<feed xmlns='http://www.w3.org/2005/Atom'>
<title>pkgsrc/security/netpgp, branch pkgsrc_2010Q2</title>
<subtitle>[no description]</subtitle>
<id>https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2010Q2</id>
<link rel='self' href='https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2010Q2'/>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/'/>
<updated>2010-06-01T06:15:00Z</updated>
<entry>
<title>Update netpgp to version 3.99.4/20100601</title>
<updated>2010-06-01T06:15:00Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-06-01T06:15:00Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=ee3f6b01907af61f0634613be3d179bc7878636b'/>
<id>urn:sha1:ee3f6b01907af61f0634613be3d179bc7878636b</id>
<content type='text'>
+ avoid possible free() of new value passed to netpgp_setvar(),
  with thanks to Anon Ymous.
+ netpgpkeys(1):  print keys to stdout, not stderr - reported by Anon
  Ymous.
+ fix DSA signatures and verification
+ simplify and shorten the internals of packet processing by getting rid of
  the intermediate pseudo-abstraction layer, which detracted from understanding
  and had no benefit whatsoever. Rename some enums and some definitions.
+ add some checking to new key generation, and don't try to read in
  the keys after writing them - reported by Tyler Retzlaff
+ netpgpverify - avoid the separate codebase, and just use libnetpgp(3)
</content>
</entry>
<entry>
<title>Upgrade netpgp to version 3.99.2/20100507.</title>
<updated>2010-05-08T03:45:58Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-05-08T03:45:58Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=befeaaa9b82601f343a0619f7f2040250db2c7f2'/>
<id>urn:sha1:befeaaa9b82601f343a0619f7f2040250db2c7f2</id>
<content type='text'>
Changes to 3.99.2/20100507

+ add detached armoured signature creation and verification
+ fix manual pages
+ rationalisation of debug messages
</content>
</entry>
<entry>
<title>Update pkgsrc/security/netpgp to 2.99.1/20100313</title>
<updated>2010-03-14T01:21:03Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-03-14T01:21:03Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=7c54dc5f22fcd7508d5db458c850c904c50a049f'/>
<id>urn:sha1:7c54dc5f22fcd7508d5db458c850c904c50a049f</id>
<content type='text'>
Changes to 2.99.1/20100313

+ add functionality to parse basic signature subkeys
+ in doing so, add expiration of keys
+ at the same time, add revocation of keys
+ recognise the primary user id, and use it when displaying user ids
+ recognise self signed keys and subkeys
+ rework the indentation of output
+ add the --list-sigs [userid] option to netpgpkeys(1)
+ use memcmp(3) rather than strcmp(3) when checking binary user ids to
  be exported
+ add expiration display to subkey signature output
+ update libnetpgp library version major number to 3
</content>
</entry>
<entry>
<title>Update to netpgp-20100305</title>
<updated>2010-03-05T19:59:37Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-03-05T19:59:37Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=2d75b832ab11fbec79ef93bbdd8edbaf35475fb3'/>
<id>urn:sha1:2d75b832ab11fbec79ef93bbdd8edbaf35475fb3</id>
<content type='text'>
+ clean up some lint
+ the obligatory ''build on os x'' fixes - include &lt;inttypes.h&gt;
</content>
</entry>
<entry>
<title>Update netpgp to version 1.99.20/20100304 - portability improvements, and bug fixes:</title>
<updated>2010-03-05T16:20:05Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-03-05T16:20:05Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=ac05cada2e1d8a9f29c7728795940d84183a3914'/>
<id>urn:sha1:ac05cada2e1d8a9f29c7728795940d84183a3914</id>
<content type='text'>
        Changes to 1.99.20/20100304

        + move args to some functions around to be consistent
        + use uint*_t where appropriate
        + fix bug in verify memory
        + add documentation to manual pages to show how to do combined
          signing/encryption and decryption/verification
        + make verification of ascii-armoured memory work the same as binary
	+ eliminate use of strdup(3), strcasecmp(3), and strptime(3).
	  NetBSD/pkgsrc PR 42922 applies - need to define
	  _XOPEN_SOURCE and _BSD_SOURCE for newer linux platforms with
	  glibc 2.10.1.  solved a bit differently, by implementing
	  strdup(3) and strcasecmp(3) independently, and using regexps
	  to avoid calling strptime(3).
</content>
</entry>
<entry>
<title>Update the netpgp package to version 20100212/1.99.19</title>
<updated>2010-02-13T00:18:47Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2010-02-13T00:18:47Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=ae1da453b5abb2f613d9dade4bc2831d7a5c5664'/>
<id>urn:sha1:ae1da453b5abb2f613d9dade4bc2831d7a5c5664</id>
<content type='text'>
	Changes to 1.99.19/20100212

	+ plug some memory leaks, from cppcheck via Thomas Klausner (thanks!)
	+ make the singular of time units read correctly
	+ print decryption key info properly when prompting for passphrase

	Changes to 1.99.18/20100211

	small steps, but lots of them - this is the first one.

	+ print out the correct key information when signing files and memory.
	  what used to be printed out was the copy of the public key which is
	  stored as part of the private key. does not address the info shown
	  when decrypting, since that is done in a different way, by callback.
	  this whole part needs to be re-written, but will have to wait for two
	  good hands.

	Changes to 1.99.17/20100206

	+ get rid of last 2 static variables - use the __ops_printstate_t struct
	  passed down
	+ get rid of 3 occurrences in reader.c where an automatic buffer was
	  addressed (as part of a subsequent callback) by a struct field from
	  a calling scope, and only valid within the callback.  Found by
	  Flexelint and phk - many thanks.
	+ print filename/"memory" when time problems occur when validating signatures

	Changes to 1.99.16/20100205

	+ minor simplifications to netpgp(1) internally
	+ fix a bug in netpgp_verify_file where a non-existent file while listing
	  packets would cause a SIGSEGV
	+ add duration arg to netpgp(1), and check for validity when verifying
	  signatures
	+ add birthtime arg to netpgp(1), and check for validity when verifying
	  signatures
	+ add netpgp commands to print pubkey, if desired
	+ allow the passphrase for the signature to be taken from --pass-fd
	+ get rid of static indent value when printing packet contents
	+ print signature validity times when verifying a file's signature
</content>
</entry>
<entry>
<title>Recursive PKGREVISION bump for jpeg update to 8.</title>
<updated>2010-01-17T12:02:03Z</updated>
<author>
<name>wiz</name>
<email>wiz</email>
</author>
<published>2010-01-17T12:02:03Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=9bb9dadbc94dc30e7a42ca58f128db49c80fd684'/>
<id>urn:sha1:9bb9dadbc94dc30e7a42ca58f128db49c80fd684</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Update netpgp to version 20091210.</title>
<updated>2009-12-15T00:06:15Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2009-12-15T00:06:15Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=e61359675b540e00891acb2793b9a3987d40d5a3'/>
<id>urn:sha1:e61359675b540e00891acb2793b9a3987d40d5a3</id>
<content type='text'>
Apart from infrastructure changes, there are the following functional ones:

+ Update to version 1.99.14/20091210

+ provide a new netpgp_match_list_keys(3) function to perform a
regular-expression based search of all the keys in the keyring.  If no
pattern is specified to match, then all keys are returned.

+ provide a new netpgp_set_homedir(3) function, and use it to set the
home directory from the library, rather than individually in all the
programs which use the library

+ provide a new netpgp_incvar(3) function which will add a constant
increment (which may be negative) to the value of an internal
variable.  This is primarily used for the verbosity level within the
library, and is again a movement of the function into the library from
the individual programs which use the library

+ move to the specification of an ssh key file by internal variable,
rather than the directory holding an ssh key file

+ autoconf infrastructure changes

+ take a hammer to the _GNU_SOURCE definitions problems

+ don't rely on strnlen(3) being present everywhere

+ add rudimentary support for ssh keys

+ add a netpgp library function - netpgp_get_key(3) - to print a
specific key

+ add functionality to call this function in netpgpkeys(1)

+ add test for netpgp_get_key

+ add a verbose switch to the tst script

+ add netpgp functions to expose the memory signing and verification
functions - netpgp_sign_memory(3) and netpgp_verify_memory(3)

+ coalesced signing and verification ops file functions
</content>
</entry>
<entry>
<title>Update netpgp to version 20090611.</title>
<updated>2009-06-11T17:02:17Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2009-06-11T17:02:17Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=c31fc84e66d1fadb278b909e3858a3459b302e0f'/>
<id>urn:sha1:c31fc84e66d1fadb278b909e3858a3459b302e0f</id>
<content type='text'>
Changes since 20090531:

+ only prompt for a passphrase on the secret key if there is a passphrase
  on the secret key

CHANGES 1.99.10 -&gt; 1.99.11

+ address keys array from 0 with unsigned indices
+ print results to io-&gt;res stream - default to stderr, and set using
        netpgp_setvar(..., "results", filename)
+ __ops_keyid()'s third arg was always the size of the keyid array - no need
  to pass it
+ get rid of the excessive type-checking in packet-show-cast.h, which wasn't
  necessary, and fold all the show routines into packet-show.c
+ introduce a generic __ops_new() and use it for some structure allocation

CHANGES 1.99.9 -&gt; 1.99.10

+ fix a bug in decryption whereby a bad passphrase would cause a segmentation
  violation
+ fix some regressions in key searching in the underlying find keys routines
+ add C++ declaration protection to the external interface in netpgp.h
+ split out the key management parts of netpgp(1) into netpgpkeys(1)

CHANGES 1.99.8 -&gt; 1.99.9

+ make more use of __ops_io_t structure
+ addition of standalone, stripped-down netpgpverify utility
+ addition of test for --list-packets on an empty file
+ bring forward some simplifications from netpgpverify
        + some name changes
        + get rid of the increment and then decrement keycount around
          accumulated data ("it's to do with counting")
        + then use unsigned integers for the size and counts for the
          dynamic array of keys, and use the common dynamic array macros
          for keys in a keyring
        + if it's a union, let's use it as a union, not a struct
+ modified documentation to correct the --list-packets command (sorry, ver)
+ add a new directory structure for both the distribution and the
  reachover Makefiles. The autotest framework has been partially overhauled
  but more TLC is needed here.
+ add a --pass-fd=n option so that external programs can provide the
  passphrase on a file descriptor without going through the callback,
  requested by joerg
</content>
</entry>
<entry>
<title>Update netpgp package from version 20090525 to 20090531.</title>
<updated>2009-05-31T23:38:21Z</updated>
<author>
<name>agc</name>
<email>agc</email>
</author>
<published>2009-05-31T23:38:21Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=31bba34df9d0fd7dd5e9fea9743e19d53e87d6c0'/>
<id>urn:sha1:31bba34df9d0fd7dd5e9fea9743e19d53e87d6c0</id>
<content type='text'>
CHANGES 1.99.7 -&gt; 1.99.8

+ get rid of __ops_malloc_passphrase() - strdup() works just as well
+ generalise __ops_seckey_forget() to become __ops_forget(), give it a size
  parameter, and make it work on things other than secret keys (passphrases
  for instance)
+ minor struct field enum renaming
+ minor function call renaming
+ add ops_io_t struct to hold pointers to IO streams, and pass it down
  where necessary

CHANGES 1.99.6 -&gt; 1.99.7

+ added to the regression tests
+ get rid of some magic constants, replace with more obvious names
+ zero out the memory used for a passphrase before freeing it in one place

CHANGES 1.99.5 -&gt; 1.99.6

+ made --homedir=d consistent with POLS. Default is $HOME/.gnupg, and
  if a directory is specified with --homedir=d, the directory containing
  conf file and keyrings is taken to be "d".

CHANGES 1.99.4 -&gt; 1.99.5

+ Luke Mewburn completely overhauled the auto tools infrastructure
+ changed signature (hah!) of some netpgp file management prototypes to
  use const char * for file names and user ids, not char * - suggested by
  christos
+ change some of the openpgpsdk display functions to return integer values,
  and send those values back from the netpgp functions - suggested by
  christos
+ rather than passing a shedload of variables to netpgp_init(), get rid
  of them, and set variables using the netpgp_[gs]etvar() interface
+ replace some magic constants with descriptive names
+ use a netpgp variable to skip userid checks if necessary
+ add ability to allow coredumps via --coredumps if (a) you have taken
  leave of your sanity, and (b) you have some magical persistent
  storage which doesn't spare sectors, and (c) you know how to remove
  a file securely
+ bumped library version on NetBSD to 1.0 for interface changes
</content>
</entry>
</feed>
