gpgsm: Cannot decrypt with expired certificate for CRL

Peter Lebbing peter at
Mon Mar 25 19:25:44 CET 2019

On 25/03/2019 16:41, Rainer Perske wrote:
> the problem reported by Jens Lechtenboerger is solved:

But... shouldn't it always be possible to /decrypt/, no matter the
revocation status or expiry or whatnot?

I can understand a certificate being skipped to /encrypt/ to, but it
seems rather drastical to prevent reading any mail encrypted to that key
and stuff like that.


I use the GNU Privacy Guard (GnuPG) in combination with Enigmail.
You can send me encrypted mail if you want some privacy.
My key is available at <>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <>

More information about the Gnupg-devel mailing list