diff options
author | Werner Koch <[email protected]> | 2022-03-08 18:06:30 +0000 |
---|---|---|
committer | Werner Koch <[email protected]> | 2022-03-08 18:28:16 +0000 |
commit | f8075257afad4c7a41cd4409e334670a0097b5b8 (patch) | |
tree | e6de29104400b4a08d95746570ffcb0e69a8d520 /sm/decrypt.c | |
parent | gpg: New option --require-compliance. (diff) | |
download | gnupg-f8075257afad4c7a41cd4409e334670a0097b5b8.tar.gz gnupg-f8075257afad4c7a41cd4409e334670a0097b5b8.zip |
gpgsm: New option --require-compliance
* sm/gpgsm.c (oRequireCompliance): New.
(opts): Add --require-compliance.
(main): Set option.
* sm/gpgsm.h (opt): Add field require_compliance.
(gpgsm_errors_seen): Declare.
* sm/verify.c (gpgsm_verify): Emit error if non de-vs compliant.
* sm/encrypt.c (gpgsm_encrypt): Ditto.
* sm/decrypt.c (gpgsm_decrypt): Ditto.
--
Diffstat (limited to 'sm/decrypt.c')
-rw-r--r-- | sm/decrypt.c | 8 |
1 files changed, 7 insertions, 1 deletions
diff --git a/sm/decrypt.c b/sm/decrypt.c index 1fe2522b5..3702cd893 100644 --- a/sm/decrypt.c +++ b/sm/decrypt.c @@ -1389,7 +1389,13 @@ gpgsm_decrypt (ctrl_t ctrl, int in_fd, estream_t out_fp) && gnupg_gcrypt_is_compliant (CO_DE_VS)) gpgsm_status (ctrl, STATUS_DECRYPTION_COMPLIANCE_MODE, gnupg_status_compliance_flag (CO_DE_VS)); - + else if (opt.require_compliance + && opt.compliance == CO_DE_VS) + { + log_error (_("operation forced to fail due to" + " unfulfilled compliance rules\n")); + gpgsm_errors_seen = 1; + } } audit_log_ok (ctrl->audit, AUDIT_RECP_RESULT, rc); } |