PGP 7 RSA Legacy support? (fwd)

Meyer Wolfsheim wolf@priori.net
Sat, 24 Jun 2000 03:39:08 -0400 (EDT)


-----BEGIN PGP SIGNED MESSAGE-----

Note: Please Cc: me as I am not on this list.

I am using GnuPG 1.0.1 with FreeBSD 4.0. 

I am using my 2048 bit PGP 2.6.2 key (RSA Legacy, using the PGP 7.0
terminology -- not one of the new RSA keys) with GnuPG (from the FreeBSD
ports collection), and sending mail to some people who are using the PGP
7.0 beta as well as PGP 6.5.2, and using DSS/DH keys of varying sizes.

When they try to decrypt the message, they get a window asking them to
locate the file for the detached signature. (I haven't seen this myself,
but the problem should be clear).

My correspondents have no choice but to cancel, and the message is not
decrypted.

PGP 6.5 on Linux *can* decrypt the message, but the signature is "BAD". (I
have not verified this myself).

GnuPG 1.0.1d on Linux can decrypt and verify the message (again, I have
not tested this out myself).

I sent mail to Hal Finney (of PGP) about this, and his response and
diagnosis is below. I'm new to GnuPG, so go easy on me if this is a config
problem on my part somehow, but I suspect it is a bug. 

If someone would like me to send a sample encrypted message to the list, I
can do that.

Hope this helps...


- -MW-

- ---------- Forwarded message ----------
Date: Fri, 23 Jun 2000 21:13:39 -0700
From: hal@finney.org
To: wolf@priori.net
Subject: Re: PGP 7 RSA Legacy support?

Meyer - I have verified that the encrypted data is badly formed.
Briefly, there is a literal packet followed by a signature packet.
Are you using a current version of GPG?

Are you in a position to forward this information to the GPG maintainers?
If so, the contents of the decrypted and decompressed data is:

cb 17 74 00 39 54 04 bd 54 68 69 73 20 69 73 20
61 20 74 65 73 74 2e 0d 0a 89 01 15 03 05 01 39
54 04 bd 2b 05 53 7a ba bd 52 3d 01 01 4a 39 08
00 a2 65 5a e6 87 a0 06 7f b8 59 0a 67 85 91 4e
3d 5c 53 04 93 4a f1 1f fc 72 f8 4d 45 2b 8b 22
3c 12 b6 a5 a7 5c 9c f8 55 5b 08 0c d9 d8 f0 24
f9 4c a9 c4 ab ba 4e b6 9a e3 75 c4 45 a1 01 29
a1 b7 ac 56 fc 45 3d 1d 93 5b b3 18 1b 40 c6 73
37 84 16 86 8c 44 eb 46 2d 90 c1 cd aa c4 8c f7
a2 4d 98 9f a6 91 8c 52 4b 0b 8d 4d 25 07 8d 8a
13 1d 0f 4c dc 33 f7 ec 30 4f 40 98 36 2d 32 95
2d 06 44 cb 55 2e d5 1d 37 7f b6 28 3f b9 ee 28
41 28 c1 37 d1 25 0c 44 3e b2 25 08 95 60 15 f8
5b da 44 66 53 21 ba 0d 19 4e 54 c1 70 41 20 ac
c5 00 92 21 e2 7e 0d 41 a0 79 e0 60 1c e9 56 ef
eb a2 d6 b2 b5 9e 93 da a3 86 fc 49 5f 11 ff 67
24 ff ac cd 66 a7 e1 80 af a7 71 aa 1b 6c f8 c2
26 c6 a0 08 2d 22 1e 75 77 bc 4c 25 05 b7 4b 9c
2c 52 28 d0 05 39 04 d3 e9 00 21 75 1b 24 36 5e
83

This is not a properly formatted OpenPGP message.

Hal

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.1 (FreeBSD)
Comment: No comment.

iQEVAwUBOVRlpysFU3q6vVI9AQE6iQf6A3Sq0x3M1DKIoo1DyLxf69a+Zh5H7f34
FEOoLiFjUPKy74UZU5jhwGcdJFtkeFo/QmROrARAdD4BAUTuysxrfu76cRDNRNuX
HhtMdheweLrKhCdwfx4YsdQ8WdaOiK++LJYTBeMprw0ispuLkp8zsAbSRgTzLYtU
pGfXlmGlifK03W1HtgFtmgu0TeHM9HyfVJwlFUm7FGZEs5k293N0IDp8yiBZvMo1
FWu8tfOi8d9yTqPDi36tHOo6/tIn8fjkIfQ7FarJzRIkm36eOEGduKKQ029IoljY
bbIvzlnltzv6CkVY394NEmrIksCeK9HjFgNvwULwPsnwZwpkj+F6bA==
=J5vu
-----END PGP SIGNATURE-----