aboutsummaryrefslogtreecommitdiffstats
path: root/doc/gpgsm.texi (unfollow)
Commit message (Collapse)AuthorFilesLines
2011-12-07gpgsm: Add new validation model "steed".Werner Koch1-4/+5
* sm/gpgsm.h (VALIDATE_FLAG_STEED): New. * sm/gpgsm.c (gpgsm_parse_validation_model): Add model "steed". * sm/server.c (option_handler): Allow validation model "steed". * sm/certlist.c (gpgsm_cert_has_well_known_private_key): New. * sm/certchain.c (do_validate_chain): Handle the well-known-private-key attribute. Support the "steed" model. (gpgsm_validate_chain): Ditto. * sm/verify.c (gpgsm_verify): Return "steed" in the trust status line. * sm/keylist.c (list_cert_colon): Print the new 'w' flag. -- This is the first part of changes to implement the STEED proposal as described at http://g10code.com/steed.html . The idea for X.509 is not to use plain self-signed certificates but certificates signed by a dummy CA (i.e. one for which the private key is known). Having a single CA as an indication for the use of STEED might help other X.509 implementations to implement STEED.
2011-12-06gpgsm: Allow arbitrary extensions for cert creation.Werner Koch1-3/+3
* sm/certreqgen.c (pSUBJKEYID, pEXTENSION): New. (read_parameters): Add new keywords. (proc_parameters): Check values of new keywords. (create_request): Add SubjectKeyId and extensions. (parse_parameter_usage): Support "cert" and the encrypt alias "encr".
2011-10-18Typo fix and remove of some colloquial termsWerner Koch1-15/+16
2011-10-12Put more options into the options indexWerner Koch1-2/+0
Also removed the single letter options from the index.
2011-08-08Minor doc updates v2.0 vs. v2.1)Werner Koch1-3/+17
2011-06-27doc/gpgsm.texi com-certs.pem mini-fixBernhard Reiter1-1/+1
[[PGP Signed Part:Undecided]] [1. text/plain] Example path for com-certs.pem corrected. [2. text/x-diff; doc.diff]
2011-03-01Move parameter file description to the manual.Werner Koch1-35/+179
2010-10-08Add new option --with-keygripWerner Koch1-0/+4
2010-10-01Exporting secret keys via gpg-agent is now basically supported.Werner Koch1-6/+5
A couple of forward ported changes. Doc updates.
2009-12-17Implement --faked-systrem-time for gpg.Werner Koch1-1/+1
Typo and comment fixes.
2009-12-10Add option --cert-extension.Werner Koch1-1/+10
2009-12-03support numeric debug levels.Werner Koch1-6/+12
2009-10-19[g13] Add RECIPEINT and CREATE command.Werner Koch1-1/+1
[sm] Chnage --include-certs default
2009-07-22Typo fixes. Fixes bug#1093Werner Koch1-24/+24
2009-07-22Give hints on files to backup.Werner Koch1-3/+6
2009-07-07Impleemned gpgsm's IMPORT --re-import feature.Werner Koch1-2/+12
Typo fix.
2009-07-07Reworked passing of envars to Pinentry.Werner Koch1-2/+2
2009-07-01Alow batch ode for gpgsm --gen-key.Werner Koch1-3/+4
Allow CSR generation using an existing key with gpgsm.
2009-03-26Signing using Netkey 3 cards does now work.Werner Koch1-0/+6
2009-03-06New gpg-agent command to list key information.Werner Koch1-5/+9
Gpgsm does now print the S/N of cards. Consider ephemeral keys during listing an export.
2008-12-12Small doc fixes.Werner Koch1-5/+6
2008-10-14SCD changes for PC/SC under W32.Werner Koch1-1/+1
2008-10-13Explain how to delete a secret X.509 key.Werner Koch1-1/+7
2008-08-01Fix !EROFS bug.Werner Koch1-2/+10
Doc updates
2008-02-19Improve certificate chain construction.Werner Koch1-0/+7
Extend PKITS framework
2008-02-13Always search missing certifcates using a running Dirmngr's cache.Werner Koch1-1/+18
2008-01-28Typo and grammer fixes by Justin Pryzby.Werner Koch1-3/+3
2007-12-13Allow verification of some broken S-TRUST generated signatures.Werner Koch1-0/+13
2007-12-06Add support for help stuff to audit.cWerner Koch1-1/+15
2007-11-19Document --auto-issuer-key-retrieve.Werner Koch1-1/+12
2007-08-14Documentaion updates.Werner Koch1-1/+2
Support doe Dirmngr under W32. Fixed a yat2m bug.
2007-08-10Implemented the chain model for X.509 validation.Werner Koch1-1/+13
2007-07-17Typo fixes.Werner Koch1-0/+8
Made --default-key work for gpgsm Add --default-key and --encrypt-to to gpgconf.
2007-06-21Implemented the --gen-key command as we can't use the gpgsm-gencert.sh under ↵Werner Koch1-2/+3
Windows.
2007-06-14A whole bunch of changes to allow building for Windows.Werner Koch1-0/+9
See the ChangeLogs for details.
2007-05-15Use estream_asprintf instead of the GNU asprintf.Werner Koch1-2/+8
2007-03-20Allow setting of the passphrase encoding of pkcs#12 files.Werner Koch1-5/+18
New option --p12-charset.
2007-01-31Included LIBICONV in all Makefiles.Werner Koch1-1/+2
g10/ * passphrase.c (passphrase_get): Set the cancel flag on all error from the agent. Fixes a bug reported by Tom Duerbusch. sm/ * gpgsm.c (main): Let --gen-key print a more informative error message.
2006-11-14sm/Werner Koch1-4/+10
* server.c (skip_options): Skip leading spaces. (has_option): Honor "--". (cmd_export): Add option --data to do an inline export. Skip all options. * certdump.c (gpgsm_fpr_and_name_for_status): New. * verify.c (gpgsm_verify): Use it to print correct status messages. doc/ * gpgsm.texi (GPGSM EXPORT): Document changes.
2006-10-23.Werner Koch1-0/+9
2006-09-26Made buliding w/o curl workWerner Koch1-1/+4
2006-09-21Various updatesWerner Koch1-1/+3
2006-09-18Ready for another releasegnupg-1.9.23Werner Koch1-5/+8
2006-09-13Various fixes and new features.Werner Koch1-0/+9
Enhanced gpg-connect-agent.
2006-09-08doc fixesWerner Koch1-33/+51
2006-09-04Some fixes as needed by dirmngr man pagesWerner Koch1-1/+8
2006-08-29See ChangeLogsWerner Koch1-0/+6
2006-08-18More man pages. Added include files for 2 common paragraphs.Werner Koch1-8/+1
2006-08-17include support and texi fixesWerner Koch1-1/+1
2006-08-17More man pages.Werner Koch1-27/+95