Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | About to release 1.4.3gnupg-1.4.3 | Werner Koch | 2006-04-03 | 43 | -10104/+10657 |
| | |||||
* | * getkey.c (get_pubkey_byname): Fix missing auto_key_retrieve unlock. | David Shaw | 2006-04-01 | 2 | -5/+12 |
| | | | | | Fix strings to not start with a capital letter as per convention. | ||||
* | Update copyright | David Shaw | 2006-03-30 | 1 | -1/+2 |
| | |||||
* | * main.h, seskey.c (encode_md_value): Modify to allow a q size greater | David Shaw | 2006-03-30 | 5 | -35/+94 |
| | | | | | | | | | | | | than 160 bits as per DSA2. This will allow us to verify and issue DSA2 signatures for some backwards compatibility once we start generating DSA2 keys. * sign.c (do_sign), sig-check.c (do_check): Change all callers. * sign.c (do_sign): Enforce the 160-bit check for new signatures here since encode_md_value can handle non-160-bit digests now. This will need to come out once the standard for DSA2 is firmed up. | ||||
* | * README: Some more notes about building fat binaries. | David Shaw | 2006-03-30 | 2 | -1/+8 |
| | |||||
* | * cert.c (main): Fix test program build warning on OSX. | David Shaw | 2006-03-30 | 2 | -2/+6 |
| | |||||
* | * gpgkeys_ldap.c: #define LDAP_DEPRECATED for newer OpenLDAPs so they use | David Shaw | 2006-03-27 | 2 | -0/+8 |
| | | | | | the regular old API that is compatible with other LDAP libraries. | ||||
* | * README: Missing some instructions on building a fat binary. | David Shaw | 2006-03-25 | 2 | -1/+5 |
| | |||||
* | * getkey.c (parse_auto_key_locate): Silently strip out duplicates rather | David Shaw | 2006-03-22 | 2 | -5/+15 |
| | | | | | than causing an error. | ||||
* | Changed URLs | Werner Koch | 2006-03-22 | 3 | -3/+8 |
| | |||||
* | * mainproc.c (get_pka_address): Fix bug introduced as part of | David Shaw | 2006-03-22 | 2 | -1/+6 |
| | | | | | sig_to_notation conversion. Noted by Peter Palfradrer. | ||||
* | Allow for rmd160 signatures when using gpg-agent. | Werner Koch | 2006-03-21 | 3 | -1/+13 |
| | |||||
* | * blowfish.c, md5.c, rmd160.c, sha1.c, sha256.c, sha512.c: Revert previous | David Shaw | 2006-03-20 | 7 | -13/+18 |
| | | | | | change. It's now all done in configure. | ||||
* | * configure.ac: Improved --disable-endian-check that doesn't involve | David Shaw | 2006-03-20 | 2 | -7/+20 |
| | | | | | changing #ifdefs in the rest of the code. | ||||
* | * configure.ac: Add --disable-endian-check for building fat binaries | David Shaw | 2006-03-20 | 3 | -12/+44 |
| | | | | | | | on OSX. * README: Add note on how to build a fat binary on OSX. | ||||
* | * blowfish.c, md5.c, rmd160.c, sha1.c, sha256.c, sha512.c: Use '#if' | David Shaw | 2006-03-20 | 7 | -13/+21 |
| | | | | | | | rather than '#ifdef' BIG_ENDIAN_HOST. Harmless as we explicitly define BIG_ENDIAN_HOST to 1 when we need it, but needed for OSX fat builds when we define BIG_ENDIAN_HOST to another macro. | ||||
* | * configure.ac: Allow the DNS stuff to work on OSX by trying the | David Shaw | 2006-03-18 | 2 | -3/+28 |
| | | | | | Apple-specific BIND_8_COMPAT. | ||||
* | * keyserver.c (keyserver_import_cert): Handle the IPGP CERT type for | David Shaw | 2006-03-17 | 3 | -24/+43 |
| | | | | | | | both the fingerprint alone, and fingerprint+URL cases. * getkey.c (get_pubkey_byname): Minor cleanup. | ||||
* | * cert.c (get_cert): Handle the fixed IPGP type with fingerprint. | David Shaw | 2006-03-16 | 5 | -19/+71 |
| | |||||
* | * keyserver-internal.h, keyserver.c (keyserver_import_pka): Use the | David Shaw | 2006-03-14 | 4 | -31/+61 |
| | | | | | | | | | | | | same API as the other auto-key-locate fetchers. * getkey.c (get_pubkey_byname): Use the fingerprint of the key that we actually fetched. This helps prevent problems where the key that we fetched doesn't have the same name that we used to fetch it. In the case of CERT and PKA, this is an actual security requirement as the URL might point to a key put in by an attacker. By forcing the use of the fingerprint, we won't use the attacker's key here. | ||||
* | * keyserver-internal.h, keyserver.c (keyserver_spawn, keyserver_work, | David Shaw | 2006-03-14 | 4 | -26/+40 |
| | | | | | | keyserver_import_cert, keyserver_import_name, keyserver_import_ldap): Pass fingerprint info through. | ||||
* | * main.h, import.c (import_one): Optionally return the fingerprint of | David Shaw | 2006-03-14 | 4 | -26/+43 |
| | | | | | | the key being imported. (import_keys_internal, import_keys_stream, import): Change all callers. | ||||
* | * sig-check.c (signature_check2): Print the backsig warning when there | David Shaw | 2006-03-12 | 3 | -8/+20 |
| | | | | | | | | | is no backsig present. Give a URL for more information. * keyedit.c (menu_backsign): Small tweak to work properly with keys originally generated with older GnuPGs that included comments in the secret keys. | ||||
* | * samplekeys.asc: Update 99242560 to have a signing subkey backsig. | David Shaw | 2006-03-11 | 2 | -1840/+1873 |
| | |||||
* | * gpg.sgml: Clarify new notation delete feature. | David Shaw | 2006-03-09 | 2 | -2/+8 |
| | |||||
* | * build-packet.c (string_to_notation): Add ability to indicate a notation | David Shaw | 2006-03-09 | 3 | -39/+85 |
| | | | | | | | | to be deleted with a '-' prefix. * keyedit.c (menu_set_notation): Use it here to allow deleting a notation marked with '-'. This works with either "-notation" or "-notation=value". | ||||
* | keep on walking towards rc3 | Werner Koch | 2006-03-09 | 29 | -15107/+15974 |
| | |||||
* | Updatedgnupg-1.4.3rc2 | Werner Koch | 2006-03-09 | 3 | -68/+108 |
| | |||||
* | Preparing for an RC23 | Werner Koch | 2006-03-09 | 6 | -18/+29 |
| | |||||
* | * gpg.sgml: Document "notation". | David Shaw | 2006-03-09 | 2 | -6/+17 |
| | |||||
* | * keyedit.c (menu_set_notation): New function to set notations on | David Shaw | 2006-03-09 | 2 | -4/+250 |
| | | | | | | | self-signatures. (keyedit_menu): Call it here. (tty_print_notations): Helper. (show_prefs): Show notations in "showpref". | ||||
* | * mainproc.c (get_pka_address), keylist.c (show_notation): Remove | David Shaw | 2006-03-09 | 3 | -92/+64 |
| | | | | | duplicate code by using notation functions. | ||||
* | * argparse.c (default_strusage): Update copyright year to 2006. | David Shaw | 2006-03-09 | 2 | -2/+6 |
| | |||||
* | * packet.h, build-packet.c (sig_to_notation), keygen.c | David Shaw | 2006-03-09 | 4 | -8/+20 |
| | | | | | | (keygen_add_notations): Provide printable text for non-human-readable notation values. | ||||
* | * packet.h, build-packet.c (sig_to_notation), keygen.c | David Shaw | 2006-03-08 | 4 | -6/+15 |
| | | | | | | (keygen_add_notations): Tweak to handle non-human-readable notation values. | ||||
* | * options.h, sign.c (mk_notation_policy_etc), gpg.c (add_notation_data): | David Shaw | 2006-03-08 | 9 | -117/+275 |
| | | | | | | | | | | Use it here for the various notation commands. * packet.h, main.h, keygen.c (keygen_add_notations), build-packet.c (string_to_notation, sig_to_notation) (free_notation): New "one stop shopping" functions to handle notations and start removing some code duplication. | ||||
* | * options.h, mainproc.c (check_sig_and_print), gpg.c (main): | David Shaw | 2006-03-08 | 6 | -14/+27 |
| | | | | | | | | | pka-lookups, not pka-lookup. * options.h, gpg.c (main), keyedit.c [cmds], sig-check.c (signature_check2): Rename "backsign" to "cross-certify" as a more accurate name. | ||||
* | * NEWS: Note CERT retrieval. Tweak PKA and backsig language to match | David Shaw | 2006-03-08 | 2 | -14/+17 |
| | | | | | current code. | ||||
* | * gpg.sgml: Rename backsigs to cross-certification (backsigs is just | David Shaw | 2006-03-07 | 2 | -17/+28 |
| | | | | | shorthand). Document max-cert-size. | ||||
* | * gpg.sgml: Document new way of enabling the PKA functions. Some minor | David Shaw | 2006-03-07 | 2 | -79/+71 |
| | | | | | other cleanups. | ||||
* | * options.h, gpg.c (main, parse_trust_model), pkclist.c | David Shaw | 2006-03-07 | 6 | -50/+23 |
| | | | | | | | (check_signatures_trust), mainproc.c (check_sig_and_print, pka_uri_from_sig), trustdb.c (init_trustdb): Some tweaks to PKA so that it is a verify-option now. | ||||
* | * NEWS: Note --auto-key-locate and that keyservers can handle binary data | David Shaw | 2006-03-07 | 2 | -5/+20 |
| | | | | | now. | ||||
* | More tests added; make distcheck works | Werner Koch | 2006-03-07 | 33 | -7805/+8146 |
| | |||||
* | * gpg.sgml: Document --auto-key-locate. | David Shaw | 2006-03-07 | 2 | -5/+47 |
| | |||||
* | * sign.c (make_keysig_packet): Don't use MD5 for a RSA_S key as that | David Shaw | 2006-03-07 | 2 | -3/+5 |
| | | | | | is not a PGP 2.x algorithm. | ||||
* | * mainproc.c (proc_compressed): "Uncompressed" is not a valid compression | David Shaw | 2006-03-06 | 2 | -1/+8 |
| | | | | | algorithm. | ||||
* | Stricter test of allowed signature packet compositions. | Werner Koch | 2006-03-06 | 7 | -123/+299 |
| | | | | | There is still one problem to solve. | ||||
* | Fixed problem with PGP2 style signatures and mutilple plaintext data | Werner Koch | 2006-03-06 | 5 | -40/+74 |
| | |||||
* | Replaced an assert and fixed batch mode issue in cardglue. | Werner Koch | 2006-03-05 | 6 | -14/+43 |
| | |||||
* | * gpgkeys_ldap.c (main): Fix build problem with non-OpenLDAP LDAP | David Shaw | 2006-03-03 | 2 | -5/+15 |
| | | | | | libraries that have TLS. |