Hello

I am using Xemacs, gnus the epa pkg for encrypting s/mime using gpgsm.

I have several email accounts with different (comodo certificates). 
Now one certificate for the address addre...@gmail.com has expired.

However I want to send an email from address2 (whose certificate is
*not* expired) to a recipient.

However when I try to encrypt this message, it does not work.

I obtain an error message,
whose epa bug trace I attach. It is not clear to me, who is the culprit,
epa or gpgsm.

But I consider this is a BUG, I don't want to use the expired
certificate but one which is not expired.

thanks

Uwe Brauer 

gpgsm --no-tty --status-fd 1 --yes --output /tmp/oub/epg-outputR_HIIF 
--detach-sign -u F69E1EFB6147C786
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: certificate has expired
gpgsm:   (expired at 2013-12-16 23:59:59)
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: NOTE: won't be able to encrypt to `<burr...@gmail.com>': Certificate 
expired
gpgsm: DBG: adding certificates at level -1
[GNUPG:] SIG_CREATED D 1 2 00 20131218T101015 
AF791B3AE3CCA0A1A9575730F69E1EFB6147C786
gpgsm: signature created
gpgsm --no-tty --status-fd 1 --yes --output /tmp/oub/epg-outputR_HVSL --encrypt 
-r 768D0C6F306269A7 -r F69E1EFB6147C786
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: certificate has expired
gpgsm:   (expired at 2013-12-16 23:59:59)
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: can't encrypt to `<burr...@gmail.com>': Certificate expired
[GNUPG:] INV_RECP 5 <burr...@gmail.com>
gpgsm --no-tty --status-fd 1 --yes --output /tmp/oub/epg-outputR_HicR 
--detach-sign -u F69E1EFB6147C786
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: certificate has expired
gpgsm:   (expired at 2013-12-16 23:59:59)
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: NOTE: won't be able to encrypt to `<burr...@gmail.com>': Certificate 
expired
gpgsm: DBG: adding certificates at level -1
[GNUPG:] SIG_CREATED D 1 2 00 20131218T101051 
AF791B3AE3CCA0A1A9575730F69E1EFB6147C786
gpgsm: signature created
gpgsm --no-tty --status-fd 1 --yes --output /tmp/oub/epg-outputR_HvmX --encrypt 
-r F69E1EFB6147C786 -r F69E1EFB6147C786
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: certificate has expired
gpgsm:   (expired at 2013-12-16 23:59:59)
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: note: non-critical certificate policy not allowed
gpgsm: CRLs not checked due to --disable-crl-checks option
gpgsm: can't encrypt to `<burr...@gmail.com>': Certificate expired
[GNUPG:] INV_RECP 5 <burr...@gmail.com>
_______________________________________________
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users

Reply via email to