From 2c237c13628a88ba23742da34ea18d3e205d7c53 Mon Sep 17 00:00:00 2001 From: Werner Koch Date: Fri, 24 Mar 2017 10:30:17 +0100 Subject: agent: New option --enable-extended-key-format. * agent/gpg-agent.c (oEnableExtendedKeyFormat): New const. (opts): New option --enable-extended-key-format. (parse_rereadable_options): Set option * agent/findkey.c (write_extended_private_key): Add arg 'update'. (agent_write_private_key): Implement new option. Signed-off-by: Werner Koch --- doc/gpg-agent.texi | 9 +++++++++ 1 file changed, 9 insertions(+) (limited to 'doc') diff --git a/doc/gpg-agent.texi b/doc/gpg-agent.texi index b72892c2a..ca9d469fd 100644 --- a/doc/gpg-agent.texi +++ b/doc/gpg-agent.texi @@ -571,6 +571,15 @@ local gpg-agent and use its private keys. This enables decrypting or signing data on a remote machine without exposing the private keys to the remote machine. +@anchor{option --enable-extended-key-format} +@item --enable-extended-key-format +@opindex enable-extended-key-format +This option creates keys in the extended private key format. Changing +the passphrase of a key will also convert the key to that new format. +Using this option makes the private keys unreadable for gpg-agent +versions before 2.1.12. The advantage of the extended private key +format is that it is text based and can carry additional meta data. + @anchor{option --enable-ssh-support} @item --enable-ssh-support -- cgit v1.2.3