Commit message (Collapse) | Author | Files | Lines | ||
---|---|---|---|---|---|
2011-01-20 | All standard keyserver commands are now using dirmngr. | Werner Koch | 1 | -687/+61 | |
2011-01-18 | Keyserver search and get basically works again. | Werner Koch | 1 | -260/+481 | |
2011-01-10 | Initial code checking for backup - not yet working. | Werner Koch | 1 | -22/+101 | |
2010-10-20 | Make public key data structure easier to read. | Werner Koch | 1 | -1/+1 | |
Check vor v1 card while signing. | |||||
2010-10-01 | Exporting secret keys via gpg-agent is now basically supported. | Werner Koch | 1 | -49/+63 | |
A couple of forward ported changes. Doc updates. | |||||
2010-08-31 | Import OpenPGP keys into the agent. | Werner Koch | 1 | -5/+7 | |
2010-04-21 | More changes on the way to remove secring.gpg. | Werner Koch | 1 | -1/+1 | |
2009-12-08 | Unification of the search descriptor usage. | Werner Koch | 1 | -18/+23 | |
2009-07-23 | Try a DNS-SD lookup to find a domain-specific LDAP server before | David Shaw | 1 | -13/+50 | |
resorting to keys.{domain}. | |||||
2009-06-17 | Add readcert command. | Werner Koch | 1 | -0/+3 | |
fix reading large certificates. | |||||
2009-05-11 | * keyserver.c (keyserver_typemap): gpgkeys_hkp handles hkps as well. | David Shaw | 1 | -2/+4 | |
From 1.4. | |||||
2008-12-09 | Flush keyserver search output. | Werner Koch | 1 | -0/+2 | |
Add trustdb chnages from 1.4. Check algo usage for batch key generation. | |||||
2008-09-04 | * keyserver.c (keyserver_import_cert): Allow keyserver URLs in | David Shaw | 1 | -7/+1 | |
addition to full URLs in CERT records. | |||||
2008-04-08 | Enhanced --auto-key-locate. | Werner Koch | 1 | -9/+20 | |
2008-04-07 | Minor cleanups. | Werner Koch | 1 | -1/+9 | |
Implemented key helper kdns | |||||
2008-03-25 | Changed the way i18n files are located under Windows. The setting of the | Werner Koch | 1 | -2/+2 | |
Registry key is not anymore required. Helpfiles are not properly located. | |||||
2007-07-04 | Changed to GPLv3. | Werner Koch | 1 | -4/+2 | |
Removed intl/. | |||||
2007-06-14 | A whole bunch of changes to allow building for Windows. | Werner Koch | 1 | -2/+2 | |
See the ChangeLogs for details. | |||||
2007-03-14 | From STABLE-BRANCH-1-4 | David Shaw | 1 | -2/+9 | |
* keyserver.c: Windows Vista doesn't grok X_OK and so fails access() tests. Previous versions interpreted X_OK as F_OK anyway, so we'll just use F_OK directly. | |||||
2006-12-06 | Fixes for CVE-2006-6235 | Werner Koch | 1 | -6/+7 | |
2006-10-06 | * keyserver.c (keyserver_spawn): Write the 16-digit keyid rather | David Shaw | 1 | -2/+6 | |
than whatever key selector the user used on the command line. | |||||
2006-10-02 | Fix for bug 537 | Werner Koch | 1 | -20/+20 | |
2006-09-14 | Take advantage of newer gpg-error features. | Werner Koch | 1 | -1/+1 | |
2006-08-16 | With --enable-gpg the keyservers are now build and a first test using gpg2 | Werner Koch | 1 | -0/+4 | |
shows no prblems. Needs more testing of course. | |||||
2006-05-23 | g10/ does build again. | Werner Koch | 1 | -3/+6 | |
2006-04-28 | Merged recent changes from 1.4 | Werner Koch | 1 | -35/+29 | |
2006-04-27 | (keyserver_import_cert): Show warning if there is a CERT fingerprint, | David Shaw | 1 | -0/+6 | |
but no --keyserver set. | |||||
2006-04-27 | * keyserver.c (path_makes_direct): New. (keyserver_spawn): Used here | David Shaw | 1 | -32/+22 | |
to add "_uri" to certain gpgkeys_xxx helpers when the meaning is different if a path is provided (i.e. ldap). | |||||
2006-04-22 | * keyserver.c: Fix build problem with platforms that stick libcurl in | David Shaw | 1 | -3/+0 | |
a place not in the regular include search path. | |||||
2006-04-21 | Still merging 1.4.3 code back | Werner Koch | 1 | -1/+1 | |
2006-04-19 | Continued with merging. | Werner Koch | 1 | -2/+2 | |
Still does not build. | |||||
2006-04-19 | Merged with gpg 1.4.3 code. | Werner Koch | 1 | -274/+1028 | |
The gpg part does not yet build. | |||||
2006-03-17 | * keyserver.c (keyserver_import_cert): Handle the IPGP CERT type for | David Shaw | 1 | -12/+25 | |
both the fingerprint alone, and fingerprint+URL cases. * getkey.c (get_pubkey_byname): Minor cleanup. | |||||
2006-03-16 | * cert.c (get_cert): Handle the fixed IPGP type with fingerprint. | David Shaw | 1 | -1/+1 | |
2006-03-14 | * keyserver-internal.h, keyserver.c (keyserver_import_pka): Use the | David Shaw | 1 | -3/+9 | |
same API as the other auto-key-locate fetchers. * getkey.c (get_pubkey_byname): Use the fingerprint of the key that we actually fetched. This helps prevent problems where the key that we fetched doesn't have the same name that we used to fetch it. In the case of CERT and PKA, this is an actual security requirement as the URL might point to a key put in by an attacker. By forcing the use of the fingerprint, we won't use the attacker's key here. | |||||
2006-03-14 | * keyserver-internal.h, keyserver.c (keyserver_spawn, keyserver_work, | David Shaw | 1 | -19/+26 | |
keyserver_import_cert, keyserver_import_name, keyserver_import_ldap): Pass fingerprint info through. | |||||
2006-03-14 | * main.h, import.c (import_one): Optionally return the fingerprint of | David Shaw | 1 | -2/+3 | |
the key being imported. (import_keys_internal, import_keys_stream, import): Change all callers. | |||||
2006-02-24 | * keydb.h, getkey.c (release_akl), gpg.c (main): Add | David Shaw | 1 | -2/+38 | |
--no-auto-key-locate. * options.h, gpg.c (main): Keep track of each keyserver registered so we can match on them later. * keyserver-internal.h, keyserver.c (cmp_keyserver_spec, keyserver_match), gpgv.c: New. Find a keyserver that matches ours and return its spec. * getkey.c (get_pubkey_byname): Use it here to get the per-keyserver options from an earlier keyserver. | |||||
2006-02-24 | * keyserver.c (parse_keyserver_options): Only change max_cert if it is | David Shaw | 1 | -1/+1 | |
used. | |||||
2006-02-23 | * options.c, gpg.c (main), keyserver.c (keyserver_spawn): No special | David Shaw | 1 | -16/+7 | |
treatment of include-revoked, include-subkeys, and try-dns-srv. These are keyserver features, and GPG shouldn't get involved here. | |||||
2006-02-23 | * keyserver.c (parse_keyserver_uri, add_canonical_option): Always append | David Shaw | 1 | -3/+3 | |
options to the list, as ordering may be significant to the user. | |||||
2006-02-23 | * options.h, keyserver.c (add_canonical_option): New. | David Shaw | 1 | -19/+43 | |
(parse_keyserver_options): Moved from here. (parse_keyserver_uri): Use it here so each keyserver can have some private options in addition to the main keyserver-options (e.g. per-keyserver auth). | |||||
2006-02-22 | * options.h, keyserver-internal.h, keyserver.c (keyserver_import_name), | David Shaw | 1 | -2/+2 | |
getkey.c (free_akl, parse_auto_key_locate, get_pubkey_byname): The obvious next step: allow arbitrary keyservers in the auto-key-locate list. | |||||
2006-02-22 | * options.h, keyserver.c (parse_keyserver_options): Remove | David Shaw | 1 | -6/+4 | |
auto-cert-retrieve as it is no longer meaningful. Add max-cert-size to allow users to pick a max key size retrieved via CERT. | |||||
2006-02-22 | * options.h, gpg.c (main), mainproc.c (check_sig_and_print), keyserver.c | David Shaw | 1 | -4/+10 | |
(keyserver_opts): Rename auto-pka-retrieve to honor-pka-record to be consistent with honor-keyserver-url. | |||||
2006-02-21 | * getkey.c (get_pubkey_byname): Fix minor security problem with PKA when | David Shaw | 1 | -3/+2 | |
importing at -r time. The URL in the PKA record may point to a key put in by an attacker. Fix is to use the fingerprint from the PKA record as the recipient. This ensures that the PKA record is followed. * keyserver-internal.h, keyserver.c (keyserver_import_pka): Return the fingerprint we requested. | |||||
2006-02-21 | * gpgv.c: Stub keyserver_import_ldap. | David Shaw | 1 | -0/+35 | |
* keyserver-internal.h, keyserver.c (keyserver_import_ldap): Import using the PGP Universal trick of asking ldap://keys.(maildomain) for the key. | |||||
2006-02-21 | * keyserver.c (parse_keyserver_uri): Include the scheme in the uri | David Shaw | 1 | -2/+7 | |
even when we've assumed "hkp" when there was no scheme. | |||||
2006-01-24 | * keyserver.c (parse_keyserver_uri): If there is a path present, set the | David Shaw | 1 | -0/+3 | |
direct_uri flag so the right keyserver helper is run. | |||||
2006-01-22 | * keyserver.c (keyserver_spawn): Include the EXEEXT so we can find | David Shaw | 1 | -2/+4 | |
keyserver helpers on systems that use extensions. * misc.c (path_access) [HAVE_DRIVE_LETTERS]: Do the right thing with drive letter systems. |