شهادة الأبوة في المغرب

2025-08-04 Thread walid falcon via Gnupg-users
. ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

mailbox.org's WKD implement

2025-07-24 Thread xlin--- via Gnupg-users
If you have any insight about that, please kindly share! Thanks. Sincerely, Lin _______ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

mailbox.org's WKD implementation

2025-07-24 Thread xlin--- via Gnupg-users
ork. If you have any insight about that, please kindly share! Thanks. Sincerely, Lin signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

GPGtools, and me.

2025-07-23 Thread Robert J. Hansen via Gnupg-users
olerated for at least a little bit. So please let me tell you about a libre software business I've had a positive experience with. GPGtools integrates GnuPG with Apple Mail. It does not do so perfectly: you'll still need to use other applications to do key management and whatnot. Alth

gpgme Python binding to PyPY plan (Re: Replacement for the gone gpgme Python library?)

2025-07-23 Thread Bernhard Reiter via Gnupg-users
Sebastian, Am Mittwoch 16 Juli 2025 12:34:34 schrieb Sebastian Wagner via Gnupg-users: > Their work only consisted of development, not the uploading of packages > to PyPI. the plan of Paul and me is to upload a current version of the GPGME Python bindungs to PyPI again. We have added

Re: Replacement for the gone gpgme Python library?

2025-07-16 Thread Sebastian Wagner via Gnupg-users
Hi Eva On 11/07/2025 13:57, Eva Bolten via Gnupg-users wrote: Have a look at the gnupg-devel list, there have been several threads regarding python bindings of gpg and pypy recently, e.g.: https://lists.gnupg.org/pipermail/gnupg-devel/2025-June/035961.html https://lists.gnupg.org/pipermail

[Announce] GnuPG 2.5.9 released

2025-07-14 Thread Werner Koch via Gnupg-users
Hello! We are pleased to announce the availability of a new GnuPG release. Version 2.5.9 which will soon lead us to the new stable 2.6 series. This release mostly fixes regression in the previous releases. The main features in the 2.6 series are improvements for 64 bit Windows and the

Re: Replacement for the gone gpgme Python library?

2025-07-11 Thread Sebastian Wagner via Gnupg-users
OpenPGP_signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Replacement for the gone gpgme Python library?

2025-07-11 Thread Eva Bolten via Gnupg-users
Hi Sebastian, > So the packages are no longer updated on pypi? The gpg library published > there is seven years old and broken. Have a look at the gnupg-devel list, there have been several threads regarding python bindings of gpg and pypy recently, e.g.: https://lists.gnupg.org/pipermail

Replacement for the gone gpgme Python library?

2025-07-11 Thread Sebastian Wagner via Gnupg-users
Dear gnupg community what is the correct replacement for the gone gpgme library? https://pypi.org/project/gpgme/ which has vanished somewhere between June 10th and June 18th The library published as gpg (https://pypi.org/project/gpgme/) is not a replacement as that itself depends on the

Re: Replacement for the gone gpgme Python library?

2025-07-11 Thread Sebastian Wagner via Gnupg-users
___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Replacement for the gone gpgme Python library?

2025-07-11 Thread Sebastian Wagner via Gnupg-users
Dear gnupg community what is the correct replacement for the gone gpgme library? https://pypi.org/project/gpgme/ which has vanished somewhere between June 10th and June 18th The library published as gpg (https://pypi.org/project/gpgme/) is not a replacement as that itself depends on the

Re: gpgsm bash completion

2025-07-06 Thread Collin Funk via Gnupg-users
Werner Koch via Gnupg-users writes: > On Thu, 3 Jul 2025 21:21, Marco Moock said: > >> I noticed that gpg support bash command completion, but gpgsm doesn't. >> Was that ever available for gpgsm? > > No idea. Should be easy to implement by parsing "gpgsm --dum

Re: gpgsm bash completion

2025-07-06 Thread Werner Koch via Gnupg-users
f a warless world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature _______ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: gpgsm bash completion

2025-07-05 Thread Collin Funk via Gnupg-users
Hi Marco, Marco Moock via Gnupg-users writes: > I am running Debian with 2.4.8-1. > > I noticed that gpg support bash command completion, but gpgsm doesn't. > Was that ever available for gpgsm? The bash completions for 'gpg' are maintained by the bash-completion

gpgsm bash completion

2025-07-03 Thread Marco Moock via Gnupg-users
ature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-27 Thread To Damon via Gnupg-users
> 51f9e32f62fa6745c5cb09c2412a >> >> The trustdb is probably corrupt. Try this: >> >> $ gpg --fix-trustdb >> gpg: You may try to re-create the trustdb using the commands: >> gpg: cd ~/.gnupg >> gpg: gpg --export-ownertrust > otrust.tmp >&

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-27 Thread To Damon via Gnupg-users
ation. > > > Shalom-Salam, > > Werner > > -- > The pioneers of a warless world are the youth that > refuse military service. - A. Einstein ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-27 Thread Werner Koch via Gnupg-users
ion: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-26 Thread To Damon via Gnupg-users
! > >>>> gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: >>>> 51f9e32f62fa6745c5cb09c2412a > > The trustdb is probably corrupt. Try this: > > $ gpg --fix-trustdb > gpg: You may try to re-create the trustdb using the commands: > gpg: cd ~/.gnupg

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-25 Thread ccogcj--- via Gnupg-users
This has been an ongoing problem after the yang merge On Tue, Jun 24, 2025 at 4:05 AM To Damon via Gnupg-users < gnupg-users@gnupg.org> wrote: > gpg (GnuPG) 2.4.8 still has these issues. > > > Hi Werner Koch, would you mind taking a look at this issue when you have a > mome

Verifying multiple detached signatures avoiding "multiple signatures detected. Only the first will be checked"

2025-06-25 Thread Graham Leggett via Gnupg-users
ng warning: gpg: WARNING: multiple signatures detected. Only the first will be checked. Oops. Digging through archaeological layers of the internet we find this: https://lists.gnupg.org/pipermail/gnupg-devel/2013-January/027284.html Which summed up says concatenated signatures don't work unles

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-25 Thread Werner Koch via Gnupg-users
Hi! >>> gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: >>> 51f9e32f62fa6745c5cb09c2412a The trustdb is probably corrupt. Try this: $ gpg --fix-trustdb gpg: You may try to re-create the trustdb using the commands: gpg: cd ~/.gnupg gpg: gpg --export-ownertrus

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-24 Thread To Damon via Gnupg-users
gpg (GnuPG) 2.4.8 still has these issues. Hi Werner Koch, would you mind taking a look at this issue when you have a moment? > On 13 Jun 2025, at 22:34, Andrew Gallagher wrote: > > On 13 Jun 2025, at 15:29, To Damon wrote: >> >>> gpg --list-secret-keys --with-finge

Re: Issues with 2.5.8.

2025-06-24 Thread NIIBE Yutaka via Gnupg-users
Lorum Ipsum wrote: > I just installed GnuPG 2.5.8., and immediately ran into issues with with it. > > The first issue was encrypting data: when attempting to encrypt a message, > I got the following error message: > > gpg: pubkey_encrypt failed: Invalid data > gpg: b

Re: Issues with 2.5.8.

2025-06-24 Thread Werner Koch via Gnupg-users
no expect an immediate 2.5.9 release to fix this issue. Shalom-Salam, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gn

Re: Locked resources post execution

2025-06-24 Thread Werner Koch via Gnupg-users
On Sun, 22 Jun 2025 21:46, Suhas Srivastava said: > library. After examining that issue, the author suggested that the leftover > lock files may be a gpg issue and not a library issue. The whole error These lock files like ~/.gnupg/#lk0x558d3fe5e990.foo.24728 are created as p

Issues with 2.5.8.

2025-06-23 Thread Lorum Ipsum via Gnupg-users
I just installed GnuPG 2.5.8., and immediately ran into issues with with it. The first issue was encrypting data: when attempting to encrypt a message, I got the following error message: gpg: pubkey_encrypt failed: Invalid data gpg: build_packet(PLAINTEXT) failed: Invalid data gpg

Locked resources post execution

2025-06-22 Thread Suhas Srivastava via Gnupg-users
Thanks Werner for your response. I am using the python-gnupg <https://github.com/vsajip/python-gnupg> project to manage GPG related operations and I encountered an error where, after key creation, certain lock files remain in the system. Thinking that the lock files are left over

Re: Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-21 Thread bbhtt via Gnupg-users
names is coming from "GPG on host" vs. "GPG running inside the Flatpak container". - bbhtt https://bbhtt.space ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-21 Thread Werner Koch via Gnupg-users
n have a /etc/gnupg/gpg-agent.conf file which is read before the ~/.gnupg/gpg.conf file? This might already help - I don't know the details of flatpack, though. What you can also do is to examine an environment variable and set the rspecive options depending on the envvar. For example assumi

Re: Request for dev.gnupg.org account

2025-06-21 Thread Werner Koch via Gnupg-users
ss world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Request for dev.gnupg.org account

2025-06-20 Thread Suhas Srivastava via Gnupg-users
Hi Team, I received a mail from GnuPG today stating that ebo (Eva) has created an account for me with the username: suhas.srivastava I even received a link to phabricator to set my password but opening that link brings up a 403 forbidden page. I request for a dev.gnupg.org account because I have

[Announce] GnuPG 2.5.8 released

2025-06-20 Thread Werner Koch via Gnupg-users
Hello! We are pleased to announce the availability of a new GnuPG release: version 2.5.8. This release is another one in a series of public testing releases eventually leading to a new stable version 2.6. The main features in the 2.6 series are improvements for 64 bit Windows and the

Request for dev.gnupg.org account

2025-06-19 Thread Suhas Srivastava via Gnupg-users
.tech Please let me know if any further information is needed. Thanks & Regards, Suhas Srivastava _______ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: "keyserver receive failed: Try again later" on macOS

2025-06-18 Thread Andrew Gallagher via Gnupg-users
On 18 Jun 2025, at 17:15, Walt Mankowski wrote: > > Good idea! I renamed my .gnupg directory, killed dirmngr, and then tried to > receive a key: > > % gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys > 7FE79B445728C8EA0042839E45BCE75B840B1F69 > gpg: directory &

Re: "keyserver receive failed: Try again later" on macOS

2025-06-18 Thread Walt Mankowski via Gnupg-users
11371/tcp# OpenPGP HTTP Keyserver >> >> I tried commenting out the udp version and restarting dirmngr, but that had >> no effect. > No, I wouldn’t expect it to. /etc/services is mainly informational these > days, most applications hard code their port numbers. >

Re: "keyserver receive failed: Try again later" on macOS

2025-06-18 Thread Walt Mankowski via Gnupg-users
Good idea! I renamed my .gnupg directory, killed dirmngr, and then tried to receive a key: % gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 7FE79B445728C8EA0042839E45BCE75B840B1F69 gpg: directory '/Users/waltman/.gnupg' created It hung for several minutes and then I killed it

Re: "keyserver receive failed: Try again later" on macOS

2025-06-18 Thread Andrew Gallagher via Gnupg-users
e GPGtools installed, which makes it difficult to replicate your environment - but I made sure to kill dirmngr and allow the homebrew gpg to start its own, and I haven’t seen any issues with keyserver connectivity. Could you try renaming your .gnupg directory temporarily and checking if the

Re: Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-18 Thread bbhtt via Gnupg-users
ost<->host case (nothing is changed there). - bbhtt https://bbhtt.space _______ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: "keyserver receive failed: Try again later" on macOS

2025-06-18 Thread Andrew Gallagher via Gnupg-users
No, I wouldn’t expect it to. /etc/services is mainly informational these days, most applications hard code their port numbers. A signature.asc Description: Message signed with OpenPGP _______ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-18 Thread Werner Koch via Gnupg-users
OL for 2.4 will be reached in one year. Shalom-Salam, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailin

Re: "keyserver receive failed: Try again later" on macOS

2025-06-17 Thread Walt Mankowski via Gnupg-users
e udp version and restarting dirmngr, but that had no effect. Walt On Mon, Jun 16, 2025, at 5:53 AM, Andrew Gallagher wrote: > On 14 Jun 2025, at 21:36, Walt Mankowski via Gnupg-users > wrote: >> >> Every time I try to import a key, it fails almost immediately with the error >&g

Re: "keyserver receive failed: Try again later" on macOS

2025-06-16 Thread Andrew Gallagher via Gnupg-users
On 14 Jun 2025, at 21:36, Walt Mankowski via Gnupg-users wrote: > > Every time I try to import a key, it fails almost immediately with the error > > gpg: keyserver receive failed: Try again later > > I've tried a number of different keyservers and keep getting the s

Re: "keyserver receive failed: Try again later" on macOS

2025-06-15 Thread Jacob Bachmeyer via Gnupg-users
On 6/15/25 06:36, Walt Mankowski via Gnupg-users wrote: [...] I couldn't find any similar error reports on gnupg-users or gnupg-devel. It does make searching a bit tough, though, when I keep finding it referred to as "OSX" or "OS X" even though Apple changed the nam

Re: "keyserver receive failed: Try again later" on macOS

2025-06-15 Thread Walt Mankowski via Gnupg-users
Hi C.J., Good to see you too. I didn't run any tests since I installed the binary using homebrew. I suppose trying to install from source will be my next step. I couldn't find any similar error reports on gnupg-users or gnupg-devel. It does make searching a bit tough, though, w

"keyserver receive failed: Try again later" on macOS

2025-06-14 Thread Walt Mankowski via Gnupg-users
Hi, I recently got a new MacBook Air and I'm having trouble setting up gpg on it. I'm running macOS Sequoia 15.5 and the laptop has an Apple M4 chip. I installed gpg 2.4.8 using homebrew and copied my .gnupg directory from my older Intel-based MacBook Pro. It can use existing keys

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-13 Thread To Damon via Gnupg-users
gpg: key occurs more than once in the trustdb gpg: checking the trustdb gpg: Note: ultimately trusted key not found gpg: no ultimately trusted keys found /home/user/.gnupg/pubring.kbx > gpg --export-options export-minimal --export 6B335000 | gpg > --list-p

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-13 Thread Andrew Gallagher via Gnupg-users
226b335000 > gpg: key occurs more than once in the trustdb > gpg: checking the trustdb > gpg: Note: ultimately trusted key not found > gpg: no ultimately trusted keys found > /home/user/.gnupg/pubring.kbx This looks like there is a second issue, which is

Re: Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-13 Thread Andrew Gallagher via Gnupg-users
On 5 Jun 2025, at 10:24, To Damon via Gnupg-users wrote: > >> gpg --list-secret-keys --keyid-format=long --with-keygrip > gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: > e32f62fa6745c5cb09c2412a At some point it appears to have converted a v4 fingerprint with

Trust assignment fails for key with fingerprint ending in multiple zero blocks

2025-06-13 Thread To Damon via Gnupg-users
When a GPG key has a fingerprint or keyID that ends with a long sequence of zero bytes (e.g., ), GnuPG fails to assign trust to the key and reports an error when running `gpg --check-trustdb` or using the key in Git signature verification. This appears to be a bug in the

Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-12 Thread bbhtt via Gnupg-users
Hi, I couldn't figure out how to get an account on `dev.gnupg.org` so I'm posting this to the list. Recently, we (the maintainers of the Flatpak runtime - Freedesktop SDK) patched GnuPG to skip sending `DBUS_SESSION_BUS_ADDRESS` from inside the Flatpak sandbox (inside the sandbox G

Patching GnuPG to skip sending DBUS_SESSION_BUS_ADDRESS in Flatpak

2025-06-12 Thread bbhtt via Gnupg-users
Hi, I couldn't figure out how to get an account on `dev.gnupg.org` so I'm posting this to the list. Recently, we (the maintainers of the Flatpak runtime - Freedesktop SDK) patched GnuPG to skip sending `DBUS_SESSION_BUS_ADDRESS` from inside the Flatpak sandbox (inside the sandbox G

Re: initializing/unlocking key explicitely with gpg-agent

2025-06-11 Thread Werner Koch via Gnupg-users
That is likley a systemd thing. Snippet from the latest README: If your systems already comes with a systemd enabled GnuPG, you should thus tell it not to start its own GnuPG daemons by running the following three commands once: systemctl --user mask --now gpg-agent.service \

Re: [FYI] Development of GnuPG for OS X discontinued

2025-06-07 Thread Marco Moock via Gnupg-users
Am 07.06.2025 um 18:17:53 Uhr schrieb Daniel Brandes via Gnupg-users: > Am 28.05.25 um 09:38 schrieb Daniel Brandes: > > Am 28.05.25 um 07:38 schrieb Christoph Klassen via Gnupg-users: > >> maybe it's of interest for some of you that the development of > >> Gn

Re: [FYI] Development of GnuPG for OS X discontinued

2025-06-07 Thread Daniel Brandes via Gnupg-users
Am 28.05.25 um 09:38 schrieb Daniel Brandes: Am 28.05.25 um 07:38 schrieb Christoph Klassen via Gnupg-users: maybe it's of interest for some of you that the development of GnuPG for OS X ended in March this year How does that affect third-party implementations like GPGtools and Thunde

Re: initializing/unlocking key explicitely with gpg-agent

2025-06-07 Thread Werner Koch via Gnupg-users
- A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: "Can't connect to 'log-socket': Connection refused

2025-06-07 Thread Werner Koch via Gnupg-users
- A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: S/MIME which certificate format

2025-06-06 Thread Marco Moock via Gnupg-users
: nicht importiert: 2 [GNUPG:] FAILURE gpgsm-exit 50331649 test@localhost:~> gpgsm --version gpgsm (GnuPG) 2.5.7 libgcrypt 1.11.1 libksba 1.6.7 Copyright (C) 2025 g10 Code GmbH License GNU GPL-3.0-or-later <https://gnu.org/licenses/gpl.html> This is free software: you

Re: "Can't connect to 'log-socket': Connection refused

2025-06-06 Thread Jakob Bohm via Gnupg-users
On 6/6/2025 14:32:41, Werner Koch via Gnupg-users wrote: On Thu, 5 Jun 2025 21:14, aslamK said: However, if 'log-file' is set in gpg.conf, then the following does not override it; the output is written to the log-file but not to stderr: gpg --logger-fd 2 --verify file_to_

Re: "Can't connect to 'log-socket': Connection refused

2025-06-06 Thread Werner Koch via Gnupg-users
e.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: "Can't connect to 'log-socket': Connection refused

2025-06-04 Thread Werner Koch via Gnupg-users
Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Request for dev.gnupg.org account

2025-06-03 Thread Philipe Rabelo via Gnupg-users
:philipe_...@hotmail.com> Please let me know if you need any further information. Thank you in advance! Best regards, Philipe ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Signing a file given its hash only

2025-06-03 Thread Jakob Bohm via Gnupg-users
On 6/1/2025 16:54:19, Richard Stoughton via Gnupg-users wrote: On Tue, May 20, 2025 at 10:09 AM Werner Koch wrote: On Mon, 19 May 2025 15:40, Richard Stoughton said: creates the final signatures. This could be done in a much more efficient way if GnuPG would be able to create signatures with

Re: [Announce] GnuPG 2.5.7 released

2025-06-03 Thread Bernhard Reiter via Gnupg-users
Hi, congratulations on the new release! (Just did the Fediverse news: https://mstdn.social/@GnuPG/114618339067357870 ) Am Montag 02 Juni 2025 18:10:17 schrieb Werner Koch: > This release is another one in a series of public > testing releases eventually leading to a new stable versi

Re: [Announce] GnuPG 2.5.7 released

2025-06-03 Thread Werner Koch via Gnupg-users
On Mon, 2 Jun 2025 18:10, Werner Koch said: > We are pleased to announce the availability of a new GnuPG release: > version 2.5.7. This release is another one in a series of public > testing releases eventually leading to a new stable version 2.7. Of course the above line should read

[Announce] GnuPG 2.5.7 released

2025-06-02 Thread Werner Koch via Gnupg-users
Hello! We are pleased to announce the availability of a new GnuPG release: version 2.5.7. This release is another one in a series of public testing releases eventually leading to a new stable version 2.7. The main features in the 2.6 series are improvements for 64 bit Windows and the

Re: Signing a file given its hash only

2025-06-02 Thread Wiktor Kwapisiewicz via Gnupg-users
ar-request-signature/resources/docs/design.md?ref_type=heads [1]: https://www.rfc-editor.org/rfc/rfc4880#section-5.2.3 [2]: https://www.ietf.org/archive/id/draft-koch-librepgp-03.html#name-version-4-and-5-signature-p ___ Gnupg-users mailing list G

Re: Securely signing build artifacts (was: Signing a file given its hash only)

2025-06-01 Thread Jacob Bachmeyer via Gnupg-users
On 6/1/25 09:54, Richard Stoughton via Gnupg-users wrote: [...] So we'll try another approach to preserve the security level of M on L: H injects a secret nonce into a build run on M. M uses the nonce to create a MAC for each artifact it creates. M pushes the MACs along with the artifacts

Re: Signing a file given its hash only

2025-06-01 Thread Richard Stoughton via Gnupg-users
d is inserted, > w/the correct PIN is entered, and M never gains access to read the secret. Currently M are short-lived cloud instances that run the build process without user interaction. I don't see how to use a HSM or similar hardware in this case. ____

Re: Signing a file given its hash only

2025-06-01 Thread Richard Stoughton via Gnupg-users
ts. The security of the complete process is limited by M. The purpose of H is solely to limit access to the private signature key. M signing the artifacts by itself would require the key to float around. ___ Gnupg-users mailing list Gnupg-users@gnupg

Re: Signing a file given its hash only

2025-06-01 Thread Richard Stoughton via Gnupg-users
On Tue, May 20, 2025 at 10:09 AM Werner Koch wrote: > > On Mon, 19 May 2025 15:40, Richard Stoughton said: > > > creates the final signatures. This could be done in a much more > > efficient way if GnuPG would be able to create signatures with hashes > > instead of t

Re: Deterministic signatures digest prefix

2025-06-01 Thread Werner Koch via Gnupg-users
so what's the point of the signature then? Shalom-Salam, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users

Re: [FYI] Development of GnuPG for OS X discontinued

2025-05-29 Thread Pyromania via Gnupg-users
On Wed, May 28 2025, Christoph Klassen via Gnupg-users wrote: > Hello, > Maybe it's of interest for some of you that the development of GnuPG > for OS X ended in March this year: > https://sourceforge.net/p/gpgosx/docu/Home/. Does it mean that any product based on GPG will

Re: [FYI] Development of GnuPG for OS X discontinued

2025-05-29 Thread Pyromania via Gnupg-users
On Wed, May 28 2025, Ralph Seichter via Gnupg-users wrote: > * Daniel Brandes via Gnupg-users: >> How does that affect third-party implementations like GPGtools and >> Thunderbird on a Mac? > It does not affect them. GnuPG for OS X / macOS was a standalone build > of t

Re: Deterministic signatures digest prefix

2025-05-29 Thread Andrew Gallagher via Gnupg-users
On 29 May 2025, at 15:28, Richard Ulrich via Gnupg-users wrote: > > By using faketime, I harmonized the timestamp that is part of the signature. > The > main difference I see at the moment is the "Digest prefix" > Even with lots of searching and reading all sorts o

Deterministic signatures digest prefix

2025-05-29 Thread Richard Ulrich via Gnupg-users
group.com / legal-notices .' ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: [FYI] Development of GnuPG for OS X discontinued

2025-05-28 Thread Ralph Seichter via Gnupg-users
* Daniel Brandes via Gnupg-users: > How does that affect third-party implementations like GPGtools and > Thunderbird on a Mac? It does not affect them. GnuPG for OS X / macOS was a standalone build of the official GnuPG and accompanying libraries (each from source), not something used as p

Re: [FYI] Development of GnuPG for OS X discontinued

2025-05-28 Thread Daniel Brandes via Gnupg-users
Am 28.05.25 um 07:38 schrieb Christoph Klassen via Gnupg-users: maybe it's of interest for some of you that the development of GnuPG for OS X ended in March this year How does that affect third-party implementations like GPGtools and Thunderbird on a Mac? Thanks a lot from a regular

[FYI] Development of GnuPG for OS X discontinued

2025-05-28 Thread Christoph Klassen via Gnupg-users
Hello, maybe it's of interest for some of you that the development of GnuPG for OS X ended in March this year: https://sourceforge.net/p/gpgosx/docu/Home/. -- Christoph Klassen | https://intevation.de Intevation GmbH, Osnabrück, DE; Amtsgericht Osnabrück, HRB 18998 Geschäftsführer:

Re: There seems to be no way to unsubscribe from this list

2025-05-27 Thread Bernhard Reiter via Gnupg-users
Hi Dennis, Am Montag 26 Mai 2025 17:14:40 schrieb Dennis Clarke via Gnupg-users: > I have tried repeatedly with emails to the "-request" address wherein I > always get _two_ replies which request that I confirm the request to > unsubscribe. I reply to both of them with only t

Re: There seems to be no way to unsubscribe from this list

2025-05-26 Thread Fernando Cassia via Gnupg-users
On Mon, 26 May 2025 at 13:09, Dennis Clarke via Gnupg-users < gnupg-users@gnupg.org> wrote: > > I have tried repeatedly with emails to the "-request" address wherein I > always get _two_ replies which request that I confirm the request to > unsubscribe. > Always un

Gpg4win 4.4.1 released (important)

2025-05-26 Thread Bernhard E. Reiter via Gnupg-users
in Okular. CVSS Base Score: 8.1 (v3.1) Details https://euvd.enisa.europa.eu/enisa/EUVD-2025-6367 (alternative ids: CVE-2025-27363, GHSA-g8qj-jv5h-78cp) There are other good things in Gpg4win 4.4.1, for example * improvements in the Outlook Add-in (GpgOL) * a better Kleopatra * GnuPG

There seems to be no way to unsubscribe from this list

2025-05-26 Thread Dennis Clarke via Gnupg-users
cessed. It seems the mailman interface/software is a tad buggy? -- Dennis Clarke RISC-V/SPARC/PPC/ARM/CISC UNIX and Linux spoken ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Opengpg smartcard specs for kyber (PQC) algorithm

2025-05-26 Thread Werner Koch via Gnupg-users
youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Opengpg smartcard specs for kyber (PQC) algorithm

2025-05-25 Thread Pyromania via Gnupg-users
On Sun, May 25 2025, Todd Zullinger via Gnupg-users wrote: > I think the Pyromania's question was because: > .Service != .socket Yes. Thanks. > It seems reasonable to mask both the .service and .socket > units if they exist. While the .service might only be > sock

Re: Opengpg smartcard specs for kyber (PQC) algorithm

2025-05-25 Thread Todd Zullinger via Gnupg-users
f you know you don't ever want it to be started, masking it won't hurt. At worst, it's mild overkill. -- Todd signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Opengpg smartcard specs for kyber (PQC) algorithm

2025-05-24 Thread Pyromania via Gnupg-users
On Tue, May 20 2025, Werner Koch via Gnupg-users wrote: > Thanks for the hint. I have never seen that because only looked into > the doc/gnupg2 directory and not into the multitude of other doc > diretcories. The GnuPG README now tells: > If your systems already comes with a sys

Re: Understanding error output when a subkey expires

2025-05-22 Thread jman via Gnupg-users
ils. Best, ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Signing a file given its hash only

2025-05-22 Thread Werner Koch via Gnupg-users
-- The pioneers of a warless world are the youth that refuse military service. - A. Einstein openpgp-digital-signature.asc Description: PGP signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Understanding error output when a subkey expires

2025-05-22 Thread Werner Koch via Gnupg-users
a You may want to use the gpgme interface which interprets the status codes for you and returns higher level info. There is also a gpgme-json tool as a kind of language binding to gpgme. > user I wish gnupg could emit less confusing a little more /human/ > parsable info. Human parseable info

Re: Understanding error output when a subkey expires

2025-05-22 Thread jman via Gnupg-users
Ingo Klöcker writes: - [GNUPG:] KEY_CONSIDERED 3 (what does the 3 stand for?) - [GNUPG:] INV_SGNR 9 - [GNUPG:] FAILURE sign 54 Thank you Ingo for the useful explaination. Just a few additional notes (mostly for my own curiosity). - "KEY_CONSIDERED 3" uses a flag (3) wh

Re: Signing a file given its hash only

2025-05-21 Thread Jay Acuna via Gnupg-users
li=0; } else { *(line+li) = *(buffer+i); if(++li >= 4096) { *(line+li) = 0; li = 0; } } } i

Re: Signing a file given its hash only

2025-05-21 Thread Jakob Bohm via Gnupg-users
On 5/21/2025 17:09:21, Jay Acuna wrote: On Wed, May 21, 2025 at 9:00 AM Jakob Bohm via Gnupg-users wrote: Please stop suggesting less secure solutions to those who have already set up high security compartmentalized systems. It makes you look malicious . These are not less secure solutions

Re: Signing a file given its hash only

2025-05-21 Thread Jay Acuna via Gnupg-users
On Wed, May 21, 2025 at 9:00 AM Jakob Bohm via Gnupg-users wrote: > Please stop suggesting less secure solutions to those who have already set > up high security compartmentalized systems. It makes you look malicious . These are not less secure solutions. It is not a fact

Re: Signing a file given its hash only

2025-05-21 Thread Jakob Bohm via Gnupg-users
On 5/19/2025 18:08:07, Jay Acuna via Gnupg-users wrote: On Sun, May 18, 2025 at 6:58 AM Richard Stoughton wrote: To "sign" the hash on M, it would be necessary to inject a one-time secret (e.g. a OpenPGP private key This would seem to invalidate H's purpose for existing. At th

Re: Should you include your email address on key server?

2025-05-21 Thread Jakob Bohm via Gnupg-users
On 5/13/2025 10:09:13, Francesco Ariis wrote: Hello Atod, Il 13 maggio 2025 alle 03:01 Atod Bora via Gnupg-users ha scritto: What are the best practices and/or pros/cons of including your email address on the key server? For instance now, I have not included my email address, yet it is in the

Understanding error output when a subkey expires

2025-05-20 Thread jman via Gnupg-users
I use GnuPG 2.4.7 on Debian/trixie. I recently renewed a set of subkeys but forgot to update the signing key in my git config, so commits failed with a message like this: --8<---cut here---start->8--- $ git commit -m 'commit description' e

Re: Opengpg smartcard specs for kyber (PQC) algorithm

2025-05-20 Thread Werner Koch via Gnupg-users
to the multitude of other doc diretcories. The GnuPG README now tells: If your systems already comes with a systemd enabled GnuPG, you should thus tell it not to start its own GnuPG daemons by running the following three commands once: systemctl --user mask --now gpg-agent.s

New Account Request

2025-05-20 Thread Joe Fowler via Gnupg-users
...@us.ibm.com ___ Gnupg-users mailing list Gnupg-users@gnupg.org https://lists.gnupg.org/mailman/listinfo/gnupg-users

  1   2   3   4   5   6   7   8   9   10   >