Fresh certificate marked as expired / messed-up certificate chain pulling expired root cert in gpgsm

Dr. Thomas Orgis thomas.orgis at
Mon Jul 29 10:03:02 CEST 2019

Am Sat, 20 Jul 2019 20:07:37 +0200
schrieb "Dr. Thomas Orgis" <thomas.orgis at>: 

> The issue I see is that
> these certs are not even supposed to be in the chain!

> the presence of the old certificates stirs things up. When I create a
> fresh user and import the new key with its certs into gpgsm, the chain
> looks like it should.

Shall I open a bug report about this behaviour? Any investigation I
could do to make the report more useful?


Dr. Thomas Orgis
HPC @ Universität Hamburg

