[PATCH] Add inside-Emacs mode to GUI pinentry programs

Daniel Kahn Gillmor dkg at fifthhorseman.net
Tue Jun 9 05:54:27 CEST 2015


On Mon 2015-06-08 23:40:36 -0400, Daiki Ueno wrote:
> That's a valid concern.  Actually, I too am unlikely to use the Emacs
> pinentry regularly for security reasons, while users are really eager
> for the enter-passphrase-from-the-minibuffer feature.

Which users are demanding this?  In what contexts?  How have the options
and tradeoffs been presented to them?  Understanding the goals and use
cases for this potentially-risky feature seems like an important step,
particularly if the folks developing it don't want to use it themselves.

> To enable the Emacs pinentry, a user needs to call M-x pinentry-start
> manually.  However, this might not be sufficient for GnuPG not to
> interact with Emacs.  In that case, it might make sense to add an
> option to pinentry.conf, e.g., {no-,}allow-emacs-pinentry.
>
> I will try to add it in the new patch.

thanks, this is an interesting option.

        --dkg



More information about the Gnupg-devel mailing list