many files to stdout

2007-06-29 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Crest wrote: > Ken Takusagawa wrote: > >> I have many files that are all encrypted with the same public key, and >> the private key is protected with a passphrase. Is there a way that I >> can decrypt all of them at once, concatenate the results a

Compression before encryption is best

2007-06-22 Thread Henry Hertz Hobbit
Ryan: That was a bad example to give you, and I DID use public encryption given what was in the file to give it a little greater protection. But because it contains all binary files, you don't get much from compression anyway. I must hasten to add for the files that are in the Quarantine folder t

Re: Re: RSA 4096 ridiculous?

2007-06-22 Thread Henry Hertz Hobbit
Ryan Malayter" <[EMAIL PROTECTED]> wrote: >On 6/19/07, Henry Hertz Hobbit <[EMAIL PROTECTED]> wrote: >> than it took me to tar it. It also takes me much less time to >> encrypt the tarred file than it takes to do the final bzip2 of the >> encrypted file. &

Re: FireGPG Report

2007-06-22 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Henry Hertz Hobbit wrote: > I have done some extensive testing of FireGPG. Here are the > results of the tests (the files will be there until the end > of the present month): > > http://www.securemecca.com/ Fir

Re: RSA 4096 ridiculous?

2007-06-22 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Werner Koch <[EMAIL PROTECTED]> wrote: > The sign operation is of course far slower: A single sign operation > takes 0.28 seconds on my 1500Mhz Pentium M. Given that this is the same > time as for a decrypt operation, this will be noticable if yo

FireGPG Report

2007-06-22 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 FireGPG: Here is the information on FireGPG which primarily does INLINE rather than OpenPGP/MIME encryption and signing: http://firegpg.tuxfamily.org/ FireGPG works well for INLINE encrypting and decrypting. You can use FireGPG to send /

Re: If the message is encrypted symmetrically

2007-06-21 Thread Henry Hertz Hobbit
Joseph Oreste Bruni <[EMAIL PROTECTED]> wrote: > To extend our discussion, suppose I wish to send an encrypted message > to multiple recipients. I would then encrypt the (randomly generated) > symmetric key to each recipient's public key in turn. All of the > encrypted copies (of the symmetr

Re: RSA 4096 ridiculous? (was RSA 1024 ridiculous)

2007-06-20 Thread Henry Hertz Hobbit
Snoken wrote: > Hi, > Interoperability with PGP 8 matters too. > Signatures made with RSA 4096-keys (or shorter) and SHA256 can be > verified by users of PGP 8. > N.B. Not any other new hashes! > Please note the option: --pgp8 > Snoken What I was trying to do was bring a real world perspective to

RSA 4096 ridiculous? (was RSA 1024 ridiculous)

2007-06-19 Thread Henry Hertz Hobbit
difference in the times of verifying the file with both sigs (and I don't have a super fast machine - the CPU is over three years old): # 1024 BIT DSA KEY $ time gpg --verify hosts.sig gpg: Good signature from "Henry Hertz Hobbit <[EMAIL PROTECTED]>" real0m0.041s user

Re: Revoke and expire

2007-06-13 Thread Henry Hertz Hobbit
[EMAIL PROTECTED] wrote: David Shaw <[EMAIL PROTECTED]> wrote: > On Mon, Jun 11, 2007 at 10:24:23PM +0530, Hardeep Singh wrote: >> Hi >> >> When a key is revoked using the revocation certificate, does it have >> the same effect as reaching the expiry date of the key? In other words >> if I set a k

Re: setting expiration dates

2007-06-06 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Joseph Oreste Bruni wrote: > This is interesting: After changing my encryption subkey's expiration > by a few days (from 2008-02-07 to 2008-01-01), I tried to upload the > updated key to the PGP Global Directory (http://keyserver.pgp.com). > I

Re: initial GnuPG install?

2007-06-06 Thread Henry Hertz Hobbit
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Andrew Berg <[EMAIL PROTECTED]> wrote: > > Claude Poliakoff, MD FACS wrote: >> downloaded and installed the Windows XP binary, tried entering >> gpg.exe in a DOS cmd window, and command not recognized, so off >> to Control Panel -> System -> advanced

Re: gpg and cron

2007-06-04 Thread Henry Hertz Hobbit
Peter S. May wrote: > > Arsha Bertie wrote: >> i have been trying to run a script which encrypts and transfers files >> between 2 branches, i am using gpg for encryption, i have written a bash >> script and the script is working perfectly fine, but when i run it off a >> cron it doesnt want to wo

  1   2   >