What I mean is that the CipherMail search page literally shows what is
returned by the key server without importing the key

So if you lookup your key on pgpkeys.icij.org with your browser


https://pgpkeys.icij.org/pks/lookup/?search=jorgegv%40icij.org&op=index&options=mr&exact=off

You get the result

info:1:1
pub:D43C4D3C9AC70EBBE87330E9AA976E29616D42D4:1:4096:1618586394::
uid:jorge%20gonzalez%20%[email protected]%3E:1618586394::
uid:jorge%20gonzalez%20%[email protected]%3E:1618586394::

The lines list the date the signature was created (1618586394) but lack
the expiration time field (::)

If you do a similar lookup on another key server (which does not use
sequoia-pgp) it reports the expiration date:


http://pgp.surfnet.nl:11371/pks/lookup?search=jorgegv%40icij.org&op=index&options=mr&exact=off

info:1:1
pub:D43C4D3C9AC70EBBE87330E9AA976E29616D42D4:1:4096:1459236762:16169167
62:
uid:Jorge Gonzalez <[email protected]>:1489433573::
uid:Jorge Gonzalez <[email protected]>:1459236762::
uat::::

Note: that the expiration date on this key server is still the old
expiration date (1616916762 which is Sun Mar 28 2021 07:32:42 GMT+0000)

The key server reports results in the following format:

pub:<keyid>:<algo>:<keylen>:<creationdate>:<expirationdate>:<flags>

See https://tools.ietf.org/html/draft-shaw-openpgp-hkp-00

It looks like sequoia-pgp does not include the expiration date

One you import the key, CipherMail will report the correct expiration
date.

Kind regards,

Martijn Brinkers

-- 
CipherMail email encryption
Email encryption with support for S/MIME,
OpenPGP, PDF Messenger and Webmail Messenger

On Mon, 2021-04-19 at 17:12 +0200, Jorge Gonzalez wrote:
> Hi again Martijn,
> thanks for fixing.
> Regarding the search result: are you sure? This is what I get when
> run gpg over my new public key just downloaded from pgpkeys.icij.org:
> [jorgegv@endor Descargas]$ LANG=C gpg
> D43C4D3C9AC70EBBE87330E9AA976E29616D42D4.asc 
> gpg: WARNING: no command supplied.  Trying to guess what you mean ...
> pub   rsa4096 2016-03-29 [SCA] [expires: 2031-04-14]
>       D43C4D3C9AC70EBBE87330E9AA976E29616D42D4
> uid           Jorge Gonzalez <[email protected]>
> uid           Jorge Gonzalez <[email protected]>
> sub   rsa4096 2016-03-29 [E] [expires: 2031-04-14]
> It seems all keys and subkeys have an expiration date, right?
> ???
> J.
> Jorge Gonzalez Villalonga
> Systems Engineer
> The International Consortium of Investigative Journalists
> 1710 Rhode Island Ave NW, 11th floor | Washington DC 20036 | United
> States
> Phone: +34 672 173 200 (Madrid, Spain)
> El 19/4/21 a las 15:46, Martijn Brinkers escribió:
> > Hi Jorge,
> > 
> > The CipherMail code that checks the key expiration skipped the User
> > ID
> > packet if key expiration packet missing. It should however treat
> > the
> > missing key expiration as "never expire". I have fixed this. 
> > 
> > The other issue you reported, about the search result is not an
> > CipherMail issue but more a key server issue. The CipherMail
> > gateway
> > repors the "raw" results from the key server. It looks like your
> > key
> > server (https://pgpkeys.icij.org/) returns empty values for the
> > expiration date.
> > 
> > Kind regards,
> > 
> > Martijn Brinkers
> > 

Reply via email to