head 1.12; access; symbols pkgsrc-2017Q2:1.10.0.2 pkgsrc-2017Q2-base:1.10 pkgsrc-2017Q1:1.8.0.2 pkgsrc-2017Q1-base:1.8 pkgsrc-2016Q4:1.7.0.2 pkgsrc-2016Q4-base:1.7 pkgsrc-2016Q3:1.6.0.2 pkgsrc-2016Q3-base:1.6 pkgsrc-2016Q2:1.5.0.2 pkgsrc-2016Q2-base:1.5 pkgsrc-2016Q1:1.4.0.2 pkgsrc-2016Q1-base:1.4 pkgsrc-2015Q4:1.3.0.2 pkgsrc-2015Q4-base:1.3 pkgsrc-2015Q3:1.1.0.2 pkgsrc-2015Q3-base:1.1; locks; strict; comment @# @; 1.12 date 2017.08.29.12.12.54; author wiz; state dead; branches; next 1.11; commitid JpmTPT6oXWzOw65A; 1.11 date 2017.07.28.19.33.24; author wiz; state Exp; branches; next 1.10; commitid 9vcTJhq9EruQZ11A; 1.10 date 2017.05.16.12.08.01; author wiz; state Exp; branches; next 1.9; commitid N2TouQbys0lzSBRz; 1.9 date 2017.04.16.07.21.48; author wiz; state Exp; branches; next 1.8; commitid kDtYQqo9ngP2gJNz; 1.8 date 2017.02.04.07.12.35; author maya; state Exp; branches; next 1.7; commitid H7weWPNTybvfuBEz; 1.7 date 2016.12.18.21.58.23; author tnn; state Exp; branches; next 1.6; commitid V0Iyezw5x9LmVvyz; 1.6 date 2016.07.16.08.32.05; author wiz; state Exp; branches; next 1.5; commitid j6Ttixxpq5jlswez; 1.5 date 2016.05.05.12.09.31; author wiz; state Exp; branches; next 1.4; commitid q1PZF0wVafMoYh5z; 1.4 date 2016.01.27.06.31.20; author wiz; state Exp; branches; next 1.3; commitid PmAk5HhwKPYvhxSy; 1.3 date 2015.11.04.15.05.52; author tnn; state Exp; branches; next 1.2; commitid biEjchu8gR1APMHy; 1.2 date 2015.10.08.13.35.39; author fhajny; state Exp; branches; next 1.1; commitid LdLBVE93OzZbcjEy; 1.1 date 2015.07.04.05.26.21; author ryoon; state Exp; branches; next ; commitid mnj1gAsu2SAXzVry; desc @@ 1.12 log @Remove gnupg21, successor gnupg2. @ text @@@comment $NetBSD: PLIST,v 1.11 2017/07/28 19:33:24 wiz Exp $ bin/dirmngr bin/dirmngr-client bin/g13 bin/gpg-agent bin/gpg-connect-agent bin/gpg2 bin/gpgconf bin/gpgparsemail bin/gpgscm bin/gpgsm bin/gpgtar bin/gpgv2 bin/kbxutil bin/watchgnupg info/gnupg.info ${PLIST.ldap}libexec/dirmngr_ldap libexec/gpg-check-pattern libexec/gpg-preset-passphrase libexec/gpg-protect-tool libexec/gpg-wks-client libexec/scdaemon man/man1/dirmngr-client.1 man/man1/gpg-agent.1 man/man1/gpg-connect-agent.1 man/man1/gpg-preset-passphrase.1 man/man1/gpg-wks-client.1 man/man1/gpg-wks-server.1 man/man1/gpg2.1 man/man1/gpgconf.1 man/man1/gpgparsemail.1 man/man1/gpgsm.1 man/man1/gpgv2.1 man/man1/scdaemon.1 man/man1/symcryptrun.1 man/man1/watchgnupg.1 man/man7/gnupg.7 man/man8/addgnupghome.8 man/man8/applygnupgdefaults.8 man/man8/dirmngr.8 sbin/addgnupghome sbin/applygnupgdefaults sbin/g13-syshelp share/doc/gnupg/DCO share/doc/gnupg/DETAILS share/doc/gnupg/FAQ share/doc/gnupg/HACKING share/doc/gnupg/KEYSERVER share/doc/gnupg/OpenPGP share/doc/gnupg/README share/doc/gnupg/TRANSLATE share/doc/gnupg/examples/README share/doc/gnupg/examples/debug.prf share/doc/gnupg/examples/gpgconf.conf share/doc/gnupg/examples/pwpattern.list share/doc/gnupg/examples/scd-event share/doc/gnupg/examples/systemd-user/README share/doc/gnupg/examples/systemd-user/dirmngr.service share/doc/gnupg/examples/systemd-user/dirmngr.socket share/doc/gnupg/examples/systemd-user/gpg-agent-browser.socket share/doc/gnupg/examples/systemd-user/gpg-agent-extra.socket share/doc/gnupg/examples/systemd-user/gpg-agent-ssh.socket share/doc/gnupg/examples/systemd-user/gpg-agent.service share/doc/gnupg/examples/systemd-user/gpg-agent.socket share/doc/gnupg/examples/trustlist.txt share/doc/gnupg/examples/vsnfd.prf share/gnupg/distsigkey.gpg share/gnupg/help.be.txt share/gnupg/help.ca.txt share/gnupg/help.cs.txt share/gnupg/help.da.txt share/gnupg/help.de.txt share/gnupg/help.el.txt share/gnupg/help.eo.txt share/gnupg/help.es.txt share/gnupg/help.et.txt share/gnupg/help.fi.txt share/gnupg/help.fr.txt share/gnupg/help.gl.txt share/gnupg/help.hu.txt share/gnupg/help.id.txt share/gnupg/help.it.txt share/gnupg/help.ja.txt share/gnupg/help.nb.txt share/gnupg/help.pl.txt share/gnupg/help.pt.txt share/gnupg/help.pt_BR.txt share/gnupg/help.ro.txt share/gnupg/help.ru.txt share/gnupg/help.sk.txt share/gnupg/help.sv.txt share/gnupg/help.tr.txt share/gnupg/help.txt share/gnupg/help.zh_CN.txt share/gnupg/help.zh_TW.txt share/gnupg/sks-keyservers.netCA.pem share/locale/ca/LC_MESSAGES/gnupg2.mo share/locale/cs/LC_MESSAGES/gnupg2.mo share/locale/da/LC_MESSAGES/gnupg2.mo share/locale/de/LC_MESSAGES/gnupg2.mo share/locale/el/LC_MESSAGES/gnupg2.mo share/locale/en@@boldquot/LC_MESSAGES/gnupg2.mo share/locale/en@@quot/LC_MESSAGES/gnupg2.mo share/locale/eo/LC_MESSAGES/gnupg2.mo share/locale/es/LC_MESSAGES/gnupg2.mo share/locale/et/LC_MESSAGES/gnupg2.mo share/locale/fi/LC_MESSAGES/gnupg2.mo share/locale/fr/LC_MESSAGES/gnupg2.mo share/locale/gl/LC_MESSAGES/gnupg2.mo share/locale/hu/LC_MESSAGES/gnupg2.mo share/locale/id/LC_MESSAGES/gnupg2.mo share/locale/it/LC_MESSAGES/gnupg2.mo share/locale/ja/LC_MESSAGES/gnupg2.mo share/locale/nb/LC_MESSAGES/gnupg2.mo share/locale/pl/LC_MESSAGES/gnupg2.mo share/locale/pt/LC_MESSAGES/gnupg2.mo share/locale/ro/LC_MESSAGES/gnupg2.mo share/locale/ru/LC_MESSAGES/gnupg2.mo share/locale/sk/LC_MESSAGES/gnupg2.mo share/locale/sv/LC_MESSAGES/gnupg2.mo share/locale/tr/LC_MESSAGES/gnupg2.mo share/locale/uk/LC_MESSAGES/gnupg2.mo share/locale/zh_CN/LC_MESSAGES/gnupg2.mo share/locale/zh_TW/LC_MESSAGES/gnupg2.mo @ 1.11 log @Updated gnupg21 to 2.1.22. Noteworthy changes in version 2.1.22 (2017-07-28) ------------------------------------------------- * gpg: Extend command --quick-set-expire to allow for setting the expiration time of subkeys. * gpg: By default try to repair keys during import. New sub-option no-repair-keys for --import-options. * gpg,gpgsm: Improved checking and reporting of DE-VS compliance. * gpg: New options --key-origin and --with-key-origin. Store the time of the last key update from keyservers, WKD, or DANE. * agent: New option --ssh-fingerprint-digest. * dimngr: Lower timeouts on keyserver connection attempts and made it configurable. * dirmngr: Tor will now automatically be detected and used. The option --no-use-tor disables Tor detection. * dirmngr: Now detects a changed /etc/resolv.conf. * agent,dirmngr: Initiate shutdown on removal of the GnuPG home directory. * gpg: Avoid caching passphrase for failed symmetric encryption. * agent: Support for unprotected ssh keys. * dirmngr: Fixed name resolving on systems using only v6 nameservers. * dirmngr: Allow the use of TLS over http proxies. * w32: Change directory of the daemons after startup. * wks: New man pages for client and server. * Many other bug fixes. @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.10 2017/05/16 12:08:01 wiz Exp $ @ 1.10 log @Updated gnupg21 to 2.1.21. Noteworthy changes in version 2.1.21 (2017-05-15) ------------------------------------------------- * gpg,gpgsm: Fix corruption of old style keyring.gpg files. This bug was introduced with version 2.1.20. Note that the default pubring.kbx format was not affected. * gpg,dirmngr: Removed the skeleton config file support. The system's standard methods for providing default configuration files should be used instead. * w32: The Windows installer now allows installion of GnuPG without Administrator permissions. * gpg: Fixed import filter property match bug. * scd: Removed Linux support for Cardman 4040 PCMCIA reader. * scd: Fixed some corner case bugs in resume/suspend handling. * Many minor bug fixes and code cleanup. @ text @d1 1 a1 1 @@comment $NetBSD$ d27 2 @ 1.9 log @Updated gnupg21 to 2.1.20. Based on PR 52165 by Jonathan Schleifer. Noteworthy changes in version 2.1.20 (2017-04-03) ------------------------------------------------- * gpg: New properties 'expired', 'revoked', and 'disbaled' for the import and export filters. * gpg: New command --quick-set-primary-uid. * gpg: New compliance field for the --with-colon key listing. * gpg: Changed the key parser to generalize the processing of local meta data packets. * gpg: Fixed assertion failure in the TOFU trust model. * gpg: Fixed exporting of zero length user ID packets. * scd: Improved support for multiple readers. * scd: Fixed timeout handling for key generation. * agent: New option --enable-extended-key-format. * dirmngr: Do not add a keyserver to a new dirmngr.conf. Dirmngr uses a default keyserver. * dimngr: Do not treat TLS warning alerts as severe error when building with GNUTLS. * dirmngr: Actually take /etc/hosts in account. * wks: Fixed client problems on Windows. Published keys are now set to world-readable. * tests: Fixed creation of temporary directories. * A socket directory for a non standard GNUGHOME is now created on the fly under /run/user. Thus "gpgconf --create-socketdir" is now optional. The use of "gpgconf --remove-socketdir" to clean up obsolete socket directories is however recommended to avoid cluttering /run/user with useless directories. * Fixed build problems on some platforms. Noteworthy changes in version 2.1.19 (2017-03-01) ------------------------------------------------- * gpg: Print a warning if Tor mode is requested but the Tor daemon is not running. * gpg: New status code DECRYPTION_KEY to print the actual private key used for decryption. * gpgv: New options --log-file and --debug. * gpg-agent: Revamp the prompts to ask for card PINs. * scd: Support for multiple card readers. * scd: Removed option --debug-disable-ticker. Ticker is used only when it is required to watch removal of device/card. * scd: Improved detection of card inserting and removal. * dirmngr: New option --disable-ipv4. * dirmngr: New option --no-use-tor to explicitly disable the use of Tor. * dirmngr: The option --allow-version-check is now required even if the option --use-tor is also used. * dirmngr: Handle a missing nsswitch.conf gracefully. * dirmngr: Avoid PTR lookups for keyserver pools. The are only done for the debug command "keyserver --hosttable". * dirmngr: Rework the internal certificate cache to support classes of certificates. Load system provided certificates on startup. Add options --tls, --no-crl, and --systrust to the "VALIDATE" command. * dirmngr: Add support for the ntbtls library. * wks: Create mails with a "WKS-Phase" header. Fix detection of Draft-2 mode. * The Windows installer is now build with limited TLS support. * Many other bug fixes and new regression tests. See-also: gnupg-announce/2017q1/000402.html @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.8 2017/02/04 07:12:35 maya Exp $ a64 1 share/gnupg/dirmngr-conf.skel a65 1 share/gnupg/gpg-conf.skel @ 1.8 log @gnupg21: update to 2.1.18. PR pkg/51942 @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.7 2016/12/18 21:58:23 tnn Exp $ d51 1 d64 1 @ 1.7 log @Update to gnupg21-2.1.16. * gpg: New algorithm for selecting the best ranked public key when using a mail address with -r, -R, or --locate-key. * gpg: New option --with-tofu-info to print a new "tfs" record in colon formatted key listings. * gpg: New option --compliance as an alternative way to specify options like --rfc2440, --rfc4880, et al. * gpg: Many changes to the TOFU implementation. * gpg: Improve usability of --quick-gen-key. * gpg: In --verbose mode print a diagnostic when a pinentry is launched. * gpg: Remove code which warns for old versions of gnome-keyring. * gpg: New option --override-session-key-fd. * gpg: Option --output does now work with --verify. * gpgv: New option --output to allow saving the verified data. * gpgv: New option --enable-special-filenames. * agent, dirmngr: New --supervised mode for use by systemd and alike. * agent: By default listen on all available sockets using standard names. * agent: Invoke scdaemon with --homedir. * dirmngr: On Linux now detects the removal of its own socket and terminates. * scd: Support ECC key generation. * scd: Support more card readers. * dirmngr: New option --allow-version-check to download a software version database in the background. * dirmngr: Use system provided CAs if no --hkp-cacert is given. * dirmngr: Use a default keyserver if none is explicitly set * gpgconf: New command --query-swdb to check software versions against an copy of an online database. * gpgconf: Print the socket directory with --list-dirs. * tools: The WKS tools now support draft version -02. * tools: Always build gpg-wks-client and install under libexec. * tools: New option --supported for gpg-wks-client. * The log-file option now accepts a value "socket://" to log to the socket named "S.log" in the standard socket directory. * Provide fake pinentries for use by tests cases of downstream developers. * Fixed many bugs and regressions. * Many changes and improvements for the test suite. @ text @d1 1 a1 1 @@comment $NetBSD$ d57 1 @ 1.6 log @Updated gnupg21 to 2.1.14. Noteworthy changes in version 2.1.14 (2016-07-14) ------------------------------------------------- * gpg: Removed options --print-dane-records and --print-pka-records. The new export options "export-pka" and "export-dane" can instead be used with the export command. * gpg: New options --import-filter and --export-filter. * gpg: New import options "import-show" and "import-export". * gpg: New option --no-keyring. * gpg: New command --quick-revuid. * gpg: New options -f/--recipient-file and -F/--hidden-recipient-file to directly specify encryption keys. * gpg: New option --mimemode to indicate that the content is a MIME part. Does only enable --textmode right now. * gpg: New option --rfc4880bis to allow experiments with proposed changes to the current OpenPGP specs. * gpg: Fix regression in the "fetch" sub-command of --card-edit. * gpg: Fix regression since 2.1 in option --try-all-secrets. * gpgv: Change default options for extra security. * gpgsm: No more root certificates are installed by default. * agent: "updatestartuptty" does now affect more environment variables. * scd: The option --homedir does now work with scdaemon. * scd: Support some more GEMPlus card readers. * gpgtar: Fix handling of '-' as file name. * gpgtar: New commands --create and --extract. * gpgconf: Tweak for --list-dirs to better support shell scripts. * tools: Add programs gpg-wks-client and gpg-wks-server to implement a Web Key Service. The configure option --enable-wks-tools is required to build them; they should be considered Beta software. * tests: Complete rework of the openpgp part of the test suite. The test scripts have been changed from Bourne shell scripts to Scheme programs. A customized scheme interpreter (gpgscm) is included. This change was triggered by the need to run the test suite on non-Unix platforms. * The rendering of the man pages has been improved. @ text @d21 1 d54 7 @ 1.5 log @Updated gnupg21 to 2.1.12. Noteworthy changes in version 2.1.12 (2016-05-04) ------------------------------------------------- * gpg: New --edit-key sub-command "change-usage" for testing purposes. * gpg: Out of order key-signatures are now systematically detected and fixed by --edit-key. * gpg: Improved detection of non-armored messages. * gpg: Removed the extra prompt needed to create Curve25519 keys. * gpg: Improved user ID selection for --quick-sign-key. * gpg: Use the root CAs provided by the system with --fetch-key. * gpg: Add support for the experimental Web Key Directory key location service. * gpg: Improve formatting of Tofu messages and emit new Tofu specific status lines. * gpgsm: Add option --pinentry-mode to support a loopback pinentry. * gpgsm: A new pubring.kbx is now created with the header blob so that gpg can detect that the keybox format needs to be used. * agent: Add read support for the new private key protection format openpgp-s2k-ocb-aes. * agent: Add read support for the new extended private key format. * agent: Default to --allow-loopback-pinentry and add option --no-allow-loopback-pinentry. * scd: Changed to use the new libusb 1.0 API for the internal CCID driver. * dirmngr: The dirmngr-client does now auto-detect the PEM format. * g13: Add experimental support for dm-crypt. * w32: Tofu support is now available with the Speedo build method. * w32: Removed the need for libiconv.dll. * The man pages for gpg and gpgv are now installed under the correct name (gpg2 or gpg - depending on a configure option). * Lots of internal cleanups and bug fixes. @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.4 2016/01/27 06:31:20 wiz Exp $ d10 1 a53 1 share/gnupg/com-certs.pem a84 1 share/gnupg/qualified.txt @ 1.4 log @Update gnupg21 to 2.1.11: Noteworthy changes in version 2.1.11 (2016-01-26) ------------------------------------------------- * gpg: New command --export-ssh-key to replace the gpgkey2ssh tool. * gpg: Allow to generate mail address only keys with --gen-key. * gpg: "--list-options show-usage" is now the default. * gpg: Make lookup of DNS CERT records holding an URL work. * gpg: Emit PROGRESS status lines during key generation. * gpg: Don't check for ambigious or non-matching key specification in the config file or given to --encrypt-to. This feature will return in 2.3.x. * gpg: Lock keybox files while updating them. * gpg: Solve rare error on Windows during keyring and Keybox updates. * gpg: Fix possible keyring corruption. (bug#2193) * gpg: Fix regression of "bkuptocard" sub-command in --edit-key and remove "checkbkupkey" sub-command introduced with 2.1. (bug#2169) * gpg: Fix internal error in gpgv when using default keyid-format. * gpg: Fix --auto-key-retrieve to work with dirmngr.conf configured keyservers. (bug#2147). * agent: New option --pinentry-timeout. * scd: Improve unplugging of USB readers under Windows. * scd: Fix regression for generating RSA keys on card. * dirmmgr: All configured keyservers are now searched. * dirmngr: Install CA certificate for hkps.pool.sks-keyservers.net. Use this certiticate even if --hkp-cacert is not used. * gpgtar: Add actual encryption code. gpgtar does now fully replace gpg-zip. * gpgtar: Fix filename encoding problem on Windows. * Print a warning if a GnuPG component is using an older version of gpg-agent, dirmngr, or scdaemon. @ text @d1 1 a1 1 @@comment $NetBSD$ d39 1 @ 1.3 log @Update to gnupg-2.1.9. gnupg-2.1.9: * gpg: Allow fetching keys via OpenPGP DANE (--auto-key-locate). New option --print-dane-records. * gpg: Fix for a problem with PGP-2 keys in a keyring. * gpg: Fail with an error instead of a warning if a modern cipher algorithm is used without a MDC. * agent: New option --pinentry-invisible-char. * agent: Always do a RSA signature verification after creation. * agent: Fix a regression in ssh-add-ing Ed25519 keys. * agent: Fix ssh fingerprint computation for nistp384 and EdDSA. * agent: Fix crash during passprase entry on some platforms. * scd: Change timeout to fix problems with some 2.1 cards. * dirmngr: Displayed name is now Key Acquirer. * dirmngr: Add option --keyserver. Deprecate that option for gpg. Install a dirmngr.conf file from a skeleton for new installations. gnupg-2.1.8: * gpg: Sending very large keys to the keyservers works again. * gpg: Validity strings in key listings are now again translatable. * gpg: Emit FAILURE status lines to help GPGME. * gpg: Does not anymore link to Libksba to reduce dependencies. * gpgsm: Export of secret keys via Assuan is now possible. * agent: Raise the maximum passphrase length from 100 to 255 bytes. * agent: Fix regression using EdDSA keys with ssh. * Does not anymore use a build timestamp by default. * The fallback encoding for broken locale settings changed from Latin-1 to UTF-8. * Many code cleanups and improved internal documentation. * Various minor bug fixes. gnupg-2.1.7: * gpg: Support encryption with Curve25519 if Libgcrypt 1.7 is used. * gpg: In the --edit-key menu: Removed the need for "toggle", changed how secret keys are indicated, new commands "fpr *" and "grip". * gpg: More fixes related to legacy keys in a keyring. * gpgv: Does now also work with a "trustedkeys.kbx" file. * scd: Support some feature from the OpenPGP card 3.0 specs. * scd: Improved ECC support * agent: New option --force for the DELETE_KEY command. * w32: Look for the Pinentry at more places. * Dropped deprecated gpgsm-gencert.sh * Various other bug fixes. @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.2 2015/10/08 13:35:39 fhajny Exp $ a8 1 bin/gpgkey2ssh d85 1 @ 1.2 log @Add options.mk to properly select, detect and link in LDAP support. Bump PKGREVISION as this removes dirmngr_ldap from default PLIST. @ text @d1 1 a1 1 @@comment $NetBSD: PLIST,v 1.1 2015/07/04 05:26:21 ryoon Exp $ a11 1 bin/gpgsm-gencert.sh a28 1 man/man1/gpgsm-gencert.sh.1 d54 1 @ 1.1 log @Import gnupg2-2.1.6 as security/gnupg21. GnuPG-2 provides several utilities that are used by mail clients, such as Kmail and Balsa, including OpenPGP and S/MIME support. GnuPG-2 has a different architecture than GnuPG-1 (e.g. 1.4.5) in that it splits up functionality into several modules. However, both versions may be installed alongside without any conflict. In fact, the gpg version from GnuPG-1 is able to make use of the gpg-agent as included in GnuPG-2 and allows for seamless passphrase caching. The advantage of GnuPG-1 is its smaller size and the lack of dependency on other modules at run and build time. Packaged by adanbsd as pkgsrc/wip/gnupg21. @ text @d1 1 a1 1 @@comment $NetBSD$ d18 1 a18 1 libexec/dirmngr_ldap @