Re: status of ed25519 draft

2015-02-11 Thread Werner Koch
On Tue, 10 Feb 2015 21:56, br...@minton.name said: > Is there any way to see the progress of the IETF working group on > the draft Werner has submitted? I noticed that the draft expires in The process to get the I-D to an RFC is somewhat work intensive and I would actually prefer to have the

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Philip Jackson
On 10/02/15 23:53, Daniel Kahn Gillmor wrote: > The questions you're asking are very much the sort of thing that > distributions are designed to address. > > What distro are you using? what version? 2.1.1 has been packaged for > some distros already (as have some of these dependencies), and you

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Brian Minton
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 In Debian, the experimental repo has gpg 2.1 with all dependencies. Follow the instructions at https://wiki.debian.org/DebianExperimental -BEGIN PGP SIGNATURE- Version: OpenKeychain v3.1.2 iIAEAREIACghHEJyaWFuIE1pbnRvbiA8YnJpYW5AbWludG9uLm5h

Re: Sign key with externalized master key

2015-02-11 Thread Daniel Kahn Gillmor
On Wed 2015-02-11 00:41:18 -0500, Xavier Maillard wrote: > May I ask how one would sign public keys when a "master key" is > stored onto an USB stick ? > > I followed instructions from [1]. Now I am in the process of > announcing my key transition to all old signers *but*, as a last > test, I just

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Robert J. Hansen
> I find that distro packages (for Ubuntu) lag well behind what is > available and I do appreciate that there is a trade-off between > proven reliability and up-to-dateness and also that distros rely on > maintainers who may well be volunteers... If your goal is to enjoy tinkering with technology,

Purchasing OpenPGP cards, card-readers to support GnuPG

2015-02-11 Thread taltman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 I'd like to both support the GnuPG project, and acquire an OpenPGP card and card reader. Is there any way to purchase these items where a portion of the proceeds goes to supporting GnuPG? Thanks, ~Tomer - -- - - --- Encrypted email preferr

Re: Purchasing OpenPGP cards, card-readers to support GnuPG

2015-02-11 Thread Dave Pawson
I was hoping that long thread might suggest the same. Quite willing to support GPG via a purchase, but so little information is available... regards DaveP On 11 February 2015 at 15:35, taltman wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA512 > > I'd like to both support the GnuPG proje

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Philip Jackson
On 11/02/15 14:59, Brian Minton wrote: > In Debian, the experimental repo has gpg 2.1 with all dependencies. Follow the > instructions at https://wiki.debian.org/DebianExperimental Thank you for that suggestion, Brian. I looked into the link you provided and decided that to see the precise name o

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Philip Jackson
On 11/02/15 16:20, Robert J. Hansen wrote: >> I find that distro packages (for Ubuntu) lag well behind what is >> available and I do appreciate that there is a trade-off between >> proven reliability and up-to-dateness and also that distros rely on >> maintainers who may well be volunteers... > >

[Announce] GnuPG 2.1.2 released

2015-02-11 Thread Werner Koch
Hello! The GnuPG Project is pleased to announce the availability of the third release of GnuPG modern: Version 2.1.2. The GNU Privacy Guard (GnuPG) is a complete and free implementation of the OpenPGP standard as defined by RFC-4880 and better known as PGP. GnuPG, also known as GPG, allows to en

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Robert J. Hansen
> A priori, this doesn't seem very transparent but I suppose there must > be a way to determine if 2.0.22 is original or augmented ? Yep, but as I'm not much of an Ubuntu guy I'll let one of them give you specific instructions -- I just know Ubuntu, like Debian (which it's built on), is very good

Re: Purchasing OpenPGP cards, card-readers to support GnuPG

2015-02-11 Thread Werner Koch
On Wed, 11 Feb 2015 16:35, taltm...@stanford.edu said: > Is there any way to purchase these items where a portion of the proceeds > goes to supporting GnuPG? Not that I know about. I for myself did not wanted to get into the hardware business. But meanwhile I consider to have some merchandise s

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Daniel Kahn Gillmor
On Wed 2015-02-11 14:02:49 -0500, Philip Jackson wrote: > On 11/02/15 14:59, Brian Minton wrote: >> In Debian, the experimental repo has gpg 2.1 with all dependencies. Follow >> the >> instructions at https://wiki.debian.org/DebianExperimental > > Thank you for that suggestion, Brian. I looked in

Re: (bug?) Revoked keys and past signatures

2015-02-11 Thread Daniel Kahn Gillmor
On Tue 2015-02-10 18:24:19 -0500, Daniel Kahn Gillmor wrote: > It sounds to me like you're asking for the standard to separate out > "signature creation time" from "signature validity start time". > > This is an interesting proposal, and i can see why it would make sense > for this scenario. > > I

Generating

2015-02-11 Thread Laurens Van Houtven
Hi, I just acquired an OpenPGP v2.0 SmartCard. Works beautifully, except for one thing: no 4096 bit keys. I thought this would be supported, but when I try to generate a key with gpg —card-edit, I can only select up to 3072 bits. I thought 4096 was supported on the v2 card, as long as you had

Re: moving up from 2.0.26 to 2.1.1

2015-02-11 Thread Philip Jackson
On 11/02/15 21:16, Daniel Kahn Gillmor wrote: > On Wed 2015-02-11 14:02:49 -0500, Philip Jackson wrote: >> On 11/02/15 14:59, Brian Minton wrote: >>> In Debian, the experimental repo has gpg 2.1 with all dependencies. Follow >>> the >>> instructions at https://wiki.debian.org/DebianExperimental .

Re: Sign key with externalized master key

2015-02-11 Thread Xavier Maillard
Daniel Kahn Gillmor writes: > On Wed 2015-02-11 00:41:18 -0500, Xavier Maillard wrote: >> May I ask how one would sign public keys when a "master key" is >> stored onto an USB stick ? >> >> I followed instructions from [1]. Now I am in the process of >> announcing my key transition to all old si

Re: Key keeps showing unknown trust

2015-02-11 Thread MFPA
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi On Monday 9 February 2015 at 9:24:50 AM, in , Hugo Osvaldo Barrera wrote: > Only on older versions of gpg, according to the man > pages: >~/.gnupg/secring.gpg A secret keyring as >used by GnuPG versions before 2.1. It is n

Re: Sign key with externalized master key

2015-02-11 Thread flapflap
Xavier Maillard: > > Daniel Kahn Gillmor writes: > >> On Wed 2015-02-11 00:41:18 -0500, Xavier Maillard wrote: >>> May I ask how one would sign public keys when a "master key" is >>> stored onto an USB stick ? >>> >>> I followed instructions from [1]. Now I am in the process of >>> announcing my

Re: Purchasing OpenPGP cards, card-readers to support GnuPG

2015-02-11 Thread NIIBE Yutaka
On 02/12/2015 12:35 AM, taltman wrote: > Is there any way to purchase these items where a portion of the proceeds > goes to supporting GnuPG? Indirectly, I'd say. I think that if you stay in Europe, being a FSFE member, you'll get its member card with OpenPGPcard feature. I'm sure that it will i

Re: Sign key with externalized master key

2015-02-11 Thread Brian Minton
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Wed, Feb 11, 2015, 5:33 PM Xavier Maillard wrote: Thank you for this precision. Are you aware of some "portable" and well supported by the 3-major OSes filesystem type ? Just UDF -BEGIN PGP SIGNATURE- Version: OpenKeychain v3.1.2 iI

Re: Sign key with externalized master key

2015-02-11 Thread Xavier Maillard
flapflap writes: > Xavier Maillard: >> >> Daniel Kahn Gillmor writes: >> >>> On Wed 2015-02-11 00:41:18 -0500, Xavier Maillard wrote: May I ask how one would sign public keys when a "master key" is stored onto an USB stick ? So what ? My USB stick is formated using extFat so