Ukukhishwa kwe-GnuPG 2.2.17 ngezinguquko zokumelana nokuhlasela kumaseva angukhiye

eshicilelwe ukukhululwa kwekhithi yamathuluzi I-GnuPG 2.2.17 (I-GNU Privacy Guard), ehambisana namazinga e-OpenPGP (I-RFC-4880) kanye ne-S/MIME, futhi inikeza izinsiza zokubethela idatha, ukusebenza ngamasiginesha kagesi, ukuphathwa kokhiye kanye nokufinyelela ezitolo ezibalulekile zomphakathi. Khumbula ukuthi igatsha le-GnuPG 2.2 libekwe njengokukhululwa kokuthuthukiswa lapho izici ezintsha ziqhubeka nokwengezwa; ukulungiswa kokulungisa kuphela okuvunyelwe egatsheni le-2.1.

Udaba olusha luphakamisa izindlela zokulwa ukuhlasela kumaseva abalulekile, okuholela ekulengeni kwe-GnuPG kanye nokungakwazi ukuqhubeka nokusebenza kuze kube yilapho isitifiketi esiyinkinga sisuswa esitolo sendawo noma isitolo sesitifiketi sidalwa kabusha ngokusekelwe kokhiye basesidlangalaleni abaqinisekisiwe. Ukuvikela okungeziwe kusekelwe ekuzibeni ngokuphelele ngokuzenzakalela wonke amasiginesha edijithali ezitifiketi ezitholwe kumaseva angukhiye wesitoreji. Masikhumbule ukuthi noma yimuphi umsebenzisi angakwazi ukwengeza isiginesha yakhe yedijithali yezitifiketi ezingafanele kuseva engukhiye yokugcina, esetshenziswa abahlaseli ukudala inani elikhulu lamasiginesha anjalo (ngaphezu kwezinkulungwane eziyikhulu) zesitifiketi somuntu ohlukunyeziwe, ukucutshungulwa kwaso. iphazamisa ukusebenza okuvamile kwe-GnuPG.

Ukuziba amasiginesha edijithali yenkampani yangaphandle kulawulwa inketho "yokuzibona kuphela", evumela kuphela amasiginesha abadali ukuthi alayishwe okhiye. Ukuze ubuyisele ukuziphatha okudala, ungakwazi ukwengeza isilungiselelo esithi β€œkeyserver-options no-self-sigs-only,no-import-clean” ku-gpg.conf. Ngaphezu kwalokho, uma ngesikhathi sokusebenza kutholwa ukungenisa kwenani lamabhulokhi, okuzodala ukuchichima kwesitoreji sendawo (pubring.kbx), esikhundleni sokubonisa iphutha, i-GnuPG ivula ngokuzenzakalelayo imodi yokungaziba amasiginesha edijithali (β€œself-sigs -kuphela,ngenisa-kuhlanzekile”).

Ukuze ubuyekeze okhiye usebenzisa indlela Uhlu Lwemibhalo Lokhiye Wewebhu (WKD) Kwengezwe inketho ethi "--locate-external-key" engasetshenziswa ukuze kudalwe kabusha isitolo sesitifiketi ngokusekelwe kokhiye basesidlangalaleni abaqinisekisiwe. Lapho wenza umsebenzi othi "--auto-key-retrieve", indlela ye-WKD manje isikhethwa ngaphezu kwamaseva angukhiye. Ingqikithi ye-WKD ukubeka okhiye basesidlangalaleni kuwebhu ngesixhumanisi sesizinda esishiwo ekhelini leposi. Isibonelo, ngekheli elithi "[i-imeyili ivikelwe]"Ukhiye ungalandwa ngesixhumanisi "https://example.com/.well-known/openpgpkey/hu/183d7d5ab73cfceece9a5594e6039d5a".

Source: opennet.ru

Engeza amazwana