Re: Signature verification failed

2009-06-22 Thread John Clizbe
Joel C. Salomon wrote:
 Michel Messerschmidt wrote:
 Hm, I get a good signature here:
 
 Ingo Klöcker wrote:
 Same here (using KMail):
 Message was signed by tho...@bohnomat.de (Key ID: 0x61C7F5B569274BBB).
 The signature is valid, but the key's validity is unknown.
 
 Hmm and double hmm.  Is there someone else using Thunderbird+Enigmail
 that can duplicate the error message?

Sure.

UNTRUSTED Good signature from Joel C. Salomon joelcsalo...@gmail.com
Key ID: 0x8C6CA66E / Signed on: 6/21/2009 10:24
Key fingerprint: 36FC ED6E 6BE2 2AAA DEB7 1C75 2A6C ED25 8C6C A66E

The signature is valid = Good Signature
but the key's validity is unknown. = UNTRUSTED


-- 
John P. Clizbe  Inet:John (a) Mozilla-Enigmail.org
You can't spell fiasco without SCO. hkp://keyserver.gingerbear.net  or
 mailto:pgp-public-k...@gingerbear.net?subject=help

Q:Just how do the residents of Haiku, Hawai'i hold conversations?
A:An odd melody / island voices on the winds / surplus of vowels



signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-22 Thread Joel C. Salomon
John Clizbe wrote:
 Joel C. Salomon wrote:
 Message was signed by tho...@bohnomat.de (Key ID: 0x61C7F5B569274BBB).
 The signature is valid, but the key's validity is unknown.
 
 Hmm and double hmm.  Is there someone else using Thunderbird+Enigmail
 that can duplicate the error message?
 
 Sure.
 
 UNTRUSTED Good signature from Joel C. Salomon joelcsalo...@gmail.com
 Key ID: 0x8C6CA66E / Signed on: 6/21/2009 10:24
 Key fingerprint: 36FC ED6E 6BE2 2AAA DEB7 1C75 2A6C ED25 8C6C A66E
 
 The signature is valid = Good Signature
 but the key's validity is unknown. = UNTRUSTED

D’oh!  I was so focused on the original error message I didn’t notice
that he was reporting a normal condition.  Thanks for catching that.

—Joel Salomon



signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread John Clizbe
Joel C. Salomon wrote:
 I’m using Thunderbird 2.0.0.21 + Enigmail 0.95.7 (20080808) with GnuPG
 1.4.9 under Windows.  On some messages (e.g., this recent one from
 Thomas Bohn: ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de) I get
 the message, “Error - signature verification failed; click Pen icon for
 details”.  The error message from GnuPG is:
 
 OpenPGP Security Info
 
 Error - signature verification failed
 
 gpg command line and output:
 C:\\Program Files\\GNU\\GnuPG\\gpg.exe --charset utf8  --batch --no-tty
 --status-fd 2 --keyserver-options auto-key-retrieve --keyserver
 pool.sks-keyservers.net --verify
 gpg: Signature made 06/19/09 23:53:14 using DSA key ID 69274BBB
 gpg: BAD signature from Thomas BOHN tho...@bohnomat.de
 
 Where does this problem come from?

According to a user on the MacGPG-Users list:

  I have seen this before, and it *usually* (not consistently) happens
  with OpenPGP/MIME signed messages from GPGMail. It does not happen
  with in-line signed messages, nor with encrypted and signed messages
  (all from GPGMail).

[http://sourceforge.net/mailarchive/message.php?msg_name=4A37B7B6.4080601%40mac.com]

It would appear to be an issue with how GPGMail constructs PGP/MIME
messages.

-- 
John P. Clizbe  Inet:John (a) Mozilla-Enigmail.org
You can't spell fiasco without SCO. hkp://keyserver.gingerbear.net  or
 mailto:pgp-public-k...@gingerbear.net?subject=help

Q:Just how do the residents of Haiku, Hawai'i hold conversations?
A:An odd melody / island voices on the winds / surplus of vowels



signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Michel Messerschmidt
On Sun, Jun 21, 2009 at 02:42:45AM -0500, John Clizbe wrote:
 Joel C. Salomon wrote:
  gpg command line and output:
  C:\\Program Files\\GNU\\GnuPG\\gpg.exe --charset utf8  --batch --no-tty
  --status-fd 2 --keyserver-options auto-key-retrieve --keyserver
  pool.sks-keyservers.net --verify
  gpg: Signature made 06/19/09 23:53:14 using DSA key ID 69274BBB
  gpg: BAD signature from Thomas BOHN tho...@bohnomat.de
  
  Where does this problem come from?
 
 It would appear to be an issue with how GPGMail constructs PGP/MIME
 messages.

Hm, I get a good signature here:

Message-Id: ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de
From: Thomas Bohn tho...@bohnomat.de
To: gnupg-users@gnupg.org
Subject: Re: Why do people send email with an attached public key?
Date: Sat, 20 Jun 2009 05:53:08 +0200

[-- Attachment #1 --]
[-- Type: multipart/signed, Encoding: 7bit, Size: 1,0K --]
Content-Type: multipart/signed; protocol=application/pgp-signature;
micalg=pgp-sha256; boundary=Apple-Mail-1-874815823
Content-Transfer-Encoding: 7bit

[-- PGP output follows (current time: Sun 21 Jun 2009 01:52:58 PM CEST) --]
gpg: Signature made Sat 20 Jun 2009 05:53:14 AM CEST using DSA key ID 69274BBB
gpg: Good signature from Thomas BOHN tho...@bohnomat.de
gpg: aka Thomas BOHN tho...@grummel.net
gpg: WARNING: This key is not certified with a trusted signature!
gpg:  There is no indication that the signature belongs to the owner.
Primary key fingerprint: 708B 345F 0936 633F 0E08  7C1E 61C7 F5B5 6927 4BBB
[-- End of PGP output --]

[-- The following data is signed --]



___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Ingo Klöcker
On Sunday 21 June 2009, Michel Messerschmidt wrote:
 On Sun, Jun 21, 2009 at 02:42:45AM -0500, John Clizbe wrote:
  Joel C. Salomon wrote:
   gpg command line and output:
   C:\\Program Files\\GNU\\GnuPG\\gpg.exe --charset utf8  --batch
   --no-tty --status-fd 2 --keyserver-options auto-key-retrieve
   --keyserver pool.sks-keyservers.net --verify
   gpg: Signature made 06/19/09 23:53:14 using DSA key ID 69274BBB
   gpg: BAD signature from Thomas BOHN tho...@bohnomat.de
  
   Where does this problem come from?
 
  It would appear to be an issue with how GPGMail constructs PGP/MIME
  messages.

 Hm, I get a good signature here:

Same here (using KMail):
Message was signed by tho...@bohnomat.de (Key ID: 0x61C7F5B569274BBB).
The signature is valid, but the key's validity is unknown.


Regards,
Ingo


signature.asc
Description: This is a digitally signed message part.
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Joel C. Salomon
Michel Messerschmidt wrote:
 Hm, I get a good signature here:

Ingo Klöcker wrote:
 Same here (using KMail):
 Message was signed by tho...@bohnomat.de (Key ID: 0x61C7F5B569274BBB).
 The signature is valid, but the key's validity is unknown.

Hmm and double hmm.  Is there someone else using Thunderbird+Enigmail
that can duplicate the error message?

—Joel Salomon



signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Charly Avital
Joel C. Salomon wrote the following on 6/21/09 11:23 AM:
 Michel Messerschmidt wrote:
 Hm, I get a good signature here:
 
 Ingo Klöcker wrote:
 Same here (using KMail):
 Message was signed by tho...@bohnomat.de (Key ID: 0x61C7F5B569274BBB).
 The signature is valid, but the key's validity is unknown.
 
 Hmm and double hmm.  Is there someone else using Thunderbird+Enigmail
 that can duplicate the error message?
 
 —Joel Salomon

Of all the signed posts, the only one that does not verify is
tho...@bohnomat.de:
OpenPGP Security Info
Error - signature verification failed
gpg command line and output:
/usr/local/bin/gpg2 --charset utf8  --batch --no-tty --status-fd 2 --verify
gpg: Signature made Fri Jun 19 23:53:14 2009 EDT using DSA key ID 69274BBB
gpg: BAD signature from Thomas BOHN tho...@bohnomat.de

This is the only message whose raw source indicates:

This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--===0304707816==
Content-Type: multipart/signed; protocol=application/pgp-signature;
micalg=pgp-sha256; boundary=Apple-Mail-1-874815823
Content-Transfer-Encoding: 7bit

This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--Apple-Mail-1-874815823
Content-Type: text/plain; charset=US-ASCII; format=flowed; delsp=yes
Content-Transfer-Encoding: 7bit


I believe, based upon previous occurrences that the problem *might*
originate with the message's format 'format=flowed' (the default format
of Apple's Mail).

But I can't explain it and I can't prove it.

I have found no way to disable 'format=flowed' in Apple's Mail.
I have disabled it in Thunderbird (for sending, not for displaying).

Charly



___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Thomas Bohn

On Jun 21, 2009, at 7:28 AM, Joel C. Salomon wrote:

On some messages (e.g., this recent one from Thomas Bohn: ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de 
) I get the message, “Error - signature verification failed; click  
Pen icon for details”.


I just noticed this thread, so I just send in another message. I will  
also forward it to the GPGMail mailing list.


Thomas

PGP.sig
Description: This is a digitally signed message part
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Joel C. Salomon
Thomas Bohn wrote:
 On Jun 21, 2009, at 7:28 AM, Joel C. Salomon wrote:
 On some messages (e.g., this recent one from Thomas Bohn:
 ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de) I get the message,
 “Error - signature verification failed; click Pen icon for details”.
 
 I just noticed this thread, so I just send in another message. I will
 also forward it to the GPGMail mailing list.

Interesting, now it comes up as good.  Did you change some setting?

—Joel Salomon





signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Thomas Bohn

On Jun 21, 2009, at 6:17 PM, Joel C. Salomon wrote:


Interesting, now it comes up as good.  Did you change some setting?


I didn't change anything.

Thomas


PGP.sig
Description: This is a digitally signed message part
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Charly Avital
Thomas Bohn wrote the following on 6/21/09 12:08 PM:
 On Jun 21, 2009, at 7:28 AM, Joel C. Salomon wrote:
 
 On some messages (e.g., this recent one from Thomas Bohn: 
 ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de 
 ) I get the message, �Error - signature verification failed; click  
 Pen icon for details�.
 
 I just noticed this thread, so I just send in another message. I will  
 also forward it to the GPGMail mailing list.
 
 Thomas


This one verifies OK:
OpenPGP Security Info

Good signature from Thomas BOHN tho...@bohnomat.de
Key ID: 0x69274BBB / Signed on: 6/21/09 12:08 PM
Key fingerprint: 708B 345F 0936 633F 0E08 7C1E 61C7 F5B5 6927 4BBB



And there's the difference (apparently):
This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--===1988148558==
Content-Type: multipart/signed; protocol=application/pgp-signature;
micalg=pgp-sha256; boundary=Apple-Mail-1-1005311242
Content-Transfer-Encoding: 7bit

This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--Apple-Mail-1-1005311242
Content-Type: text/plain; charset=WINDOWS-1252; format=flowed; delsp=yes
Content-Transfer-Encoding: quoted-printable


Please note the difference with your previous post:
this one is 'charset=WINDOWS-1252; --
Content-Transfer-Encoding: quoted-printable

Someone in this forum indicated that quoted-printable would solve the
issue.

Charly


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Ludwig Hügelschäfer
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Thomas Bohn wrote on 21.06.2009 18:08 Uhr:
 On Jun 21, 2009, at 7:28 AM, Joel C. Salomon wrote:
 
 On some messages (e.g., this recent one from Thomas Bohn:
 ae944322-4d68-40ba-b501-6589512b8...@bohnomat.de) I get the message,
 “Error - signature verification failed; click Pen icon for details”.
 
 I just noticed this thread, so I just send in another message. I will
 also forward it to the GPGMail mailing list.

This one provides a good signature here. Maybe you should turn off
format=flowed. Don't know how to do that in Apple Mail, though.

Ludwig
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.9 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBCgAGBQJKPmBGAAoJEA52XAUJWdLj3H8IAKtsUeTwYpXKyz48V7ne3C28
LPjSd3YgPFdwbyW1Nn2EvUkixJGP4/0P8yHiUitO8npqH0LOj2ld3co8ZtbcdRFt
6xSKuqg9HZVjFWTJ/6Vn3HvKhqAotiRu1lNgA1i7Cd2wGFXtKLQD7GW8Lx13hjgV
8QdfLP+0bI9Go3up24ntL39u6xMBgSklrxPcTdxGsdNxY6HXWeeIhdioTaR6SYQG
MFChUbatadbKcVG1Y8bNpWFj5xa6j4/yXcLckAT0Q+DBiDfrYaxCMLZc4QfECWka
EJ/VDKoFy+xoUv4M7qob5V4gpmByBbkJThq+M5X2sP1YeeyjrFTlKIfeKaxqQ20=
=coAd
-END PGP SIGNATURE-

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Thomas Bohn

On Jun 21, 2009, at 6:31 PM, Ludwig Hügelschäfer wrote:

This one provides a good signature here. Maybe you should turn off  
format=flowed. Don't know how to do that in Apple Mail, though.


My last email had format=flowed too. So it must be something else.

Thomas

PGP.sig
Description: This is a digitally signed message part
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Allen Schultz
On Sun, Jun 21, 2009 at 10:33 AM, Thomas Bohn tho...@bohnomat.de wrote:On Jun 21, 2009, at 6:17 PM, Joel C. Salomon wrote:


Interesting, now it comes up as good. Did you change some setting?


I didn't change anything.Error: Unknown error, FireGPG can't verify this email. I noticed one main difference. PGP.sig instead of signature.asc. Does GnuPG support PGP's PGP/MIME?Allen



signature.asc
Description: OpenPGP digital signature
___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Ludwig Hügelschäfer
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Thomas Bohn wrote on 21.06.2009 19:33 Uhr:
 On Jun 21, 2009, at 6:31 PM, Ludwig Hügelschäfer wrote:
 
 This one provides a good signature here. Maybe you should turn off
 format=flowed. Don't know how to do that in Apple Mail, though.
 
 My last email had format=flowed too. So it must be something else.

format=flawed is always good for a surprise. Have a look at
http://piology.org/SeaMonkey/format-flawed.html (sorry, in German)

But maybe it's solved by quoted-printable as Charlie suggests.

Ludwig
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.9 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBCgAGBQJKPnM3AAoJEA52XAUJWdLjuxUH/R9k7s0MKEG79JexXDRtATZC
MvXf0Kf2FRjWxhjn88sR/RObsvUXhPalhL0mR0yGDh1rY6ZmKXSmPuMjO4WrHucC
zDQh1A1dDf8QHgSAANY1OPO6cFtFcg/fK7c67IJjJRPs6auS3vP+LDDAO4EENk4m
6aYls+32PlNJXApqKmS/8QrzsLFOdwStzVQwO8RdKAApSSiIz93MdzpbYbvVW62I
r06Xx2DnDMJQc/vKYeqaBzNFA/6R9GsgRiHahRj6hKJeUL69FVYe0MGq6lQjjNQo
vZnFuoayG3z9/UDbd+lkANGnGoYlr1t89a56kwFlJWamKc3Vz9CzXbtmGgQxUD8=
=mCH+
-END PGP SIGNATURE-

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Charly Avital
Thomas Bohn wrote the following on 6/21/09 1:33 PM:
 On Jun 21, 2009, at 6:31 PM, Ludwig Hügelschäfer wrote:
 
 This one provides a good signature here. Maybe you should turn off  
 format=flowed. Don't know how to do that in Apple Mail, though.
 
 My last email had format=flowed too. So it must be something else.
 
 Thomas


As I wrote previously, the difference seems to be:

Content-Transfer-Encoding: quoted-printable

The signature that didn't verify belonged to an e-mail that was *not*
quote-printable.

Since you started sending e-mails with Content-Transfer-Encoding:
quoted-printable, they verify OK.

Charly


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Michel Messerschmidt
On Sun, Jun 21, 2009 at 06:33:11PM +0200, Thomas Bohn wrote:
 On Jun 21, 2009, at 6:17 PM, Joel C. Salomon wrote:

 Interesting, now it comes up as good.  Did you change some setting?

 I didn't change anything.

At least the version in the signature header changed from 2.0.11 to 
2.0.12. 


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Signature verification failed

2009-06-21 Thread Charly Avital
Michel Messerschmidt wrote the following on 6/21/09 4:01 PM:
[...]

 At least the version in the signature header changed from 2.0.11 to 
 2.0.12. 


Because Thomas Bohn upgraded to MacGPG 2.0.12 (from Ben Donnachie's
MacGPG2 project), as I did

Regards,
Charly
MacOS 10.5.7-MacBook Intel C2Duo 2GHz-GnuPG 1.4.9-MacGPG 2.0.12
TB 2.0.0.21+EM 0.95.7-Apple's Mail+GPGMail 1.2.0 (v56), Key: 0xA57A8EFA

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users