[Pkg-gnupg-maint] Bug#497825: gnupg: ignores expiry of archive keys

Peter Palfrader weasel at debian.org
Wed Aug 18 17:43:52 UTC 2010


On Wed, 18 Aug 2010, Thijs Kinkhorst wrote:

> > no GOODSIG -> signature is not valid.

> > exit code 0 -> signature is valid.

> Thanks for clarifying again what exactly you're observing. I can indeed 
> reproduce that situation. However, aren't you comparing apples with oranges?

No, I don't think I am.  That's their interfaces.  With gnupg you check its
status-fd output and the exit code hardly ever means anything.  On the other
hand gpgv is supposed to be a simple to use too, and its exit code is the thing
you rely on.


> In your example both gpg and gpgv report exit code 0. Also 'gpg --status-fd=2' 
> and 'gpgv --status-fd=2' both do not output GOODSIG in case of an expired key.

That gpg also exits with code 0 might be a bug, it might even be the
same bug in the code but as far as the interface goes it doesn't really
matter with gpg but does with gpgv.

Cheers,
weasel
-- 
                           |  .''`.  ** Debian GNU/Linux **
      Peter Palfrader      | : :' :      The  universal
 http://www.palfrader.org/ | `. `'      Operating System
                           |   `-    http://www.debian.org/





More information about the Pkg-gnupg-maint mailing list