| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
|
| |
know the key is definitely expired. Some translatable string cleanup.
|
| |
|
| |
|
|
|
|
|
| |
Change some "this" to `this'.
|
|
|
|
|
|
| |
search_key), gpgkeys_http.c (get_key): Do not give informational logs
since this is now done inside gpg.
|
|
|
|
|
|
|
|
|
| |
we are taking.
* keyid.c (keystr): If printing a keyid that lacks the high 4 bytes, print
the low 4 alone. (keystr_from_desc): Handle short keyids and warn on v3
fingerprints.
|
|
|
|
|
|
|
| |
and remove the printable stuff since we're print-ifying valid utf8
characters. Change all callers in import.c, sign.c, keylist.c, and
encode.c.
|
|
|
|
|
|
| |
""") in HTML responses. (search_key): Search key must be unsigned for
url encoder to work properly for 8-bit values.
|
|
|
|
|
| |
function build_info().
|
|
|
|
|
| |
converted from UTF-8 before display.
|
|
|
|
|
| |
got shrunk due to encoding.
|
|
|
|
|
|
|
|
| |
full DN rather than LDAP_SCOPE_ONELEVEL plus a filter to find the
pgpServerInfo object. Some LDAP setups don't like the search. (main):
Stop binding to the server since it seems no server really requires it,
and some require it not be there.
|
|
|
|
|
| |
characters. Noted by Vladimir Novak.
|
|
|
|
|
|
| |
substituting code to actually do clever things. Thanks to
Matthias Urlichs for noting the implementation problem.
|
|
|
|
|
| |
* passphrase.c (agent_get_passphrase):
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
* g10.c (main): New alias --throw-keyid for --throw-keyids, so that it
continues to work in old configuration files. Noted by Jens Adam.
* pkclist.c (algo_available): --pgp8 now allows blowfish, zlib, and bzip2.
* status.c (do_get_from_fd): Flush stdout if status isn't flushing it for
us. This guarantees that any menus that were displayed before the prompt
don't get stuck in a buffer. Noted by Peter Palfrader. This is Debian
bug #254072.
* sign.c (update_keysig_packet): Revert change of 2004-05-18. It is not
appropriate to strip policy and notations when remaking a sig. That
should only happen when specifically requested by the user.
|
|
|
|
|
|
| |
--keyid-format. Rename show-validity as show-uid-validity.
--ask-cert-level defaults to no.
|
|
|
|
|
| |
CRC is a MAY).
|
|
|
|
|
|
|
|
| |
with OpenLDAP, but it's practically vital to debug SSL and TLS setups.
Add "basedn" option. This allows users to override the autodetection for
base DN. SSL overrides TLS, so TLS will not be started on SSL connections
(starting an already started car).
|
|
|
|
|
|
|
|
| |
attributes so we can do subkey searches.
* gpgkeys_ldap.c (main): Under certain error conditions, we might try and
unbind twice. Don't.
|
|
|
|
|
|
|
| |
we can try a modify operation first, and fail over to an add if that
fails. Add cannot cope with the NULLs at the head of the modify request,
so we jump into the list in the middle.
|
|
|
|
|
| |
whitespace afterwards.
|
|
|
|
|
| |
spaces" type options.
|
|
|
|
|
|
|
| |
connection to the NAI keyserver since we cannot tell if it is a NAI
keyserver until we connect. Fail if we cannot find a base keyspace DN.
Fix a false success message for TLS being enabled.
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
(min_automake_version): New.
* LINGUAS: Added all languages we supported in 1.2.5.
Copied all po files from 1.2.5.
* autogen.sh: Updated to the modern version, grepping the required
tool versions from configure.ac.
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
uids are always on a line for themselves. Mark expired secret keys as
expired.
* options.h, g10.c (main): Rename list show-validity to show-uid-validity
as it only shows for uids.
* armor.c (armor_filter): Do not use padding to get us to 8 bytes of
header. Rather, use 2+4 as two different chunks. This avoids a fake
filename of "is".
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
expired user IDs. Also, once we've established that a given uid cannot or
will not be signed, don't continue to ask about each sig.
* mainproc.c (proc_symkey_enc), seckey-cert.c (do_check): Check the S2K
hash algorithm before we try to generate a passphrase using it. This
prevents hitting BUG() when generating a passphrase using a hash that we
don't have.
* sign.c (sign_symencrypt_file): Allow using --force-mdc in --sign
--symmetric messages.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
continuing confusion and make room for possible changes in devel.
* parse-packet.c (parse_plaintext): Show the hex value for the literal
packet mode since it may not be printable.
* keygen.c (make_backsig): Make sure that the backsig was built
successfully before we try and use it.
* status.h, status.c (get_status_string), plaintext.c (handle_plaintext):
New status tags PLAINTEXT and PLAINTEXT_LENGTH.
|
| |
|
|
|
|
|
|
|
|
|
| |
* gpg.sgml: Clarify that --min-cert-level disregards level 1 certs by
default. Clarify include-revoked a bit to note that keyservers might not
be accurate. Note that --charset is --display-charset. Some language
tweaks for --simple-sk-checksum (Debian 251795). Note the PGP silliness
with preferred keyserver subpackets causing PGP/MIME.
|
| |
|
| |
|
|
|
|
|
|
|
|
| |
NULL.
* passphrase.c (passphrase_to_dek): Added a few comments to the
code.
|
|
|
|
|
| |
* autogen.sh <--build-w32>: Build keyserver helpers again.
|
|
|
|
|
| |
gpgkeys_hkp.c.
|
|
|
|
|
|
| |
we don't do a regular keyserver fetch if the preferred keyserver fetch has
exhausted the list.
|
| |
|
|
|
|
|
|
|
|
| |
which we hashed them when issuing the signature. Noted by Nicholas Cole.
* pkclist.c (do_edit_ownertrust): Fix a kbnode leak and do another
keyid-format conversion.
|
| |
|
| |
|
|
|
|
|
| |
keyserver in a regular data sig to fetch the signing key.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
keyservers, and auto-key-retrieve is set, try and get a missing key from
the preferred keyserver subpacket when we verify the sig.
* gpgv.c (parse_preferred_keyserver, free_keyserver_spec): Stubs.
* keyserver.c (keyidlist): Use new parse_preferred_keyserver function.
(keyserver_work): Use the passed-in keyserver spec rather than the options
global one.
* keyserver-internal.h, keyserver.c (parse_preferred_keyserver): New
function to take a sig and return a split out keyserver_spec.
(keyserver_import_keyid): Now takes a keyserver_spec.
|
|
|
|
|
| |
path use a path of "/".
|
|
|
|
|
|
| |
--keyserver-option honor-keyserver-url, and --list and --verify option
show-std/user-notations.
|
|
|
|
|
|
|
|
|
| |
merge selfsigs if we have to for honor-keyserver-url. (keyserver_refresh):
Keyserver URL handler moved here. (calculate_keyid_fpr): Removed.
* keydb.h, keyid.c (keystr_from_desc): Calculate a key string from a
KEYDB_SEARCH_DESC.
|
|
|
|
|
| |
available now, since it's a replacement function.
|
|
|
|
|
| |
setenv() any longer.
|
|
|
|
|
|
|
|
|
| |
unsetenv.c.
* setenv.c: Removed.
* unsetenv.c: Removed.
|
|
|
|
|
| |
platforms. Noted by Roger Sondermann.
|