severity 879538 grave
thanks

On Thu, Oct 26, 2017 at 09:56:18PM +0200, Teddy Hogeborn wrote:
>> plugins.d/mandos-client.c actually uses GnuTLS OpenPGP support. This
>> code was marked deprecated in 3.5.9 and was removed in 3.6.0. Noop stub
>> functions are still shipped to avoid ABI breakage but return 
>> GNUTLS_E_UNIMPLEMENTED_FEATURE.
> We can't do that, it's an integral part of the Mandos client/server
> network protocol; removing it would entail creating an entirely new
> incompatible protocol.  We plan to do that using a feature not yet
> available in GnuTLS called "raw public keys" (RFC7250), but its
> developer has not merged it to GnuTLS upstream yet.

If so, mandos in unstable has to be completely broken, as GnuTLS 3.6.5
is now the current version. Marking the bug accordingly.

/* Steinar */
-- 
Homepage: https://www.sesse.net/

Reply via email to