mirror of
git://git.gnupg.org/gnupg.git
synced 2025-07-03 22:56:33 +02:00
agent: Default to extended key format.
* agent/gpg-agent.c (oDisableExtendedKeyFormat, oNoop): New. (oEnableExtendedKeyFormat): Remove. (opts): Make --enable-extended-key-format a dummy option. Add disable-extended-key-format. (parse_rereadable_options): Implement oDisableExtendedKeyFormat. -- Extended key format is supported since vesion 2.1.12 which should have long been replaced by a newer version inh all installations. Thus for 2.3 we will make use of the extended-key-format by default. Signed-off-by: Werner Koch <wk@gnupg.org>
This commit is contained in:
parent
af9f4fb3d2
commit
05eff1f662
3 changed files with 23 additions and 22 deletions
|
@ -585,16 +585,16 @@ local gpg-agent and use its private keys. This enables decrypting or
|
|||
signing data on a remote machine without exposing the private keys to the
|
||||
remote machine.
|
||||
|
||||
@anchor{option --enable-extended-key-format}
|
||||
@item --enable-extended-key-format
|
||||
@opindex enable-extended-key-format
|
||||
This option creates keys in the extended private key format. Changing
|
||||
the passphrase of a key will also convert the key to that new format.
|
||||
Using this option makes the private keys unreadable for gpg-agent
|
||||
versions before 2.1.12. The advantage of the extended private key
|
||||
format is that it is text based and can carry additional meta data.
|
||||
Note that this option also changes the key protection format to use
|
||||
OCB mode.
|
||||
@item --disable-extended-key-format
|
||||
@opindex disable-extended-key-format
|
||||
Since version 2.3 keys are created in the extended private key format.
|
||||
Changing the passphrase of a key will also convert the key to that new
|
||||
format. This new key format is supported since GnuPG version 2.1.12
|
||||
and thus there should be no need to disable it. However, this options
|
||||
allows to revert to the old behaviour for new keys; be aware that keys
|
||||
are never migrated back to the old format. The advantage of the
|
||||
extended private key format is that it is text based and can carry
|
||||
additional meta data.
|
||||
|
||||
@anchor{option --enable-ssh-support}
|
||||
@item --enable-ssh-support
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue