Re: W32 version tries to write to /dev/null

2007-05-08 Thread Henry Hertz Hobbit
Andrew Berg wrote:

> Werner Koch wrote:
>
>>> On Mon,  7 May 2007 16:58, [EMAIL PROTECTED] said:
>>>
>>>
>>> gpg: can't create `/dev/null': No such file or directory
>>> gpg: signing failed: file create error
>>> 
>>> Fixed in my working copy by using /dev/nul instead
>
> How would that help? /dev/nul can't exist on a Windows
> system either.

But NUL (nul) does exist, at least for now:

command 1> NUL 2>&1

I use it all the time in my BAT, VBS, JS and PL (PERL) script
files. But almost none of those script files work properly any
more with Vista because any time you wander into protected areas
you need administration privileges. I am talking about NORMAL
Vista accounts, nothing special. Actually, you can start an
elevated shell on Vista to run the script, but that is a real
pain if you made it so people could just double-click on
script files to run them. Here is the article on NUL and
redirection:

http://support.microsoft.com/kb/110930

Just be sure if you are throwing it away, then throw it ALL
away.  If you don't, you will still see the message. I have NO
idea whether it works the same in both scripts and inside
C / C++ / C# programs.  Windows is notorious for having
scripting and binaries frequently behaving differently and you
can't interspangle a script that calls a binary that in turn
calls another script on pre-Vista Windows like you do on 'nix
machines. Supposedly, the new PowerShell (PS1) scripting is
going to make the mixing of binaries and scripts possible;
hopefully NUL will be a first class object.  BAT is gone on
Vista, and PowerShell is Object shell scripting (with LOTS
of gotchas).

HHH

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Extra key best solution for very insecure locations?

2007-05-08 Thread Andrew Berg
-BEGIN PGP SIGNED MESSAGE-
Hash: RIPEMD160
 
Janusz A. Urbanowicz wrote:
> On Mon, May 07, 2007 at 04:27:55PM +0800, Jim Berland wrote:
>> Hello everybody,
>>
>> I'm trying to find the best solution for using GPG on a USB drive
>> while travelling.
>>
>> I read the FAQ about subkeys which suggests to only use subkeys on
>> insecure computers. As far as I understand this, though, anybody who
>> got hold of my private subkeys would still be able to read all my
>> previous mails. The document was obviously written with workplace
>> computers and such in mind, rather than heavily infected Windows PCs
>> in internet cafes.
>
> I suggest abandoning carrying the key, and taking a good look at
hushmail.com.
Which is probably even less secure. In order to compromise a
PGP-encrypted message (without breaking the encryption), one must have
the private key and passphrase. In order to compromise Hushmail, one
only needs the passphrase, which is easier to obtain remotely. The
former requires a silent keylogger, knowledge of the key's existence,
and a program that will silently copy the key. The former requires an
IE data miner (not uncommon) unless the café owner has another browser
like Firefox or Opera, or allows users to use a portable browser like
Firefox Portable. A keylogger would work for the latter as well.
Personally, I wouldn't take the risk on a machine that I consider
insecure.
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.7 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
 
iQEVAwUBRkDzGviOA0Bgp4/LAQOHTAgApdF9UKbbhyXdU5OdLuSlYHQ2eZ+raWel
vFvnjOFq9NkZIl4YOm8WuZi7Al5Xv7lRzebjcq+4nZOmRkBCY5JnD58bjPFUp4Yv
/B84T/scOV9bfqN2X0BVAA5QMmmy0YQFL9LGPCguidVHO8NikgJpIVaGyBijOiHW
p52AOXSgNrV6U5pLagJffRwnIWEMD+0UGu592YJ6ije9MUqUEN+v3hUQyw1HFtUf
B2KWKQ+apZ3k5muoV0wPjmVPp8kHD65JVRUM90kWiZBRt9gDZzvIBfQwjGFWxhdg
ciTFrn3Y9oXI9pQYsiJopHPKziQeSDLhvLpTfVq1pbfdvgkoSmgntg==
=m4BO
-END PGP SIGNATURE-


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: Extra key best solution for very insecure locations?

2007-05-08 Thread Janusz A. Urbanowicz
On Mon, May 07, 2007 at 04:27:55PM +0800, Jim Berland wrote:
> Hello everybody,
> 
> I'm trying to find the best solution for using GPG on a USB drive
> while travelling.
> 
> I read the FAQ about subkeys which suggests to only use subkeys on
> insecure computers. As far as I understand this, though, anybody who
> got hold of my private subkeys would still be able to read all my
> previous mails. The document was obviously written with workplace
> computers and such in mind, rather than heavily infected Windows PCs
> in internet cafes.

I suggest abandoning carrying the key, and taking a good look at hushmail.com.

Alex
-- 
JID: [EMAIL PROTECTED]
PGP: 0x46399138
od zwracania uwagi na detale są lekarze, adwokaci, programiści i zegarmistrze
 -- Czerski

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: W32 version tries to write to /dev/null

2007-05-08 Thread Andrew Berg
-BEGIN PGP SIGNED MESSAGE-
Hash: RIPEMD160
 
Werner Koch wrote:
> On Mon,  7 May 2007 16:58, [EMAIL PROTECTED] said:
>
>> gpg: can't create `/dev/null': No such file or directory
>> gpg: signing failed: file create error
>
> Fixed in my working copy by using /dev/nul instead
How would that help? /dev/nul can't exist on a Windows system either.
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.7 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
 
iQEVAwUBRkCxOfiOA0Bgp4/LAQM3FwgAlX296BiqMZmECGjlNcDlt4bImcfOYzXH
ZVF0xV5JYuadC12VN38p7Pzi6eAJOgn/WAbaFNyN5gYdfnIEALi0RMT+Hd+4yngi
jArSmJSEBqvtXqbKAlqqo+dBDIfTRufFs5Mpo+xc1V8xtJdFbOIks0s9Qz5sgE3X
fC2joB5wkB2M6aU7DwF60jTwLU5ivMmleG27E+Jjlbm38zQF5NQ7ZG4lcD6hWAuO
MiRy1EUajR6wNmQ/O+HqZgt3w5phDMk+cbZ69sU4Hp6B6ndd0AWe6X3NXvqOyuyQ
XktuaGDkNZaJcGYLvLQDR3jIu6lWoBJrK4ADXiRT+7nuQEOn8Zt4+Q==
=LJ28
-END PGP SIGNATURE-


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


Re: [gpgme+gpg-agent] How to use gpg-agent in daemon

2007-05-08 Thread Werner Koch
On Tue,  8 May 2007 10:38, [EMAIL PROTECTED] said:

> purposes and I need to use gpg-agent in my program. But when I start my 
> daemon it detaches itself from the current console therefore I can not 

Well daemons keep it deep in their genes to detach themself.

> use gpg-agent. How can I make gpg-agent system wide for all users.

Although I doubt that this is a good idea, it is easy:

  chmod  777 $(echo $GPG_AGENT_INFO | cut -d: -f1)

then make GPG_AGENT_INFO available to all users.  Insted of 777 you
should put all users into one group, chgrp the socket and chmod to 770.



Salam-Shalom,

   Werner


___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users


[gpgme+gpg-agent] How to use gpg-agent in daemon

2007-05-08 Thread Burak Oğuz
Hi,

I am working on a Linux daemon which will be using gpgme for crypto 
purposes and I need to use gpg-agent in my program. But when I start my 
daemon it detaches itself from the current console therefore I can not 
use gpg-agent. How can I make gpg-agent system wide for all users.

Thanks in advance

--- burak

___
Gnupg-users mailing list
Gnupg-users@gnupg.org
http://lists.gnupg.org/mailman/listinfo/gnupg-users