[pkg-cryptsetup-devel] Bug#903163: Adding OpenPGP smartcard support to LUKS

Guilhem Moulin guilhem at debian.org
Wed Nov 21 16:46:14 GMT 2018


Hi,

On Wed, 21 Nov 2018 at 11:12:08 -0500, Chris Lamb  wrote:
> Guilhem Moulin wrote:
>>> GnuPG upstream was asked about a documented API to retrieve the stubs
>>> but hasn't answered yet AFAIK.
> 
> Did they get back to you yet out of interest, Guilhem?

Peter last poked Werner on Nov 09 but there wasn't any reply from him.
(At least not on the gnupg-users list.)
 
>>> I'm not sure if the implementation currently found in our branch would
>>> choke if the wrong smartcard is inserted: I wasn't able to test this
>>> as I have only one token :-)
> 
> Can I fix that for you? (Serious offer; I can get this shipped to
> you ASAP...)

Hmm on second thought the offer is tempting; if you're also attending
35c3 then shipping won't even be necessary ;-)
 
>> I have an idea on how to do this all more elegantly, but I haven't found
>> the time to work it out yet. Please don't block on this when the current
>> solution works for single reader, single smartcard cases.
> 
> Indeed, it would be great to see this land in the main Debian
> packages; what are the remaining blockers to this? :)

There are none AFAIK, since the current shortcomings have been
acknowledged as non-blocking.  And yes it makes sense to upload to
unstable quickly, so we have a chance to fix possible bugs before the
freeze.  (Wanted to close #901795 too, but it can be done in a separate
upload.)  I'll merge and upload before the week-end :-)

Cheers,
-- 
Guilhem.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-cryptsetup-devel/attachments/20181121/07dd7e70/attachment.sig>


More information about the pkg-cryptsetup-devel mailing list