[Pkg-gnupg-maint] Bug#497825: gnupg: ignores expiry of archive keys
Peter Palfrader
weasel at debian.org
Wed Aug 18 17:43:52 UTC 2010
On Wed, 18 Aug 2010, Thijs Kinkhorst wrote:
> > no GOODSIG -> signature is not valid.
> > exit code 0 -> signature is valid.
> Thanks for clarifying again what exactly you're observing. I can indeed
> reproduce that situation. However, aren't you comparing apples with oranges?
No, I don't think I am. That's their interfaces. With gnupg you check its
status-fd output and the exit code hardly ever means anything. On the other
hand gpgv is supposed to be a simple to use too, and its exit code is the thing
you rely on.
> In your example both gpg and gpgv report exit code 0. Also 'gpg --status-fd=2'
> and 'gpgv --status-fd=2' both do not output GOODSIG in case of an expired key.
That gpg also exits with code 0 might be a bug, it might even be the
same bug in the code but as far as the interface goes it doesn't really
matter with gpg but does with gpgv.
Cheers,
weasel
--
| .''`. ** Debian GNU/Linux **
Peter Palfrader | : :' : The universal
http://www.palfrader.org/ | `. `' Operating System
| `- http://www.debian.org/
More information about the Pkg-gnupg-maint
mailing list