Page MenuHomeFreeBSD

security/gnupg: add the --shared-access option to scdaemon
ClosedPublic

Authored by asomers on Nov 21 2019, 2:10 AM.
Tags
None
Referenced Files
F133179250: D22473.id64872.diff
Thu, Oct 23, 5:37 PM
F133179246: D22473.id.diff
Thu, Oct 23, 5:37 PM
F133179242: D22473.id64661.diff
Thu, Oct 23, 5:37 PM
Unknown Object (File)
Thu, Oct 23, 9:17 AM
Unknown Object (File)
Sun, Oct 12, 1:54 PM
Unknown Object (File)
Mon, Oct 6, 11:52 PM
Unknown Object (File)
Fri, Oct 3, 1:18 AM
Unknown Object (File)
Thu, Oct 2, 4:32 AM
Subscribers

Details

Summary

security/gnupg: add the --shared-access option to scdaemon

gnupg's scdaemon opens smart cards in exclusive mode, which prevents other
applications (such as PKCS#11 libraries) from concurrently accessing the
card). Upstream refuses to fix the problem. This commit adds a
--shared-access option to scdaemon. When enabled, scdaemon will access the
smart card in shared mode, playing nicely with other applications. The
default behavior is unchanged.

See Also:
https://github.com/GPGTools/MacGPG2/commit/d6cb8039a0cdc74b9bdd89a3dfa93248aa2c4100
https://dev.gnupg.org/T3267
https://dev.gnupg.org/D320
https://github.com/OpenSC/OpenSC/issues/953

Obtained-from: GPGTools

Diff Detail

Repository
rP FreeBSD ports repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

I haven't tested this (I have no way of actually testing it), so I'm relying on you there. You definitely have my approval to commit this whenever you're ready.

This revision is now accepted and ready to land.Nov 21 2019, 6:21 PM

I guess I should add to please make sure that make -C ${WRKSRC} check completes successfully.

What is the status of this patch? What help can I be of here? I'll hold off on updating to 2.2.18 (just released) so as not to interfere here.

It's ready to go, but I had one more question at https://reviews.freebsd.org/D22492 . I was waiting for your answer, not because it's strictly required but just in case you had something surprising to say.