GnuPG · @GnuPG
138 followers · 12 posts · Server mstdn.social

Looking into 2.4.3, which is available now: It is a typical small point release which fixes some minor defects and improves the performance on Windows, especially for for large files.

Noteworthy also: the default expiration time period for new public keys has been increased to 3 years and that there is a new PKCS#12 parser (yes GnuPG's gpgsm can do CMS for S/MiME ;) ).

Announcement: lists.gnupg.org/pipermail/gnup
Release Issue: dev.gnupg.org/T6509

#openpgp #FreeSoftware #endtoendcrypto #gnupg

Last updated 1 year ago

GnuPG · @GnuPG
86 followers · 10 posts · Server mstdn.social

@fsf Thanks for promoting a decentral comunication solution - email and OpenPGP with GnuPG! As for the guide,: keyservers and the web of trust have lost quite a bit of relevance in recent years. What would be really cool is to select an email provider that offers the pubkeys via the web key directory. wiki.gnupg.org/WKD and bring your public key up there.

#endtoendcrypto #FreeSoftware #gnupg

Last updated 1 year ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

Today it is to celebrate 25 years of 🎉 a implementation of the ' and standards for . For this GnuPG 2.4.0 is announced and 4.1.0, see lists.gnupg.org/pipermail/gnup and lists.wald.intevation.org/pipe

#gpg4win #endtoendcrypto #cms #openpgp #freesoftware #gnupg

Last updated 2 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

As user, get v2.2.36 (LTS), v2.3.7 or a fix from your GNU/Linux distribution! There is a nasty defect when transferring the verification status of a signature to the using application. With preconditions a signature can be forged.
lists.gnupg.org/pipermail/gnup
lists.gnupg.org/pipermail/gnup
There is also a new v4.0.3 release.

For a third party desrcription see ubuntu.com/security/CVE-2022-3

#freesoftware #endtoendcrypto #security #gpg4win #gnupg

Last updated 2 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

is just jumping two little numbers from 4.0.0 to 4.0.2, but there is a lot in store for users. The (expert) GUI Kleopatra got many detailed improvements and the crypto backend. See gpg4win.org/change-history.htm
dev.gnupg.org/T5743 and dev.gnupg.org/T5937 for all changes.

#CryptographicMessageSyntax #freesoftware #endtoendcrypto #openpgp #gpg4win

Last updated 2 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

LTS 2.2.34 is available. It improves ed25519 handling, which is now the default
algorithms for new keypairs in the new 2.3. generation. Also fixes an important defect
for internationalised account names on Windows. (And some other fixes.)
lists.gnupg.org/pipermail/gnup

#openpgp #endtoendcrypto #freesoftware #gnupg

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

4.0.0 is a major upgrade of the official build for Microsoft Windows. Coming with the modern GnuPG 2.3 line for the first time. GnuPG provides a future-ready foundation for the secure exchange of data and mails over the next years, by implementing the upcoming draft of the protocol and making the switch to better default algorithms. gpg4win.org/version4.html

#freesoftware #openstandard #endtoendcrypto #openpgp #gnupg #gpg4win

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

2.2.33 LTS brings a
few new options to ease user support and large scale installations (in addition of fixing a few minor problems as usual ;) ).
lists.gnupg.org/pipermail/gnup (GnuPG is a engine for wit email and files, it support both open standards and )

#CryptographicMessageSyntax #openpgp #endtoendcrypto #freesoftware #gnupg

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

2.2.32 (LTS) fixes an important piece of validation when using keyservers or WKD with websites that use Let's encrypt certificates. Either go to GnuPG 2.2.32 or remove an outdated intermediate certificate from Let's encrypt from your system cert store. See dev.gnupg.org/T5639 and lists.gnupg.org/pipermail/gnup

#endtoendcrypto #gnupg

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

Looking for pub-keyservers? spider.pgpkeys.eu tries to list new active ones, now including those with the new hockeypuck software. Can be used with . (spider.pgpkeys.eu/graphs even has a graph). Done on a best-effort basis by andrewg.com, see lists.gnupg.org/pipermail/gnup

#endtoendcrypto #gnupg #openpgp

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de
Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

Over the summer 2.3.2 (the new release series) pushed many smaller features further in August. Discovery of pubkeys is improved. So are the hardware tokens. Entered passwords can now be checked against patterns. lists.gnupg.org/pipermail/gnup

#openpgp #FileSecurity #emailsecurity #freesoftware #endtoendcrypto #gnupg

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

2.2.29 (LTS) is available. It has a few regessions from 2.2.28 fixed and changes the the default keyserver to keyserver.ubuntu.com (temporarily).
lists.gnupg.org/pipermail/gnup As you may know the old SKS keyserver network was attacked and withers out. The future is for wiki.gnupg.org/WKD and upcoming new keyserver software like hockeypuck. E.g. there are some candidate public keyservers you could try
lists.gnupg.org/pipermail/gnup

#FileSecurity #emailsecurity #freesoftware #endtoendcrypto #gnupg

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

3.1.16 can be downloaded. A mixed bag of little, but important fixes and improvements for personal and organisational use, like for encrypted files. Comes with 2.2.28 LTS. gpg4win.de/change-history.html lists.wald.intevation.org/pipe File and email OpenPGP/MIME and S/MIME for MS Windows

#freesoftware #endtoendcrypto #gnupg #gpg4win

Last updated 3 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

3.1.15 is available. Features system wide config with . Allows Active Directory as internal keyserver. Improvements to Outlook-Addin and to smartcard support. gpg4win.org/get-gpg4win.html lists.wald.intevation.org/pipe

#endtoendcrypto #freesoftware #gnupg #gpg4win

Last updated 4 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

v2.2.27 fixes a defect relevant for S/MIME on windows so expect a release within a few days (It also has progress towards reproducable builds on windows.) dev.gnupg.org/T5234 (GnuPG is a implementation for file and email based encryption and signatures).

#freesoftware #endtoendcrypto #gpg4win #gnupg

Last updated 4 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

3.1.14 released. Improves on non-ASCII filenames and paths (which fixes a regression for account names). Betterments for smartcards and display of plain text mails in GpgOL. lists.wald.intevation.org/pipe gpg4win.org

#freesoftware #endtoendcrypto #gnupg #gpg4win

Last updated 4 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

2.2.24 does an important step to internationalise on Windows, because it fixes a regression and allows unicode filenames and paths (in many places). I expect to follow with a new release soon. (Of course 2.2.24 comes with a number of maintenance fixes making things more consistent and secure in the long run.) Details lists.gnupg.org/pipermail/gnup

#gnupg #gpg4win #freesoftware #security #endtoendcrypto

Last updated 4 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

3.1.10 is available (since 2019-07-14) A strongly recommended update, as it uses the new GnuPG 2.2.17 that ignores third party signatures from keyservers by default and thus protects against sabotaged pubkeys. There is also an important security-fix for users of the Outlook "Add-in" (GpgOL). gpg4win.de/3.1.10-announcement

#gpg4win #endtoendcrypto #security #freesoftware #gnupg

Last updated 5 years ago

Bernhard E. Reiter · @ber
138 followers · 406 posts · Server social.tchncs.de

v2.2.17 stays operational if pubkeys with many third party signatures are to be imported. And thus you get a choice to use distributed keyservers safely again - though the default is now to not use them.
lists.gnupg.org/pipermail/gnup This protects against a potential denial of service attack if a pubkey is flooded with many third party signatures. Another reason to deploy more wiki.gnupg.org/WKD

#gnupg #endtoendcrypto #security #openpgp

Last updated 5 years ago