--gnupg option

David Shaw dshaw at jabberwocky.com
Sat Oct 11 13:28:34 CEST 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sat, Oct 11, 2003 at 05:54:35PM +0200, Kai Raven wrote:
> Hi,
> 
> i have read in the man page, that --gnupg "is essentially"
> --openpgp, "but with some additional workarounds for common
> compatibility problems in different versions of PGP."
> What are the additional workarounds in comparison with the --openpgp
> option? And what PGP versions are affected by --gnupg?

The most significant differences are:

* Some win32 mail programs add whitespace to armor in odd places,
  --gnupg works around this.

* --openpgp has no MDC packets.  --gnupg does.

* --openpgp has no photo IDs.  --gnupg does.

* --openpgp has no TIGER/192 hash.  --gnupg might (if it is compiled
  in).

* All versions of PGP have differences in how they hash text data for
  signatures.  --gnupg has workarounds.

Minor differences - 

- --openpgp:
  --no-force-v3-sigs
  --no-escape-from
  default cipher is 3DES

- --gnupg:
  --force-v3-sigs
  --escape-from
  default cipher is CAST5

- --gnupg is the default as it is more useful in the real world.

David
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.3.4-cvs (GNU/Linux)
Comment: Key available at http://www.jabberwocky.com/david/keys.asc

iHEEARECADEFAj+IL7EqGGh0dHA6Ly93d3cuamFiYmVyd29ja3kuY29tL2Rhdmlk
L2tleXMuYXNjAAoJEOJmXIdJ4cvJnawAoJsPJ27V8itkKKC9QSbbsorlEqPkAJ44
zG9MzVnvf76wCqM+3DDRtte87w==
=Mvtc
-----END PGP SIGNATURE-----



More information about the Gnupg-users mailing list