From mingli.yu at windriver.com Mon Jan 22 09:17:09 2024 From: mingli.yu at windriver.com (Yu, Mingli) Date: Mon, 22 Jan 2024 16:17:09 +0800 Subject: gnupg package version mismatch Message-ID: Hi Expert, The commit [b67e4e523 Improve the beta number generation.] [1] extends the version to make it work well for non release version, but it introduces the below version inconsistency though we use a release version 2.4.3. # rpm -qa | grep gnupg gnupg-2.4.3-r0.core2_64 # rpm -ql gnupg /usr /usr/bin /usr/bin/dirmngr /usr/bin/dirmngr-client /usr/bin/gpg-card /usr/bin/gpg-connect-agent /usr/bin/gpg-wks-client /usr/bin/gpg-wks-server /usr/bin/gpgconf /usr/bin/gpgparsemail /usr/bin/gpgscm /usr/bin/gpgsm /usr/bin/gpgsplit /usr/bin/gpgtar /usr/bin/gpgv /usr/bin/gpgv2 [snip] # gpgv --version gpgv (GnuPG) 2.4.3-unknown [snip] We expects below output: # gpgv --version gpgv (GnuPG) 2.4.3 [snip] [1] https://git.gnupg.org/cgi-bin/gitweb.cgi?p=gnupg.git;a=blobdiff;f=autogen.sh;h=2b0a5dc51a7386ef90ff6c8358d26b9cc65c0c72;hp=471193c2af6a298fdde466950061dd890feb230e;hb=b67e4e523e6d19d384e23c5bb03010caebd150e7;hpb=518d835380a2ae01d6a9cc19de92684baade96a4 Thanks, From wk at gnupg.org Mon Jan 22 11:31:13 2024 From: wk at gnupg.org (Werner Koch) Date: Mon, 22 Jan 2024 11:31:13 +0100 Subject: gnupg package version mismatch In-Reply-To: (Mingli via Gnupg-devel Yu's message of "Mon, 22 Jan 2024 16:17:09 +0800") References: Message-ID: <87plxtk6by.fsf@jacob.g10code.de> On Mon, 22 Jan 2024 16:17, Yu, Mingli said: > gpgv (GnuPG) 2.4.3-unknown You get the -unknown suffix if you run the autogen.sh script (or autoconf directly) from a release tarball. Don't do this - just run ./configure. Salam-Shalom, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein -------------- next part -------------- A non-text attachment was scrubbed... Name: openpgp-digital-signature.asc Type: application/pgp-signature Size: 247 bytes Desc: not available URL: From mingli.yu at windriver.com Wed Jan 24 06:30:41 2024 From: mingli.yu at windriver.com (Yu, Mingli) Date: Wed, 24 Jan 2024 13:30:41 +0800 Subject: gnupg package version mismatch In-Reply-To: <87plxtk6by.fsf@jacob.g10code.de> References: <87plxtk6by.fsf@jacob.g10code.de> Message-ID: <3d2d7443-3de5-b97f-050c-6604e2bc7a11@windriver.com> On 1/22/24 18:31, Werner Koch wrote: > On Mon, 22 Jan 2024 16:17, Yu, Mingli said: > >> gpgv (GnuPG) 2.4.3-unknown > > You get the -unknown suffix if you run the autogen.sh script (or > autoconf directly) from a release tarball. Don't do this - just run > ./configure. For some reason, we need to run autoreconf. Is there any way to remove the -unknown suffix for the release version. Thanks, > > > Salam-Shalom, > > Werner > From robbat2 at gentoo.org Wed Jan 24 08:03:51 2024 From: robbat2 at gentoo.org (Robin H. Johnson) Date: Wed, 24 Jan 2024 07:03:51 +0000 Subject: feature-request: import-option no-import-attributes Message-ID: Minor feature request; Could --import-options get a "import-attributes"/"no-import-attributes" value please? I'm writing tooling that needs to repeatedly import older keys, and I want to exclude any attribute uids because they aren't relevant to my processing. I started trying to write it myself, but the import.c code was too complex for 23:00 local time. -- Robin Hugh Johnson Gentoo Linux: Dev, Infra Lead, Foundation President & Treasurer E-Mail : robbat2 at gentoo.org GnuPG FP : 11ACBA4F 4778E3F6 E4EDF38E B27B944E 34884E85 GnuPG FP : 7D0B3CEB E9B85B1F 825BCECF EE05E6F6 A48F6136 From kloecker at kde.org Wed Jan 24 13:08:10 2024 From: kloecker at kde.org (Ingo =?ISO-8859-1?Q?Kl=F6cker?=) Date: Wed, 24 Jan 2024 13:08:10 +0100 Subject: gnupg package version mismatch In-Reply-To: <3d2d7443-3de5-b97f-050c-6604e2bc7a11@windriver.com> References: <87plxtk6by.fsf@jacob.g10code.de> <3d2d7443-3de5-b97f-050c-6604e2bc7a11@windriver.com> Message-ID: <1979652.usQuhbGJ8B@daneel> On Mittwoch, 24. Januar 2024 06:30:41 CET Yu, Mingli via Gnupg-devel wrote: > On 1/22/24 18:31, Werner Koch wrote: > > On Mon, 22 Jan 2024 16:17, Yu, Mingli said: > >> gpgv (GnuPG) 2.4.3-unknown > > > > You get the -unknown suffix if you run the autogen.sh script (or > > autoconf directly) from a release tarball. Don't do this - just run > > ./configure. > > For some reason, we need to run autoreconf. Is there any way to remove > the -unknown suffix for the release version. openSUSE applies this patch https://build.opensuse.org/package/view_file/openSUSE:Factory/gpg2/gnupg-nobetasuffix.patch?expand=1 on their build system. Regards, Ingo -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 228 bytes Desc: This is a digitally signed message part. URL: From wk at gnupg.org Wed Jan 24 17:44:09 2024 From: wk at gnupg.org (Werner Koch) Date: Wed, 24 Jan 2024 17:44:09 +0100 Subject: gnupg package version mismatch In-Reply-To: <1979652.usQuhbGJ8B@daneel> ("Ingo =?utf-8?Q?Kl=C3=B6cker=22'?= =?utf-8?Q?s?= message of "Wed, 24 Jan 2024 13:08:10 +0100") References: <87plxtk6by.fsf@jacob.g10code.de> <3d2d7443-3de5-b97f-050c-6604e2bc7a11@windriver.com> <1979652.usQuhbGJ8B@daneel> Message-ID: <874jf2k7fq.fsf@jacob.g10code.de> On Wed, 24 Jan 2024 13:08, Ingo Kl?cker said: > openSUSE applies this patch > https://build.opensuse.org/package/view_file/openSUSE:Factory/gpg2/gnupg-nobetasuffix.patch?expand=1 > on their build system. Ahem. If you really must do that, go ahead. However, I would prefer if you just replace the "-unknown" by "-windriver". And for Suse and other distros who use modified versions to replace that by a string like "-suse". This would help us a lot to evaluate bug reports. Salam-Shalom, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein -------------- next part -------------- A non-text attachment was scrubbed... Name: openpgp-digital-signature.asc Type: application/pgp-signature Size: 247 bytes Desc: not available URL: From wk at gnupg.org Wed Jan 24 18:32:08 2024 From: wk at gnupg.org (Werner Koch) Date: Wed, 24 Jan 2024 18:32:08 +0100 Subject: feature-request: import-option no-import-attributes In-Reply-To: (Robin H. Johnson via Gnupg-devel's message of "Wed, 24 Jan 2024 07:03:51 +0000") References: Message-ID: <87zfwuiqnb.fsf@jacob.g10code.de> On Wed, 24 Jan 2024 07:03, Robin H. Johnson said: > Minor feature request; > Could --import-options get a "import-attributes"/"no-import-attributes" > value please? $ gpg --import-options full-help | grep attr ignore-attributes I hope that ignore-attributes is also okay. Using import-attributes requires to initialize this first and thus it needs a little bit more code. There is anyway to clean naming scheme for the sub-options. https://dev.gnupg.org/rGd4976e35d2ca431b2a651aa11be8a4589c8dd39a gpg --export FD34556CF77575840F1B8D73A2156B6D520D7F8C \ | gpg --import --import-options import-export,ignore-attributes \ | gpg --show-key Will be in 2.4.4 to be released in a few days. Shalom-Salam, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein -------------- next part -------------- A non-text attachment was scrubbed... Name: openpgp-digital-signature.asc Type: application/pgp-signature Size: 247 bytes Desc: not available URL: From robbat2 at gentoo.org Wed Jan 24 23:33:45 2024 From: robbat2 at gentoo.org (Robin H. Johnson) Date: Wed, 24 Jan 2024 22:33:45 +0000 Subject: feature-request: import-option no-import-attributes In-Reply-To: <87zfwuiqnb.fsf@jacob.g10code.de> References: <87zfwuiqnb.fsf@jacob.g10code.de> Message-ID: On Wed, Jan 24, 2024 at 06:32:08PM +0100, Werner Koch wrote: > On Wed, 24 Jan 2024 07:03, Robin H. Johnson said: > > Minor feature request; > > Could --import-options get a "import-attributes"/"no-import-attributes" > > value please? > > $ gpg --import-options full-help | grep attr > ignore-attributes > > I hope that ignore-attributes is also okay. Using import-attributes > requires to initialize this first and thus it needs a little bit more > code. There is anyway to clean naming scheme for the sub-options. > > https://dev.gnupg.org/rGd4976e35d2ca431b2a651aa11be8a4589c8dd39a > > gpg --export FD34556CF77575840F1B8D73A2156B6D520D7F8C \ > | gpg --import --import-options import-export,ignore-attributes \ > | gpg --show-key > > Will be in 2.4.4 to be released in a few days. Thanks Warner, that's great! -- Robin Hugh Johnson Gentoo Linux: Dev, Infra Lead, Foundation President & Treasurer E-Mail : robbat2 at gentoo.org GnuPG FP : 11ACBA4F 4778E3F6 E4EDF38E B27B944E 34884E85 GnuPG FP : 7D0B3CEB E9B85B1F 825BCECF EE05E6F6 A48F6136 -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 1113 bytes Desc: not available URL: From wk at gnupg.org Thu Jan 25 17:26:55 2024 From: wk at gnupg.org (Werner Koch) Date: Thu, 25 Jan 2024 17:26:55 +0100 Subject: [Announce] GnuPG 2.4.4 released Message-ID: <87le8didkg.fsf@jacob.g10code.de> Hello! We are pleased to announce the availability of a new stable GnuPG release: version 2.4.4. This version fixes a couple of bugs, comes with some new features. A smartcard related security bug is also fixed and a tool to check for this flaw is provided. See below for details. What is GnuPG ============= The GNU Privacy Guard (GnuPG, GPG) is a complete and free implementation of the OpenPGP and S/MIME standards. GnuPG allows to encrypt and sign data and communication, features a versatile key management system as well as access modules for public key directories. GnuPG itself is a command line tool with features for easy integration with other applications. The separate library GPGME provides a uniform API to use the GnuPG engine by software written in common programming languages. A wealth of frontend applications and libraries making use of GnuPG are available. As an universal crypto engine GnuPG provides support for S/MIME and Secure Shell in addition to OpenPGP. GnuPG is Free Software (meaning that it respects your freedom). It can be freely used, modified and distributed under the terms of the GNU General Public License. Noteworthy changes in version 2.4.4 =================================== * gpg: Do not keep an unprotected smartcard backup key on disk. See https://gnupg.org/blog/20240125-smartcard-backup-key.html for a security advisory. [T6944] * gpg: Allow to specify seconds since Epoch beyond 2038 on 32-bit platforms. [T6736] * gpg: Fix expiration time when Creation-Date is specified. [T5252] * gpg: Add support for Subkey-Expire-Date. [rG96b69c1866] * gpg: Add option --with-v5-fingerprint. [T6705] * gpg: Add sub-option ignore-attributes to --import-options. [rGd4976e35d2] * gpg: Add --list-filter properties sig_expires/sig_expires_d. [rGbf662d0f93af] * gpg: Fix validity of re-imported keys. [T6399] * gpg: Report BEGIN_ status before examining the input. [T6481] * gpg: Don't try to compress a read-only keybox. [T6811] * gpg: Choose key from inserted card over a non-inserted card. [T6831] * gpg: Allow to create revocations even with non-compliant algos. [T6929] * gpg: Fix regression in the Revoker keyword of the parameter file. [T6923] * gpg: Improve error message for expired default keys. [T4704] * gpgsm: Add --always-trust feature. [T6559] * gpgsm: Support ECC certificates in de-vs mode. [T6802] * gpgsm: Major rewrite of the PKCS#12 parser. [T6536] * gpgsm: No not show the pkcs#12 passphrase in debug output. [T6654] * keyboxd: Timeout on failure to get the database lock. [T6838] * agent: Update the key stubs only if really modified. [T6829] * scd: Add support for certain Starcos 3.2 cards. [rG5304c9b080] * scd: Add support for CardOS 5.4 cards. [rG812f988059] * scd: Add support for D-Trust 4.1/4.4 cards. [rG0b85a9ac09] * scd: Add support for Smartcafe Expert 7.0 cards. [T6919] * scd: Add a length check for a new PIN. [T6843] * tpm: Fix keytotpm handling in the agent. [rG9909f622f6] * tpm: Fixes for the TPM test suite. [T6052] * dirmngr: Avoid starting a second instance on Windows via GPGME based launching. [T6833] * dirmngr: New option --ignore-crl-extensions. [T6545] * dirmngr: Support config value "none" to disable the default keyserver. [T6708] * dirmngr: Implement automatic proxy detection on Windows. [T5768] * dirmngr: Fix handling of the HTTP Content-Length. [rGa5e33618f4] * dirmngr: Add code to support proxy authentication using the Negotiation method on Windows. [T6719] * gpgconf: Add commands --lock and --unlock. [rG93b5ba38dc] * gpgconf: Add keyword socketdir to gpgconf.ctl. [rG239c1fdc28] * gpgconf: Adjust the -X command for the new VERSION file format. [T6918] * wkd: Use export-clean for gpg-wks-client's --mirror and --create commands. [rG2c7f7a5a278c] * wkd: Make --add-revocs the default in gpg-wks-client. New option --no-add-revocs. [rG10c937ee68] * Remove duplicated backslashes when setting the homedir. [T6833] * Ignore attempts to remove the /dev/null device. [T6556] * Improve advisory file lock retry strategy. [T3380] * Improve the speedo build system for Unix. [T6710] Release-info: https://dev.gnupg.org/T6578 Getting the Software ==================== Please follow the instructions found at or read on: GnuPG may be downloaded from one of the GnuPG mirror sites or direct from its primary FTP server. The list of mirrors can be found at . Note that GnuPG is not available at ftp.gnu.org. The GnuPG source code compressed using BZIP2 and its OpenPGP signature are available here: https://gnupg.org/ftp/gcrypt/gnupg/gnupg-2.4.4.tar.bz2 (7701k) https://gnupg.org/ftp/gcrypt/gnupg/gnupg-2.4.4.tar.bz2.sig An installer for Windows without any graphical frontend except for a very minimal Pinentry tool is available here: https://gnupg.org/ftp/gcrypt/binary/gnupg-w32-2.4.4_20240125.exe (5407k) https://gnupg.org/ftp/gcrypt/binary/gnupg-w32-2.4.4_20240125.exe.sig The source used to build this Windows installer can be found in the same directory with a ".tar.xz" suffix. A new release of the full featured Gpg4win installer including this version of GnuPG is available here: https://files.gpg4win.org/gpg4win-4.3.0.exe (34M) https://files.gpg4win.org/gpg4win-4.3.0.exe.sig https://files.gpg4win.org/gpg4win-4.3.0.tar.xz (219M) https://files.gpg4win.org/gpg4win-4.3.0.tar.xz.sig Checking the Integrity ====================== In order to check that the version of GnuPG which you are going to install is an original and unmodified one, you can do it in one of the following ways: * If you already have a version of GnuPG installed, you can simply verify the supplied signature. For example to verify the signature of the file gnupg-2.4.4.tar.bz2 you would use this command: gpg --verify gnupg-2.4.4.tar.bz2.sig gnupg-2.4.4.tar.bz2 This checks whether the signature file matches the source file. You should see a message indicating that the signature is good and made by one or more of the release signing keys. Make sure that this is a valid key, either by matching the shown fingerprint against a trustworthy list of valid release signing keys or by checking that the key has been signed by trustworthy other keys. See the end of this mail for information on the signing keys. * If you are not able to use an existing version of GnuPG, you have to verify the SHA-1 checksum. On Unix systems the command to do this is either "sha1sum" or "shasum". Assuming you downloaded the file gnupg-2.4.4.tar.bz2, you run the command like this: sha1sum gnupg-2.4.4.tar.bz2 and check that the output matches the next line: 228b3984325fdeebc5e3f2d165c6419a5ebc28de gnupg-2.4.4.tar.bz2 1be67fe7a98c313d3767554cd48517735d20b7b9 gnupg-w32-2.4.4_20240125.tar.xz 9773a6baae99353aa63d08dba6e643cbecc75de5 gnupg-w32-2.4.4_20240125.exe 6e8ac03208caf76d6e487f8554f2bd607a1b9192 gpg4win-4.3.0.exe Internationalization ==================== This version of GnuPG has support for 26 languages with Chinese (traditional and simplified), Czech, French, German, Italian, Japanese, Norwegian, Polish, Russian, Turkish, and Ukrainian being almost completely translated. Documentation and Support ========================= The file gnupg.info has the complete reference manual of the system. Separate man pages are included as well but they miss some of the details available only in the manual. The manual is also available online at https://gnupg.org/documentation/manuals/gnupg/ or can be downloaded as PDF at https://gnupg.org/documentation/manuals/gnupg.pdf You may also want to search the GnuPG mailing list archives or ask on the gnupg-users mailing list for advise on how to solve problems. Most of the new features are around for several years and thus enough public experience is available. https://wiki.gnupg.org has user contributed information around GnuPG and relate software. In case of build problems specific to this release please first check https://dev.gnupg.org/T6578 for updated information. Please consult the archive of the gnupg-users mailing list before reporting a bug: https://gnupg.org/documentation/mailing-lists.html. We suggest to send bug reports for a new release to this list in favor of filing a bug at https://bugs.gnupg.org. If you need commercial support go to https://gnupg.com or https://gnupg.org/service.html. If you are a developer and you need a certain feature for your project, please do not hesitate to bring it to the gnupg-devel mailing list for discussion. Thanks ====== Since 2001 maintenance and development of GnuPG is done by g10 Code GmbH and has mostly been financed by donations. Several full-time employed developers and contractors are working exclusively on GnuPG and closely related software like Libgcrypt, GPGME, Kleopatra and Gpg4win. Fortunately, and this is still not common with free software, we have established a way of financing the development while keeping all our software free and freely available for everyone. Our model is similar to the way RedHat manages RHEL and Fedora: Except for the actual binary of the MSI installer for Windows and client specific configuration files, all the software is available under the GNU GPL and other Open Source licenses. Thus customers may even build and distribute their own version of the software as long as they do not use our trademarks GnuPG Desktop? or GnuPG VS-Desktop?. We like to thank all the nice people who are helping the GnuPG project, be it testing, coding, translating, suggesting, auditing, administering the servers, spreading the word, answering questions on the mailing lists, or helped with donations. *Thank you all* Your GnuPG hackers p.s. This is an announcement only mailing list. Please send replies only to the gnupg-users at gnupg.org mailing list. List of Release Signing Keys: To guarantee that a downloaded GnuPG version has not been tampered by malicious entities we provide signature files for all tarballs and binary versions. The keys are also signed by the long term keys of their respective owners. Current releases are signed by one or more of these four keys: rsa3072 2017-03-17 [expires: 2027-03-15] 5B80 C575 4298 F0CB 55D8 ED6A BCEF 7E29 4B09 2E28 Andre Heinecke (Release Signing Key) ed25519 2020-08-24 [expires: 2030-06-30] 6DAA 6E64 A76D 2840 571B 4902 5288 97B8 2640 3ADA Werner Koch (dist signing 2020) ed25519 2021-05-19 [expires: 2027-04-04] AC8E 115B F73E 2D8D 47FA 9908 E98E 9B2D 19C6 C8BD Niibe Yutaka (GnuPG Release Key) brainpoolP256r1 2021-10-15 [expires: 2029-12-31] 02F3 8DFF 731F F97C B039 A1DA 549E 695E 905B A208 GnuPG.com (Release Signing Key 2021) The keys are available at https://gnupg.org/signature_key.html and in any recently released GnuPG tarball in the file g10/distsigkey.gpg . Note that this mail has been signed by a different key. -- Arguing that you don't care about the right to privacy because you have nothing to hide is no different from saying you don't care about free speech because you have nothing to say. - Edward Snowden -------------- next part -------------- A non-text attachment was scrubbed... Name: openpgp-digital-signature.asc Type: application/pgp-signature Size: 247 bytes Desc: not available URL: -------------- next part -------------- _______________________________________________ Gnupg-announce mailing list Gnupg-announce at gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-announce From bernhard at intevation.de Fri Jan 26 14:48:14 2024 From: bernhard at intevation.de (Bernhard Reiter) Date: Fri, 26 Jan 2024 14:48:14 +0100 Subject: [PATCH] gnupg-doc blog: fix minor typo in 20240125-smartcard-backup-key.org Message-ID: <202401261448.14946.bernhard@intevation.de> --- misc/blog.gnupg.org/20240125-smartcard-backup-key.org | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/misc/blog.gnupg.org/20240125-smartcard-backup-key.org b/misc/blog.gnupg.org/20240125-smartcard-backup-key.org index 6d14e53..e88bc2c 100644 --- a/misc/blog.gnupg.org/20240125-smartcard-backup-key.org +++ b/misc/blog.gnupg.org/20240125-smartcard-backup-key.org @@ -30,13 +30,13 @@ check for this flaw and to delete the copy: - /Gpg4win/ version 4.2.0 -- /GnuPG/ versions 2.4.2 and 2.4.3 iff the card generation was done +- /GnuPG/ versions 2.4.2 and 2.4.3 if the card generation was done with the command =gpg --card-edit=. -- /GnuPG/ version 2.2.42 iff the card generation was done with the +- /GnuPG/ version 2.2.42 if the card generation was done with the command =gpg --card-edit=. -- /GnuPG VS-Desktop/ version 3.2.0 and 3.2.1 iff the card generation +- /GnuPG VS-Desktop/ version 3.2.0 and 3.2.1 if the card generation was done with the non-approved command =gpg --card-edit=. The documented way to create keys on OpenPGP cards and Yubikeys is not affected. -- 2.30.2 From ralph at ml.seichter.de Fri Jan 26 20:47:17 2024 From: ralph at ml.seichter.de (Ralph Seichter) Date: Fri, 26 Jan 2024 20:47:17 +0100 Subject: [Announce] GnuPG for OS X 2.4.4 Message-ID: <87il3fubay.fsf@ra.horus-it.com> GnuPG for OS X / macOS release 2.4.4 is now available for download via https://sourceforge.net/p/gpgosx/docu/Download/ . The disk image signature key is available via public keyservers, and it can also be downloaded from https://www.seichter.de/pgp/gpgosx-signing.asc . pub ed25519/FD56297D9833FF7F 2022-07-07 [SC] [expires: 2027-07-06] Key fingerprint = EAB0 FE4F F793 D9E7 028E C8E2 FD56 297D 9833 FF7F uid [ultimate] Ralph Seichter (GnuPG for OS X signing key) GnuPG 2.4.x is installed in /usr/local/gnupg-2.4 instead of the formerly hardcoded directory /usr/local/gnupg-2.2. This enables installing both stable and LTS releases of GnuPG for OS X side by side, for advanced users' needs. The one caveat is that the latest installation will replace existing soft links in /usr/local/{bin,lib}. Please use absolute paths like /usr/local/gnupg-2.2/bin/gpg2 if necessary. Enjoy. -Ralph From ametzler at bebt.de Sat Jan 27 09:34:33 2024 From: ametzler at bebt.de (Andreas Metzler) Date: Sat, 27 Jan 2024 09:34:33 +0100 Subject: [Patch] Fix some spelling/grammar issues Message-ID: Good morning, find attached a patch against 2.4.4 to fix some issues flagged by lintian. TIA, cu Andreas -------------- next part -------------- A non-text attachment was scrubbed... Name: spelling-fixes.diff Type: text/x-diff Size: 19586 bytes Desc: not available URL: -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 833 bytes Desc: not available URL: From mail at bernhard-voelker.de Sat Jan 27 14:00:10 2024 From: mail at bernhard-voelker.de (Bernhard Voelker) Date: Sat, 27 Jan 2024 14:00:10 +0100 Subject: [PATCH] gnupg-doc blog: fix minor typo in 20240125-smartcard-backup-key.org In-Reply-To: <202401261448.14946.bernhard@intevation.de> References: <202401261448.14946.bernhard@intevation.de> Message-ID: <06173f7f-c397-478c-a16f-bd16d1686807@bernhard-voelker.de> On 1/26/24 14:48, Bernhard Reiter wrote: > -- /GnuPG/ version 2.2.42 iff the card generation was done with the > +- /GnuPG/ version 2.2.42 if the card generation was done with the That's not a typo but short for "if and only if" in technical context. Have a nice day, Berny From wk at gnupg.org Mon Jan 29 09:18:21 2024 From: wk at gnupg.org (Werner Koch) Date: Mon, 29 Jan 2024 09:18:21 +0100 Subject: [Patch] Fix some spelling/grammar issues In-Reply-To: (Andreas Metzler's message of "Sat, 27 Jan 2024 09:34:33 +0100") References: Message-ID: <87v87ch7si.fsf@jacob.g10code.de> On Sat, 27 Jan 2024 09:34, Andreas Metzler said: > Good morning, > > find attached a patch against 2.4.4 to fix some issues flagged by > lintian. Applied thanks. Salam-Shalom, Werner -- The pioneers of a warless world are the youth that refuse military service. - A. Einstein -------------- next part -------------- A non-text attachment was scrubbed... Name: openpgp-digital-signature.asc Type: application/pgp-signature Size: 247 bytes Desc: not available URL: From bernhard at intevation.de Mon Jan 29 11:45:31 2024 From: bernhard at intevation.de (Bernhard Reiter) Date: Mon, 29 Jan 2024 11:45:31 +0100 Subject: [PATCH] gnupg-doc blog: fix minor typo in 20240125-smartcard-backup-key.org In-Reply-To: <06173f7f-c397-478c-a16f-bd16d1686807@bernhard-voelker.de> References: <202401261448.14946.bernhard@intevation.de> <06173f7f-c397-478c-a16f-bd16d1686807@bernhard-voelker.de> Message-ID: <202401291145.40091.bernhard@intevation.de> Am Samstag 27 Januar 2024 14:00:10 schrieb Bernhard Voelker: > On 1/26/24 14:48, Bernhard Reiter wrote: > > -- /GnuPG/ version 2.2.42 iff the card generation was done with the > > +- /GnuPG/ version 2.2.42 if the card generation was done with the > > That's not a typo but short for "if and only if" in technical context. Thanks for the hint. (I did search for this briefly but missed to find something like https://en.wikipedia.org/wiki/If_and_only_if) BTW the page says "Some authors regard "iff" as unsuitable in formal writing" and given that it assumes that people know it, maybe replacing it with "if and only if" is better for the security advisory. ? -- https://intevation.de/~bernhard ? +49 541 33 508 3-3 Intevation GmbH, Osnabr?ck, DE; Amtsgericht Osnabr?ck, HRB 18998 Gesch?ftsf?hrer: Frank Koormann, Bernhard Reiter -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 659 bytes Desc: This is a digitally signed message part. URL: