Debian Bug report logs - #909700
tests/keytrans and pem2openpgp expect old-style PEM format for SSH keys

version graph

Package: monkeysphere; Maintainer for monkeysphere is Debian Privacy Tools Maintainers <pkg-privacy-maintainers@lists.alioth.debian.org>; Source for monkeysphere is src:monkeysphere (PTS, buildd, popcon).

Reported by: Antoine Beaupre <anarcat@debian.org>

Date: Thu, 27 Sep 2018 01:42:01 UTC

Severity: grave

Tags: patch, upstream

Merged with 928684

Found in versions monkeysphere/0.41-1, monkeysphere/0.43-2

Fixed in version monkeysphere/0.43-3

Done: Daniel Kahn Gillmor <dkg@fifthhorseman.net>

Bug is archived. No further changes may be made.

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, Jameson Rollins <jrollins@finestructure.net>:
Bug#909700; Package monkeysphere. (Thu, 27 Sep 2018 01:42:04 GMT) (full text, mbox, link).


Acknowledgement sent to Antoine Beaupre <anarcat@debian.org>:
New Bug report received and forwarded. Copy sent to Jameson Rollins <jrollins@finestructure.net>. (Thu, 27 Sep 2018 01:42:04 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Antoine Beaupre <anarcat@debian.org>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: tests/keytrans and pem2openpgp expect old-style PEM format for SSH keys
Date: Wed, 26 Sep 2018 21:38:21 -0400
Package: monkeysphere
Version: 0.41-1
Severity: important

Monkeysphere's test suite currently fails with:

ms: importing key from file '/build/1st/monkeysphere-0.41/tests/tmp/ms.9XY/ssh_host_rsa_key'...
RSA.xs:198: OpenSSL error: no start line at /build/1st/monkeysphere-0.41/tests/../src/pem2openpgp line 1104, <STDIN> line 1.
gpg: no valid OpenPGP data found.
FAILED!

That is because openssh 1:7.8p1-1 introduced a new format by default
for ssh-keygen.

This was first discovered on reproducible build server by kilobyte in
#899060.

-- System Information:
Debian Release: buster/sid
  APT prefers testing
  APT policy: (500, 'testing'), (1, 'experimental'), (1, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.18.0-1-amd64 (SMP w/4 CPU cores)
Locale: LANG=fr_CA.UTF-8, LC_CTYPE=fr_CA.UTF-8 (charmap=UTF-8), LANGUAGE=fr_CA.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages monkeysphere depends on:
ii  adduser                    3.118
ii  gnupg                      2.2.10-1
ii  libcrypt-openssl-rsa-perl  0.30-1
ii  lockfile-progs             0.1.18
ii  perl [libdigest-sha-perl]  5.26.2-7

Versions of packages monkeysphere recommends:
ii  agent-transfer               0.41-1
ii  cron [cron-daemon]           3.0pl1-130
ii  netcat-openbsd [netcat]      1.190-2
ii  netcat-traditional [netcat]  1.10-41.1
ii  openssh-client               1:7.8p1-1
ii  socat                        1.7.3.2-2
ii  ssh-askpass                  1:1.2.4.1-10

Versions of packages monkeysphere suggests:
pn  monkeysphere-validation-agent  <none>

-- debconf-show failed



Information forwarded to debian-bugs-dist@lists.debian.org, Jameson Rollins <jrollins@finestructure.net>:
Bug#909700; Package monkeysphere. (Thu, 27 Sep 2018 01:57:05 GMT) (full text, mbox, link).


Acknowledgement sent to Antoine Beaupré <anarcat@debian.org>:
Extra info received and forwarded to list. Copy sent to Jameson Rollins <jrollins@finestructure.net>. (Thu, 27 Sep 2018 01:57:05 GMT) (full text, mbox, link).


Message #10 received at 909700@bugs.debian.org (full text, mbox, reply):

From: Antoine Beaupré <anarcat@debian.org>
To: 909700@bugs.debian.org
Subject: Re: tests/keytrans and pem2openpgp expect old-style PEM format for SSH keys
Date: Wed, 26 Sep 2018 21:54:56 -0400
Control: tags -1 +patch

I have pushed d8fc9f2 to fix that part of the test suite at least. It
was only a matter of passing "-m PEM" to ssh-keygen in the test suite,
but we still have the problem that we can't parse the new-style OpenSSH
key formats in pem2openpgp...

A.

-- 
Brief is this existence, as a fleeting visit in a strange house.
The path to be pursued is poorly lit by a flickering consciousness.
                       - Albert Einstein



Added tag(s) patch. Request was from Antoine Beaupré <anarcat@debian.org> to 909700-submit@bugs.debian.org. (Thu, 27 Sep 2018 01:57:05 GMT) (full text, mbox, link).


Reply sent to Daniel Kahn Gillmor <dkg@fifthhorseman.net>:
You have taken responsibility. (Tue, 16 Oct 2018 18:09:16 GMT) (full text, mbox, link).


Notification sent to Antoine Beaupre <anarcat@debian.org>:
Bug acknowledged by developer. (Tue, 16 Oct 2018 18:09:16 GMT) (full text, mbox, link).


Message #17 received at 909700-close@bugs.debian.org (full text, mbox, reply):

From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
To: 909700-close@bugs.debian.org
Subject: Bug#909700: fixed in monkeysphere 0.42-1
Date: Tue, 16 Oct 2018 18:06:22 +0000
Source: monkeysphere
Source-Version: 0.42-1

We believe that the bug you reported is fixed in the latest version of
monkeysphere, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 909700@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Daniel Kahn Gillmor <dkg@fifthhorseman.net> (supplier of updated monkeysphere package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 16 Oct 2018 12:32:30 -0400
Source: monkeysphere
Binary: monkeysphere agent-transfer
Architecture: source
Version: 0.42-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Privacy Tools Maintainers <pkg-privacy-maintainers@lists.alioth.debian.org>
Changed-By: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
Description:
 agent-transfer - copy a secret key from GnuPG's gpg-agent to OpenSSH's ssh-agent
 monkeysphere - leverage the OpenPGP web of trust for SSH and TLS authentication
Closes: 883015 899060 902318 902320 902367 908228 909700
Changes:
 monkeysphere (0.42-1) unstable; urgency=medium
 .
   * new upstream bugfix release.
 .
   [ Daniel Kahn Gillmor ]
   * make print_date_from_seconds_since_the_epoch deal better with bad input
 .
   [ Helmut Grohne ]
   * use generic compiler (closes: #883015)
 .
   [ Daniel Kahn Gillmor ]
   * clean up test suite failures when built against newer GnuPG
 .
   [ Clint Adams ]
   * Remove RSAAuthentication from test ssh config (Closes: #902318)
 .
   [ Antoine Beaupré ]
   * fix more gnupg2 colons changes (Closes: #902367)
   * yet more colon fixes that escaped previous inspections
   * write old-style PEM files to unbreak test suite (Closes: #909700)
 .
   [ Clint Adams ]
   * Remove deprecated option from test sshd config (Closes: #902320)
 .
   [ Sunil Mohan Adapa ]
   * tests: Ensure that stale sockets don't fail socat (Closes: #899060)
 .
   [ Daniel Kahn Gillmor ]
   * use --send-keys instead of --send (closes: #908228)
   * prepare new release
   * enable tests to operate on system installation
   * d/copyright: use https for Format:
   * use priority optional instead of extra
   * added autopkgtest
   * override package-contains-documentation-outside-usr-share-doc for
     transitions README.txt
   * install examples in monkeysphere package
   * d/watch: use https
   * packaging handled by pkg-privacy-team (updated uploaders)
Checksums-Sha1:
 03190e3a46d0f4305e0c70b8e29fdc7c55f12483 1879 monkeysphere_0.42-1.dsc
 546a30e9d003422ee296961417e10ebe9875d3cb 110415 monkeysphere_0.42.orig.tar.gz
 f320e4b5f9d0dece78ed5482ab8d27597bb20c34 6784 monkeysphere_0.42-1.debian.tar.xz
 35224fa0bdad8347c5233d325a7fe7fff541b685 12714 monkeysphere_0.42-1_amd64.buildinfo
Checksums-Sha256:
 d43f26ef40cbbc39b6ce64f113eea8d6e195c53d993d328da0af865172e0c9a3 1879 monkeysphere_0.42-1.dsc
 c1c956b1c86aaa44134fc1a9d75f5aef61266e3a9d8a6218b45d6c54bb7c58c1 110415 monkeysphere_0.42.orig.tar.gz
 dcc0abfeedca392aa32b65994a97f87e6c0d05b78acdca643fb416ea1d2e5446 6784 monkeysphere_0.42-1.debian.tar.xz
 469f78ede8160e3eb4a33d7113ec3b09d1aaedeabcdfd62ac7eadfd97b7d25a6 12714 monkeysphere_0.42-1_amd64.buildinfo
Files:
 6ac2d8ae0a47520504fa6c79b49b87bc 1879 net optional monkeysphere_0.42-1.dsc
 56b5f9f66481eec8716a1726366239b4 110415 net optional monkeysphere_0.42.orig.tar.gz
 02180d3667e081a2bbb71f96e00060b9 6784 net optional monkeysphere_0.42-1.debian.tar.xz
 6d315b1e8b6a8deeed38b57c6f5b6282 12714 net optional monkeysphere_0.42-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iHUEARYKAB0WIQTTaP514aqS9uSbmdJsHx7ezFD6UwUCW8YmMgAKCRBsHx7ezFD6
UxIeAP0SC+hD17dMdlVzB8wI8fyKEtbcZoheV034ES5HAwBc7wD8Dm0EreKCx7pG
WwC6BeaHKz7uUeOdIzHHed3k5eqUmQA=
=jgbh
-----END PGP SIGNATURE-----




Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Wed, 14 Nov 2018 07:24:58 GMT) (full text, mbox, link).


Bug unarchived. Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to 928684-submit@bugs.debian.org. (Wed, 08 May 2019 22:21:02 GMT) (full text, mbox, link).


Marked as found in versions monkeysphere/0.43-2. Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to 928684-submit@bugs.debian.org. (Wed, 08 May 2019 22:21:03 GMT) (full text, mbox, link).


Added tag(s) a11y and upstream. Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to 928684-submit@bugs.debian.org. (Wed, 08 May 2019 22:21:04 GMT) (full text, mbox, link).


Merged 909700 928684 Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to 928684-submit@bugs.debian.org. (Wed, 08 May 2019 22:21:08 GMT) (full text, mbox, link).


Severity set to 'grave' from 'important' Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to 928684-submit@bugs.debian.org. (Wed, 08 May 2019 22:21:09 GMT) (full text, mbox, link).


Bug reopened Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to control@bugs.debian.org. (Fri, 10 May 2019 20:45:02 GMT) (full text, mbox, link).


No longer marked as fixed in versions monkeysphere/0.42-1. Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to control@bugs.debian.org. (Fri, 10 May 2019 20:45:03 GMT) (full text, mbox, link).


Removed tag(s) a11y. Request was from Daniel Kahn Gillmor <dkg@fifthhorseman.net> to control@bugs.debian.org. (Fri, 10 May 2019 20:45:05 GMT) (full text, mbox, link).


Reply sent to Daniel Kahn Gillmor <dkg@fifthhorseman.net>:
You have taken responsibility. (Fri, 10 May 2019 21:21:08 GMT) (full text, mbox, link).


Notification sent to Antoine Beaupre <anarcat@debian.org>:
Bug acknowledged by developer. (Fri, 10 May 2019 21:21:08 GMT) (full text, mbox, link).


Message #40 received at 909700-close@bugs.debian.org (full text, mbox, reply):

From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
To: 909700-close@bugs.debian.org
Subject: Bug#909700: fixed in monkeysphere 0.43-3
Date: Fri, 10 May 2019 21:18:39 +0000
Source: monkeysphere
Source-Version: 0.43-3

We believe that the bug you reported is fixed in the latest version of
monkeysphere, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 909700@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Daniel Kahn Gillmor <dkg@fifthhorseman.net> (supplier of updated monkeysphere package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 10 May 2019 16:55:04 -0400
Source: monkeysphere
Binary: agent-transfer agent-transfer-dbgsym monkeysphere
Architecture: source amd64 all
Version: 0.43-3
Distribution: unstable
Urgency: medium
Maintainer: Debian Privacy Tools Maintainers <pkg-privacy-maintainers@lists.alioth.debian.org>
Changed-By: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
Description:
 agent-transfer - copy a secret key from GnuPG's gpg-agent to OpenSSH's ssh-agent
 monkeysphere - leverage the OpenPGP web of trust for SSH and TLS authentication
Closes: 909700
Changes:
 monkeysphere (0.43-3) unstable; urgency=medium
 .
   * fix monkeysphere-host import-key (Closes: #909700)
   * update GnuPG dependency
Checksums-Sha1:
 b17af57d483bd35770c6a762e6824f1749bbc5a2 1906 monkeysphere_0.43-3.dsc
 7c118aaf595ecd2956ab61dab7ab0609f7dfea80 10960 monkeysphere_0.43-3.debian.tar.xz
 e1027ae18b991a1329927cea606696900c63ce8a 30932 agent-transfer-dbgsym_0.43-3_amd64.deb
 edf6b2d26c9d3c1f988cc63c6be8c689693b8585 23680 agent-transfer_0.43-3_amd64.deb
 26ba33ea63d6c05fe53f52b0311c2c18ca025a26 78520 monkeysphere_0.43-3_all.deb
 2a5206f439bda1a34001410d755cb90fd7f24201 12554 monkeysphere_0.43-3_amd64.buildinfo
Checksums-Sha256:
 f70b80d8ac38ebdfcb4d325be0feef6d75c740c245ac22b9070ebb82c933754c 1906 monkeysphere_0.43-3.dsc
 68d0d4abb1a7b5587358de1b91018b0b5cafab75523ffb3056d6273e2b6daeed 10960 monkeysphere_0.43-3.debian.tar.xz
 8e7865aa361d6fd0edbc5c77fbf6b4b4bfb4d5017fd7bc6e0bacef7e6c6d9f34 30932 agent-transfer-dbgsym_0.43-3_amd64.deb
 0c96598c4c2c74c51da60cfd15e75603793e990677de291842c510c3279f6401 23680 agent-transfer_0.43-3_amd64.deb
 b44734ec9053b4ab096936fd34ac2cde81177d4f9ba23742d9eda171f4f1fca2 78520 monkeysphere_0.43-3_all.deb
 bc7dfda0b015988aa303afdbc40aa4003ed4b86bba16411063f815ed150ba32b 12554 monkeysphere_0.43-3_amd64.buildinfo
Files:
 4d135121130980ed1dc241b11f984d49 1906 net optional monkeysphere_0.43-3.dsc
 277c30411acc14f7308d79468324ca52 10960 net optional monkeysphere_0.43-3.debian.tar.xz
 9c64584cef90c23ee183ca9e267dc922 30932 debug optional agent-transfer-dbgsym_0.43-3_amd64.deb
 0a1deff87c9dc4b8701bc67e4d8c5bbf 23680 net optional agent-transfer_0.43-3_amd64.deb
 28ab00471277699eedcf1d05e9ce5d79 78520 net optional monkeysphere_0.43-3_all.deb
 8951398113f354b5b2a50858fa5c9fc8 12554 net optional monkeysphere_0.43-3_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iHUEARYKAB0WIQTJDm02IAobkioVCed2GBllKa5f+AUCXNXodwAKCRB2GBllKa5f
+ECIAPsHW4BgQt5ao5rjEfJeQWU13bdgS6oQrPEOag5Re/xzowD8DuEJCtR52u5c
PrJ4FK2ZgRmoOv6pnnqAoD3+aUUNLQI=
=F4Q3
-----END PGP SIGNATURE-----




Reply sent to Daniel Kahn Gillmor <dkg@fifthhorseman.net>:
You have taken responsibility. (Fri, 10 May 2019 21:21:09 GMT) (full text, mbox, link).


Notification sent to Andrei Morgan <asm-debian@fifthhorseman.net>:
Bug acknowledged by developer. (Fri, 10 May 2019 21:21:09 GMT) (full text, mbox, link).


Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Sun, 07 Jul 2019 07:25:41 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Thu Nov 21 23:40:30 2024; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.