Mailing List Archive

pgp5 doesn't like my gnupg signatures
Hi all

I've just decided try GnuPG, now that 1.0.0 is out. Unfortunately I can't
seem to get it to sign messages properly. When I sign a message and then
check the signature using pgp5 I get:

[.-- PGP output follows (current time: Thu Oct 14 08:59:22 1999) --]
BAD signature made 1999-10-14 06:52 GMT by key:
1024 bits, Key ID 61F2637C, Created 1999-10-14
"Martin Lucina <mato@kotelna.sk>"
This signature applies to another message
[-- End of PGP output --]

However if I check this signature again using GnuPG, it says it's correct.
This is all using mutt as my MUA.

What is the problem here?

(Please Cc: to me, I am not on this list)
--
Martin Lucina http://www.kotelna.sk/mato/ Wellington, New Zealand
I've always been mad I know I've been mad like the most of us are
Pretty hard to explain why you're a madman even if you're not mad
Re: pgp5 doesn't like my gnupg signatures [ In reply to ]
mato said:

> [.-- PGP output follows (current time: Thu Oct 14 08:59:22 1999) --]
> BAD signature made 1999-10-14 06:52 GMT by key:
> 1024 bits, Key ID 61F2637C, Created 1999-10-14
> "Martin Lucina <mato@kotelna.sk>"
> This signature applies to another message
> [-- End of PGP output --]
>
> However if I check this signature again using GnuPG, it says it's correct.
> This is all using mutt as my MUA.

Here I go, replying to my own email.

It turns out this was because mutt was using MD5 as the MIC algorithm,
which GnuPG detected OK but PGP5 refused to accept. Setting it to SHA1
solved the problem.

This should probably go in the FAQ.

mato
--
Martin Lucina http://www.kotelna.sk/mato/ Wellington, New Zealand
I've always been mad I know I've been mad like the most of us are
Pretty hard to explain why you're a madman even if you're not mad
Re: pgp5 doesn't like my gnupg signatures [ In reply to ]
El jue, 14 de oct de 1999, a las 08:25:36 +1300, Martin Lucina dijo:
> Hi all
>
> I've just decided try GnuPG, now that 1.0.0 is out. Unfortunately I can't
> seem to get it to sign messages properly. When I sign a message and then
> check the signature using pgp5 I get:
(...)

Either add the line option:

force-v3-sigs

in your ~/.gnupg/options file, or use it from the command line:

--force-v3-sigs


Regards,

--
Horacio Anno MMDCCLII ad Urbe condita
homega@ciberia.es
Valencia - ESPAÑA
Re: pgp5 doesn't like my gnupg signatures [ In reply to ]
On Thu, 14 Oct 1999, Martin Lucina wrote:

> I've just decided try GnuPG, now that 1.0.0 is out. Unfortunately I
> can't seem to get it to sign messages properly. When I sign a
> message and then check the signature using pgp5 I get:
>
> [.-- PGP output follows (current time: Thu Oct 14 08:59:22 1999) --]
> BAD signature made 1999-10-14 06:52 GMT by key:
> 1024 bits, Key ID 61F2637C, Created 1999-10-14
> "Martin Lucina <mato@kotelna.sk>"
> This signature applies to another message
> [-- End of PGP output --]

Maybe you forgot to add "force-v3-sigs" to your ~/.gnupg/options?
According to the manual this is option is needed to make PGP 5 happy
with data signatures like the above. And don't forget that
"--openpgp" resets this option.

Have a look at the signature of this message, it should be accepted by
PGP 5. If it isn't your problem is not GnuPG but PGP 5, because it is
checked correctly using PGP 5 here.

Ciao

Roland

--
* roland@spinnaker.de * http://www.spinnaker.de/ *
PGP (RSA): 1024R/DD08DD6D 2D E7 CC DE D5 8D 78 BE 3C A0 A4 F1 4B 09 CE AF
GPG (DSA): 1024D/BD8B050D 3A63 2410 4B40 422D 1111 1D2C 3BBF CF77 BD8B 050D