[pkg-gnupg-maint] gnupg2-revert-rfc4880bis.patch

Andreas Metzler ametzler at bebt.de
Fri Mar 29 14:55:27 GMT 2024


On 2024-02-27 Andreas Metzler <ametzler at bebt.de> wrote:
> On 2024-02-27 Daniel Kahn Gillmor <dkg at fifthhorseman.net> wrote:
>> On Sun 2024-02-25 13:51:29 +0100, Andreas Metzler wrote:
[...]

> yes, it is a wishlist with conflicting goals.

> [...]
>> > Does 2.4.4 does not generate v5 wireformat or do rnp and sqop support
>> > it?

>> note that "v5 wireformat" refers to keys and signatures, but not to
>> encrypted data.
> [...]

> Ah, <lightbulb>

Hello,

so afaiui there are nter alia these things to decide:

1 Should we patch gpg 2.4 to avoid setting a preference for receiving
AEAD/OCB on generated keys. ("b" in Daniel's
87edd6u3qa.fsf at fifthhorseman.net)
2 Should we patch gnupg >= 2.2.40 and 2.4 to ignore the setting for
AEAD/OCB preference when encrypting messages.  ("c")

I would tend to say yes to 1 and no to 2.

I still do not what usecases break when with respect to "v5 wireformat",
i.e. when gpg 2.4 generates it. e.g. "gpg-2.4 --detach-sign -a ..."
(with a gpg 2.4 generated rsa key) generates a detached signature that
can be verified with "sqop verify ".

cu Andreas
-- 
`What a good friend you are to him, Dr. Maturin. His other friends are
so grateful to you.'
`I sew his ears on from time to time, sure'



More information about the pkg-gnupg-maint mailing list