[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Cryptography: Key not selectable (PGP key)



Hi,

On Wednesday 09 December 2015 02:23:27 Sandro Knauß wrote:
> > Since a few weeks I can't select my PGP key for signing / encryption (thus
> > signing and encryption do not work any more).
> 
> strange - but without any version infomation nobody can help here. I think
> the problem is that you only have gnupg2 installed and got an update.

Ouch, sorry. I'm using an up-to-date Debian unstable.
gpg2 and gpg are installed.
ii gnupg 1.4.19-6 amd64
ii gnupg-agent 2.1.9-1 amd64
ii gnupg-curl 1.4.19-6 amd64
ii gnupg2 2.1.9-1 amd64

> The second thing we need to know, what kind of key you are using (hopenpgp-
> tools):
> hkt export-pubkeys '<fingerprint>' | hokey lint

$ hkt export-pubkeys 0x08302DB6A2670428| hokey lint
hokey (hopenpgp-tools) 0.16.3
hkt (hopenpgp-tools) 0.16.3
Copyright (C) 2012-2015  Clint Adams
Copyright (C) 2012-2015  Clint Adams
hkt comes with ABSOLUTELY NO WARRANTY. This is free software, and you are 
welcome to redistribute it under certain conditions.
hokey comes with ABSOLUTELY NO WARRANTY. This is free software, and you are 
welcome to redistribute it under certain conditions.

Key has potential validity: good
Key has fingerprint: 1CB2 7DBC 9861 4B2D 5841  646D 0830 2DB6 A267 0428
Checking to see if key is OpenPGPv4: V4
Checking to see if key is RSA or DSA (>= 2048-bit): RSA 4096
Checking user-ID- and user-attribute-related items:
  Tim Rühsen <tim.ruehsen@gmx.de>:
    Self-sig hash algorithms: [SHA512]
    Preferred hash algorithms: 
      [SHA512,SHA384,SHA256,SHA224]
    Key expiration times: 
      [1y11m29d81000s = Sat Jun 25 12:35:28 UTC 2016]
    Key usage flags: 
      [ sign-data key
, certify-keys key ]

> And please check first if the keys are still usable in the commandline with
> gpg and gpg2 etc. before blaming kmail...

Yes the key works with both gpg and gpg2:
gpg -u 0x08302DB6A2670428 --clearsign x
gpg2 -u 0x08302DB6A2670428 --clearsign x

BTW, gpg2 gives me these two warnings:
gpg: keyserver option 'ca-cert-file' is obsolete; please use 'hkp-cacert' in 
dirmngr.conf
gpg: keyserver option 'ca-cert-file' is obsolete; please use 'hkp-cacert' in 
dirmngr.conf


> Nether the less it sound like the issue i found with my old DSA key:
> #806531: gnupg2: old DSA 1024 key is not useable

That seems to be something different.

Regards, Tim


Reply to: