Bug#872271: hopenpgp-tools: please implement "hop verify", from the Stateless OpenPGP command-line interface

Daniel Kahn Gillmor dkg at fifthhorseman.net
Fri Nov 8 08:22:44 GMT 2019


Control: retitle 872271 hopenpgp-tools: please implement "hop verify", from the Stateless OpenPGP command-line interface

On Tue 2017-08-15 10:49:43 -0400, Daniel Kahn Gillmor wrote:

> I'd like hopenpgp-tools to produce a simple signature validation
> binary, which validates a signature against a set of curated keyrings.
>
> let's call it hov (for "hopenpgp validator").
>
> Synopsis
> --------
>
> The proposed syntax is:

I'd like to update this suggestion for hopenpgp-tools.  After a decent
amount of discussion with other OpenPGP users and developers, what i
want is potentially more than a simple signature validator (though a
simple signature validator is part of it).

Rather, i want something that approaches a "stateless OpenPGP command
line interface" (or "sop") as documented at
https://tools.ietf.org/html/draft-dkg-openpgp-stateless-cli

The "sop" interface is intended to be implementable piecemeal -- you can
implement some subcommands and leave others out as the implementation
progresses.

The subcommand "sop verify" is basically a slightly refined version of
the interface i originally requested on this bug report.

I'm imagining that the implementation from hopenpgp-tools would be
"/usr/bin/hop" -- but of course that's your call.

So this wishlist bug report is now asking for the "hop verify"
subcommand.  (obviously, if other subcommands are implemented, that
would be nice too)

If, in the course of looking at this, you have ideas for improvements or
simplifications for the `sop` generic interface, I welcome those
suggestions, either on openpgp at ietf.org, or at
https://gitlab.com/dkg/openpgp-stateless-cli

Thanks for your efforts on hOpenPGP!

       --dkg

PS the easiest subcommand to implement would be "hop version" if you
   want to get started, and you already have "hop dearmor" and something
   close to "hop armor" as subcommands of /usr/bin/hot.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-haskell-maintainers/attachments/20191108/29111db7/attachment.sig>


More information about the Pkg-haskell-maintainers mailing list