GNU bug report logs - #15552
24.3.50; epa-file-cache-passphrase-for-symmetric-encryption not respected with GnuPG 2.x

Previous Next

Package: emacs;

Reported by: Teodor Zlatanov <tzz <at> lifelogs.com>

Date: Mon, 7 Oct 2013 17:58:01 UTC

Severity: normal

Tags: notabug

Found in version 24.3.50

Done: Daiki Ueno <ueno <at> gnu.org>

Bug is archived. No further changes may be made.

Full log


Message #12 received at 15552-done <at> debbugs.gnu.org (full text, mbox):

From: Daiki Ueno <ueno <at> gnu.org>
To: Teodor Zlatanov <tzz <at> lifelogs.com>
Cc: 15552-done <at> debbugs.gnu.org
Subject: Re: bug#15552: 24.3.50;
 epa-file-cache-passphrase-for-symmetric-encryption not respected with
 GnuPG 2.x
Date: Tue, 08 Oct 2013 08:41:40 +0900
tags 15552 notabug
thanks

Teodor Zlatanov <tzz <at> lifelogs.com> writes:

> 1. On the local system, install GnuPG 2.x and don't run the gpg-agent
> 2. Set epa-file-cache-passphrase-for-symmetric-encryption to t
> 3. Open file.gpg: password dialog pops up
> 4. close file.gpg
> 5. Open file.gpg: password dialog pops up again
>
> Step (5) should not prompt.  It works properly with GnuPG 1.x.

That's intended behavior.  It is documented and I stated a number of
times the reason and why I chose such a lengthy name of the variable and
the default is nil:

1. Emacs heap is not so secure
2. Using Emacs for password input degrades the security

You never hear or remember.




This bug report was last modified 11 years and 229 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.