gpg: error retrieving 'erich at eckner.net' via WKD: Connection closed in DNS

Erich Eckner gnupg at eckner.net
Thu Jan 21 15:05:53 CET 2021


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On Wed, 20 Jan 2021, Werner Koch wrote:

> On Wed, 20 Jan 2021 14:46, Erich Eckner said:
>
>> is queried. This resolves to some old address (my DNS configuration
>> error), which serves the wrong content. Is it right, that this SRV record
>> should be queried? Should I update it or remove it?
>
> Yes, the SRV record is used if there is no openpgpkeys sub-domain.  The
> reason is that the original scheme was to use SRV records but we had to
> switch to a subdomain due to problems with browser based code.

Ah, right, I see the SRV record being queried *after* the
openpgpkey.eckner.net query. However, for whatever reason these (and the 
SRV) queries fail:

2021-01-21 14:41:32 dirmngr[3623955.6] DBG: chan_6 <- WKD_GET -- erich at eckner.net
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: dns: libdns initialized (tor mode)
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: dns: resolve_dns_name(openpgpkey.eckner.net): Verbindung im DNS geschlossen
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: dns: libdns initialized (tor mode)
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: dns: getsrv(_openpgpkey._tcp.eckner.net): Verbindung im DNS geschlossen
2021-01-21 14:41:32 dirmngr[3623955.6] command 'WKD_GET' failed: Verbindung im DNS geschlossen
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: chan_6 -> ERR 167772876 Verbindung im DNS geschlossen <Dirmngr>
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: chan_6 <- BYE
2021-01-21 14:41:32 dirmngr[3623955.6] DBG: chan_6 -> OK closing connection
2021-01-21 14:41:32 dirmngr[3623955.6] Handhabungsroutine für den fd 6 beendet

the other box shows different errors at the same positions:

2021-01-21 14:47:09 dirmngr[1904072.6] DBG: chan_6 <- WKD_GET -- erich at eckner.net
2021-01-21 14:47:09 dirmngr[1904072.6] DBG: dns: resolve_dns_name(openpgpkey.eckner.net): Permission denied
2021-01-21 14:47:09 dirmngr[1904072.6] DBG: dns: getsrv(_openpgpkey._tcp.eckner.net): Permission denied
2021-01-21 14:47:09 dirmngr[1904072.6] command 'WKD_GET' failed: Permission denied
2021-01-21 14:47:09 dirmngr[1904072.6] DBG: chan_6 -> ERR 167804929 Permission denied <Dirmngr>

I wonder, though, why the tried things differ on both machines - both run 
arch linux with gnupg 2.2.26 and libgcrypt 1.8.7, no gpg.conf.

What should I do to dig further into this?

>
>> I assume, this is for debugging *a lot* of gnupg in one place (like your
>
> Right. It is also cool to watch the diagnostccs fly by during regular
> use ;-)

I played around with the socket:// log "file", and I must say, the nice 
thing is, that you can keep this in your dirmngr.conf without creating 
endless logs - only when the listening command is started, the socket is 
created and actual logs will be generated :-)

>
>
> Salam-Shalom,
>
>   Werner

regards,
Erich

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCAAdFiEE3p92iMrPBP64GmxZCu7JB1Xae1oFAmAJikIACgkQCu7JB1Xa
e1q30g/8DbT9NA95gxe3NXEN54oj5Cge1dxqGbuqhg2tQv4Pex5hMNv8YSVE8kMM
g0npzK24d5fszFEhOJlfQ+7HGzFb39hPjVVv48RsHjVPw2pGz1e4/K5p4AkqRjde
H7D/CghEGPVdIjM52VI9oJRMCFly2iKPZsurNrJhqfbtzAMCSmTv/gUotO9mA23b
1wvlcBryrt8d/Hu653x+Rx0oCygDHj7etzONH5tMFunw7oJiLoonWB65w18aC3yQ
qMKyIBEtUJkskH25SJeY8ZUr8h1CTsXAvovqjhgfvOMV+1p9wnj234o/c8m33uUQ
si0sSbP6xtc6BcEy2XuVWrpw9lKZYVsRDdAODnXqKCLeIdb7K57P+2EV2Azc80BP
Wy1m9qzgGPLK5A6RxDoQD9jSisTDm4okiDM4ZvK5v+0k2NWqy+7hnsoF2Pohe5zE
RBlumaSmE6jiw2QaLuUscUFJB/QgxOnh1PpdU7SoMMh6Vmb7Rt7Eau63iZxmJWym
lSY+OUCLlWTdDipV8OU86ZI0uzHJo1JJGDkijR2hlJblLI6bOyc1oC2L42R49dbe
jLoFUxoK7K6VDOXVcK8spIcmhrJERudg1U96ArP3G2o9S9bg+n4C2B7hTo2wm3Ml
zcdk8Zt3PB6G7wmc41bvtd5LDcbLFXvr1/KxT+JLyWy0tJW0RXU=
=GAHG
-----END PGP SIGNATURE-----


More information about the Gnupg-users mailing list