<div dir="ltr">Apparently, this upgrade also negatively affects trustdb, since encrypting files with previously trusted public keys not fails, stating the there is no trust assigned to these keys.<div><br></div><div>How can we correct these trust issues?</div><div><br></div><div>Please, advise. Thank you.</div><div><br></div><div>~ Mike</div></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Thu, Oct 3, 2024 at 11:19 AM Mike Schleif <<a href="mailto:mike@mdsresource.net">mike@mdsresource.net</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div dir="ltr"><div>Finally, we are moving from CentOS Linux release 7.9.2009 (Core) _to_ AlmaLinux release 9.4 (Seafoam Ocelot).</div><div><br></div><div>I copied .gnupg/ to the new host. Problems unsued ...<br></div><div><br></div><div>[ROOT@russell ~/tmP ] # date; /bin/gpg -K ;date<br>Thu Oct 3 11:13:52 CDT 2024<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 5d5ddc60954d5b06fa7b592ec45b70d9<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 850d581e35383b8c11b50e471bb1b9be<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 95b748bd217e51c036d8d0ce4387c502<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>/root/.gnupg/pubring.gpg<br>------------------------<br>sec dsa1024 2002-04-01 [SCA]<br> 8C71B38C3A071ABCD831D4655257EBE831A070A8<br>uid [ultimate] <a href="mailto:publickey@provell.com" target="_blank">publickey@provell.com</a><br>ssb elg1024 2002-04-01 [E]<br><br>sec rsa4096 2016-03-18 [SC]<br> 3EA174A350A97D4356A35BC6455FC35E80167A71<br>uid [ultimate] Sempris <publickey@Sempris.com><br>ssb rsa4096 2016-03-18 [E]<br><br>Thu Oct 3 11:13:52 CDT 2024</div><div><br></div><div><br></div><div>[ROOT@russell ~/tmP ] # date; /bin/gpg -K --debug=ipc ;date<br>Thu Oct 3 11:14:09 CDT 2024<br>gpg: reading options from '/root/.gnupg/gpg.conf'<br>gpg: reading options from '[cmdline]'<br>gpg: enabled debug flags: ipc<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 5d5ddc60954d5b06fa7b592ec45b70d9<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 850d581e35383b8c11b50e471bb1b9be<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 95b748bd217e51c036d8d0ce4387c502<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>gpg: DBG: chan_6 <- OK Pleased to meet you, process 88789<br>gpg: DBG: connection to the gpg-agent established<br>gpg: DBG: chan_6 -> RESET<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION ttyname=/dev/pts/4<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION ttytype=xterm<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION lc-ctype=C<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION lc-messages=C<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> GETINFO version<br>gpg: DBG: chan_6 <- D 2.3.3<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION allow-pinentry-notify<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> OPTION agent-awareness=2.1.0<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> HAVEKEY --list=1000<br>gpg: DBG: chan_6 <- [ 44 20 d5 a1 e8 57 87 66 fc 6d cc 90 8b 25 32 35 ...(74 byte(s) skipped) ]<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> KEYINFO D5A1E8578766FC6DCC908B25D600BAD639D641A6<br>gpg: DBG: chan_6 <- S KEYINFO D5A1E8578766FC6DCC908B25D600BAD639D641A6 D - - - P - - -<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> KEYINFO 50C781CC9FD53404EC17CF98BFC22BE65A1547E7<br>gpg: DBG: chan_6 <- S KEYINFO 50C781CC9FD53404EC17CF98BFC22BE65A1547E7 D - - - P - - -<br>gpg: DBG: chan_6 <- OK<br>/root/.gnupg/pubring.gpg<br>------------------------<br>sec dsa1024 2002-04-01 [SCA]<br> 8C71B38C3A071ABCD831D4655257EBE831A070A8<br>uid [ultimate] <a href="mailto:publickey@provell.com" target="_blank">publickey@provell.com</a><br>ssb elg1024 2002-04-01 [E]<br><br>gpg: DBG: chan_6 -> KEYINFO 6924009722E1790A3D3CB382FD26707F0A3136EE<br>gpg: DBG: chan_6 <- S KEYINFO 6924009722E1790A3D3CB382FD26707F0A3136EE D - - - P - - -<br>gpg: DBG: chan_6 <- OK<br>gpg: DBG: chan_6 -> KEYINFO 13CF8D0A979ADBF4D7D34E66841FCFA5CC7F5EB8<br>gpg: DBG: chan_6 <- S KEYINFO 13CF8D0A979ADBF4D7D34E66841FCFA5CC7F5EB8 D - - - P - - -<br>gpg: DBG: chan_6 <- OK<br>sec rsa4096 2016-03-18 [SC]<br> 3EA174A350A97D4356A35BC6455FC35E80167A71<br>uid [ultimate] Sempris <publickey@Sempris.com><br>ssb rsa4096 2016-03-18 [E]<br><br>gpg: secmem usage: 0/65536 bytes in 0 blocks<br>Thu Oct 3 11:14:09 CDT 2024</div><div><br></div><div><br></div><div>Initial attempt to encrypt resulted in error:</div><div>gpg: starting migration from earlier GnuPG versions</div><div><br></div><div>All subsequent attempts failed with this:<br></div><div>DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 5d5ddc60954d5b06fa7b592ec45b70d9</div><div><br></div><div>HOW to eliminate these?</div><div>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 850d581e35383b8c11b50e471bb1b9be<br>gpg: key 0000000000000000 occurs more than once in the trustdb</div><div><br></div><div><br></div><div>[ROOT@russell ~/tmP ] # date; /bin/gpg --list-secret-keys ;date<br>Thu Oct 3 11:19:03 CDT 2024<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 5d5ddc60954d5b06fa7b592ec45b70d9<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 850d581e35383b8c11b50e471bb1b9be<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>gpg: DBG: Oops: keyid_from_fingerprint: no pubkey; fpr: 95b748bd217e51c036d8d0ce4387c502<br>gpg: key 0000000000000000 occurs more than once in the trustdb<br>/root/.gnupg/pubring.gpg<br>------------------------<br>sec dsa1024 2002-04-01 [SCA]<br> 8C71B38C3A071ABCD831D4655257EBE831A070A8<br>uid [ultimate] <a href="mailto:publickey@provell.com" target="_blank">publickey@provell.com</a><br>ssb elg1024 2002-04-01 [E]<br><br>sec rsa4096 2016-03-18 [SC]<br> 3EA174A350A97D4356A35BC6455FC35E80167A71<br>uid [ultimate] Sempris <publickey@Sempris.com><br>ssb rsa4096 2016-03-18 [E]<br><br>Thu Oct 3 11:19:03 CDT 2024<br></div><div><br></div><div><br></div><div>Please, advise. Thank you.</div><div><br></div><div>~ Mike<br></div></div>
</blockquote></div><br clear="all"><div><br></div><span class="gmail_signature_prefix">-- </span><br><div dir="ltr" class="gmail_signature"><div dir="ltr"><br>If ever I can be of service to you; contact me at once.<br>I wish for you a truly extraordinary day ...<br><br>-- <br>Best Regards,<br><br>Mike Schleif<br>612-235-6060<div><a href="https://mikeschleif.net" target="_blank">https://mikeschleif.net</a><br><a href="http://mdsresource.net" target="_blank">http://mdsresource.net</a><br><a href="http://www.linkedin.com/in/schleif" target="_blank">http://www.linkedin.com/in/schleif</a><br><a href="http://facebook.com/MDSResource" target="_blank">http://facebook.com/MDSResource</a><br><a href="http://twitter.com/mikeschleif" target="_blank">http://twitter.com/mikeschleif</a></div></div></div>