GnuPG: Can't access keyserver over HKPS

Accessing a keyserver over HKP works, but HKPS doesn't. I'm using GnuPG 2.1.1-1.
# HKP - works
$ gpg --keyserver hkp://hkps.pool.sks-keyservers.net --search-keys 9741E8AC
gpg: data source: http://srv01.secure-u.de:11371
(1) Pierre Schmitz <[email protected]>
2048 bit RSA key 9741E8AC, created: 2011-04-10
# HKPS - general error
$ gpg --keyserver hkps://hkps.pool.sks-keyservers.net --debug 1024 --search-keys 9741E8AC
gpg: reading options from '/home/florian/.gnupg/gpg.conf'
gpg: enabled debug flags: extprog assuan
gpg: DBG: chan_3 <- # Home: /home/florian/.gnupg
gpg: DBG: chan_3 <- # Config: /home/florian/.gnupg/dirmngr.conf
gpg: DBG: chan_3 <- OK Dirmngr 2.1.1 at your service
gpg: DBG: chan_4 <- # Home: /home/florian/.gnupg
gpg: DBG: chan_4 <- # Config: /home/florian/.gnupg/dirmngr.conf
gpg: DBG: chan_4 <- OK Dirmngr 2.1.1 at your service
gpg: DBG: connection to the dirmngr established
gpg: DBG: chan_4 -> KEYSERVER --clear hkps://hkps.pool.sks-keyservers.net
gpg: DBG: chan_4 <- OK
gpg: DBG: chan_4 -> KS_SEARCH -- 9741E8AC
gpg: DBG: chan_4 <- ERR 1 General error <Unspecified source>
gpg: error searching keyserver: General error
gpg: keyserver search failed: General error
gpg: DBG: chan_4 -> BYE
gpg: secmem usage: 0/32768 bytes in 0 blocks
Tried this with both an empty dirmngr.conf and the following (from the bottom of https://sks-keyservers.net/overview-of-pools.php):
hkp-cacert /home/florian/.gnupg/sks-keyservers.netCA.pem no-honor-keyserver-url
The gpg.conf is completely empty.
Any idea what's going wrong here?

@clfarron4: So you didn't change gpg.conf from the default (sorry if I understood this incorrectly)? If so, I think HKPS isn't actually used. See this output, using default gpg.conf:
~ mv .gnupg/ gpg
~ gpg
gpg: directory '/home/florian/.gnupg' created
gpg: new configuration file '/home/florian/.gnupg/gpg.conf' created
gpg: WARNING: options in '/home/florian/.gnupg/gpg.conf' are not yet active during this run
gpg: keybox '/home/florian/.gnupg/pubring.kbx' created
gpg: Go ahead and type your message ...
^C
gpg: signal Interrupt caught ... exiting
~ gpg --debug 1024 --keyserver hkps://hkps.pool.sks-keyservers.net --search-keys 9741E8AC
gpg: reading options from '/home/florian/.gnupg/gpg.conf'
gpg: enabled debug flags: extprog assuan
gpg: DBG: chan_3 <- # Home: /home/florian/.gnupg
gpg: DBG: chan_3 <- # Config: [none]
gpg: DBG: chan_3 <- OK Dirmngr 2.1.1 at your service
gpg: DBG: chan_4 <- # Home: /home/florian/.gnupg
gpg: DBG: chan_4 <- # Config: [none]
gpg: DBG: chan_4 <- OK Dirmngr 2.1.1 at your service
gpg: DBG: connection to the dirmngr established
gpg: DBG: chan_4 -> KEYSERVER --clear hkps://hkps.pool.sks-keyservers.net
gpg: DBG: chan_4 <- OK
gpg: DBG: chan_4 -> KEYSERVER hkp://keys.gnupg.net
gpg: DBG: chan_4 <- OK
gpg: DBG: chan_4 -> KS_SEARCH -- 9741E8AC
gpg: DBG: chan_4 <- S PROGRESS tick ? 0 0
gpg: DBG: chan_4 <- S SOURCE http://206.176.170.195:11371
gpg: DBG: chan_4 <- D info:1:1%0Apub:4AA4767BBC9C4B1D18AE28B77F2D434B9741E8AC:1:2048:1302428133::%0Auid:Pierre Schmitz <[email protected]>:1302428133::%0A%0D%0A
gpg: data source: http://206.176.170.195:11371
gpg: DBG: chan_4 <- OK
(1) Pierre Schmitz <[email protected]>
2048 bit RSA key 9741E8AC, created: 2011-04-10
Keys 1-1 of 1 for "9741E8AC". Enter number(s), N)ext, or Q)uit >
gpg: signal Interrupt caught ... exiting
As you can see, this does work, but doesn't actually use the keyserver specified with --keyserver. It falls back to the one from the config, which uses an unencrypted connection (HKP). Also see http://lists.gnupg.org/pipermail/gnupg- … 29219.html:
Gnupg sends the dirmngr the keyserver it should use with a KEYSERVER command.
In dirmngr's debug output you can see that it sends KEYSERVER --clear <foo>
and then another KEYSERVER command for each keyserver configured.
In my tests it always used the last one.
@jasonwryan: do you have any keyserver(s) specified in your gpg.conf? If yes, then HKPS might not work for you after all. You should be able to check with --debug 1024.
Last edited by fwalch (2015-01-02 10:24:00)

Similar Messages

  • [SOLVED] GnuPG can't find keyserver

    I'm trying to import the key from the Tor Browser, following the instructions from https://www.torproject.org/docs/verifyi … es.html.en. When I run
    gpg --keyserver x-hkp://pool.sks-keyservers.net --recv-keys 0x4E2C6E8793298290
    I get as output
    gpg: keyserver receive failed: No keyserver available
    I have no idea what's going wrong. When I run the same command under Linux Mint on the same computer, it works fine. I also tried deleting ~/.gnupg but that doesn't help as well.
    Last edited by Clint_arch (2015-05-05 11:12:31)

    Clint_arch wrote:Thanks, that indeed worked. Though I am curious now why it does work on Linux Mint with the leading x-.
    I don't know why it works under Mint (have you tried it recently?). All I can say is that the leading x- usually indicates a non-standatd and/or extended version of the protocol [1].
    PS: remember to mark the thread as [SOLVED] by editing you first post and prepending it to the title: https://bbs.archlinux.org/viewtopic.php?id=130309

  • VPN - can't access internet over VPN

    Hi,
    I have an issue with VPN.
    For my work I need to be able to log into my office network remotely and then access remote desktop connection from within my work network.
    This won't work unless I am accessing the internet from inside the VPN.
    I have got this working on a PC, just had to select "Use default gateway on remote network" and now when I access the VPN on a windows laptop I am accessing the internet over the VPN.
    When I connect to the VPN on the Mac I can access the network, email server, file servers etc, but can not access the internet through the VPN.
    I have tried:
    - changing the service order
    - ticking and unpicking the send all traffic over VPN setting
    I can get to the point where I can access my work network over the VPN while also accessing the internet over my wifi but cannot get it so I can access the internet over the VPN connection. It is a PPTP VPN.
    Does anyone know how I get my Mac to use the default gateway on the remote network?

    If this server is behind a (NAT-) router you need to turn on "ipforwarding only" in Server Admin NAT configuration otherwise the server wont route packets beyond it's subnet.

  • Can't access Mac over network since Mavericks update

    Help! Since the update to Mavericks I can't access my iMac over my home network using my Nexus 7 tablet. I used to do it flawlessly right before I updated from Mountain Lion.
    I was using ES File Explorer to browse my shared folders on my Mac from my Android Tablet right away and now I keep getting asked for a username and password to connect. I type it correctly but still not able to connect. I tried other file browing apps for my tablet (File Manger, AndSMB,...) but still unable to connect. The apps can scan my network and find the server address (iMac) but can't get access to it.
    I must say that the Tablet can access the internet so it's not Tablet network settings related.
    I tried the workaround found here http://cammodude.blogspot.ca/.  Still not working. Any suggestions?

    Try going back and checking the step 3 on the linked instructions for remote login where it mentions:
    Step 3: Now enable “Remote Login” in the Sharing menu of System Preferences.
    Read more: http://www.shoutpedia.com/transfer-files-mac-os-x-mavericks-android-phone-wifi-e asy-way/#ixzz30iEam8MC
    That's the part that will allow it.  I've got "Remote Login" checked there' and and then make sure you have whichever user(s)/groups added for the login you're using.  I have that set to Administrators and on then on my phone I have it set up with computer IP, port 22, my computer username which is a First Last type format with the space...whatever it normally says on your login screen on your computer or when you get prompted to allow software installs etc. and then the password.

  • Can't access c3550 over network

    Hello!
    I'm having trouble getting my c3550 to communicate on my network. I believe that I've set it up correctly, but there's obviously something wrong. I would appreciate any insight you may have. My network is currently 192.168.0.0/22 without VLANs. Here's some device output:
    C3550_01#show running-config
    Building configuration...
    Current configuration : 2595 bytes
    version 12.1
    no service pad
    service timestamps debug uptime
    service timestamps log uptime
    no service password-encryption
    hostname C3550_01
    enable secret 5 $1$dwg9$2H2g.v8NcqqLl9lR9axK8.
    enable password 123456
    ip subnet-zero
    spanning-tree mode pvst
    spanning-tree extend system-id
    interface FastEthernet0/1
     switchport mode dynamic desirable
     no ip address
    ... (0/2 - 0/23 have identical output)
    interface FastEthernet0/24
     switchport mode dynamic desirable
     no ip address
    interface GigabitEthernet0/1
     switchport mode dynamic desirable
     no ip address
    interface GigabitEthernet0/2
     switchport mode dynamic desirable
     no ip address
    interface Vlan1
     ip address 192.168.3.251 255.255.252.0
    ip default-gateway 192.168.3.254
    ip classless
    ip http server
    line con 0
     exec-timeout 0 0
    line vty 0 4
     password 123456
     login
    line vty 5 15
     password 123456
     login
    end
    C3550_01#show interfaces vlan 1
    Vlan1 is up, line protocol is up
      Hardware is EtherSVI, address is 000e.d78f.ca80 (bia 000e.d78f.ca80)
      Internet address is 192.168.3.251/22
      MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input 15:23:05, output never, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 2
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         0 packets input, 0 bytes, 0 no buffer
         Received 0 broadcasts (0 IP multicast)
         0 runts, 0 giants, 0 throttles
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
         0 packets output, 0 bytes, 0 underruns
         0 output errors, 0 interface resets
         0 output buffer failures, 0 output buffers swapped out
    C3550_01#show vlan
    VLAN Name                             Status    Ports
    1    default                          active    Fa0/2, Fa0/3, Fa0/4, Fa0/5
                                                    Fa0/6, Fa0/7, Fa0/8, Fa0/9
                                                    Fa0/10, Fa0/11, Fa0/12, Fa0/13
                                                    Fa0/14, Fa0/15, Fa0/16, Fa0/17
                                                    Fa0/18, Fa0/19, Fa0/20, Fa0/21
                                                    Fa0/22, Fa0/23, Fa0/24, Gi0/1
                                                    Gi0/2
    1002 fddi-default                     act/unsup
    1003 token-ring-default               act/unsup
    1004 fddinet-default                  act/unsup
    1005 trnet-default                    act/unsup
    VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
    1    enet  100001     1500  -      -      -        -    -        0      0
    1002 fddi  101002     1500  -      -      -        -    -        0      0
    1003 tr    101003     1500  -      -      -        -    -        0      0
    1004 fdnet 101004     1500  -      -      -        ieee -        0      0
    1005 trnet 101005     1500  -      -      -        ibm  -        0      0
    Remote SPAN VLANs
    Primary Secondary Type              Ports
    C3550_01#

    Thanks for the response!
    If I understand your questions correctly,
    1 - I'm attempting to access the switch across my network (via wired ethernet) from my admin workstation. The switch does not respond to network discovery attempts, including ping.
    2 - I'm unable to ping the switch or any device connected to it from my admin computer. Also, devices connected to the switch can't ping each other, the switch, or any network IP.
    3 - The only access I have right now is through the serial console.
    I should probably also mention that this switch is being configured on my bench before deployment - if I can get it to work.

  • How can I access audio over Firewire from a DV camera in Flex/Air?

    Hi all,
    I've scoured the 'net looking, but I cannot seem to find an answer to my question.
    I'm writing an app that captures video and audio in Flex as an Air application.  I can use Camera.getCamera() to get the video from my Firewire-connected DV camera just fine, but the audio stream doesn't show up in Microphones at all.
    I'm developing on Windows 7 - is there some issue with Windows not exposing the Firewire audio feed as a local sound device?  Is there a way around it?
    Thanks in advance - I look forward to any help you may be able to offer.
    Dave

    I should note that the camera (both video and audio) show up as devices just fine in other Adobe CS apps (including FLME).  Does anyone have any insight as to how FLME gains access to the DV hardware?

  • Windows 7 media center MCE plug-in & Elements 8 - can not access catalog over network

    Hi,
    I have Elements 8 installed on windows 7 and want to use the Microsoft Media Center photoshop plugin to view photographs and slide shows held on a network share.  How do I configure the plug-in to find the catalog on the share ( at address  P:|Pictures ).
    All I can see is an entry for "My Catalog" on screen and a small number of black thumbnails.
    Thanks
    Kilraughts

    For some reason when using the "certified" MCE version of the Forceware drivers, after a short while all the buttons in the menus become "corrupted"
    The simple solution: use regular XP/2000 version of Forceware drivers. They still work perfectly in MCE2005, and the graphical corruption doesn't appear.
    nVidia Drivers
    EDIT: this problem appears to have been corrected in the recent Rollup 2 Update

  • Can't access email over wifi with iPhone 5, iPod Touch, or iPad

    All was working fine, then suddenly stopped.  Get message "Cannot Get Mail The connection to the server failed.", followed by "Cannot Get Mail The mail server "imap.yahoo.com" (or "imap,gmail.com) is not responding. Verify that you have entered the correct account info in Mail settings." message.  Email works on cellular connection on iPhone; not an option on iPad or iPod Touch.  I've tried verifying settings, resetting all devices, deleted and reinstalled email accounts (yahoo and gmail).  No luck.  Any suggestions?

    I got this error for my Gmail, and Hotmail accounts but not for my Exchange account at work. It seems to be a problem on Apple's side since it affects multiple mail systems.

  • TS1398 I have connected my iPad 2 to my Mac Air over blue tooth.  Booth say they are connected to each other.  But I can not access the internet on the IPAD.  I can connect over blue tooth from my iPhone to my iPad with no issue.  Any thoughts?  Thank you

    I am trying to connect my Ipad 2 to my Mac Air over bluetooth.
    I can connect them to each other, and both machines say they are connected over bluetooth.
    However I can not access the internet on the Ipad...says it is not connected to the internet.
    Does anyone know if you can fix this?
    THank you

    Yes I tried this manyfold. But did not work.  Reading on, I took Tesserac's advice. Shut down router and computer.
    Start router after 15 minutes and wait another 10 minutes before starting the computer.
    Et voila.... everything is back in working order,
    Regards form Curacao, Dutch Caribean.
    Pete van Linden

  • I have moved from a G5 Powermac to an Intel Mac Pro and am porting over Items from a Backup HDD. How can I access and use drawings and documents created on the PC computer on the Intel computer ?

    I have moved from a G5 Powermac to an Intel Mac Pro and selectively porting over items from a backup hard drive.
    How can I access and use documents and drawings created on the PC based computer ?

    Clarisworks, you need Appleworks, which will only work with Mac OS X10.6.8 or earlier.  See this tip if you must go newer.  Mac Pros with newer hardware configuration than July 20, 2011 can't use Mac OS X 10.6.8 or earlier without this tip and then it would be Mac OS X Server.  I'm not sure if the new black Mac Pro supports that configuration or not.
    iPhoto, there is an iPhoto for all versions of Mac OS X.
    iTunes, there is an iTunes for all versions of Mac OS X.  Note with iTunes versions 11 and later, which are needed for syncing with iOS 7 or or later, you will lose coverflow, if you liked that feature.  Sadly you can't run an older version of iTunes from within Mac OS X 10.9 or later.
    Sketchup: http://help.sketchup.com/en/article/60107 shows the versions that will work with intermediate Mac OS X versions, and this shows the latest version: http://help.sketchup.com/en/article/36208 be sure to click on the operating system you choose to use.
    GIF - Viewing GIFs Apple's Preview can do that.  Editing them, I like http://www.lemkesoft.com/ Graphicconverter.
    DMG is able to be opened by all versions of Mac OS X.  This are just "disk images" which store programs on a virtual disk that will open when double clicked.    Frequently you'll find the installer of the said program inside.  To find out if the program itself is compatible with 10.7 through 10.9, see http://www.roaringapps.com/
    Otherwise see the resources on:
    https://discussions.apple.com/docs/DOC-2455
    If you end up deciding to stick with Snow Leopard.

  • My BB9810 refuse to load OS7.1 software on my phone after the download has completed. My phone has freezed/stucked since morning. Pls urgent help/assistant needed as I can not access/use my phone for over 24hrs now.

    My BB9810 refuse to load OS7.1 software on my phone after the download has completed. My phone has freezed/stucked since morning. Pls  urgent help/assistant needed as I can not access/use my phone for over 24hrs now.

    Hi there,
    Use the method described in the link below to get back up and running:
    http://supportforums.blackberry.com/t5/Device-software-for-BlackBerry/How-To-Reload-Your-Operating-S...
    I hope this info helps!
    If you want to thank someone for their comment, do so by clicking the Thumbs Up icon.
    If your issue is resolved, don't forget to click the Solution button on the resolution!

  • How do I sync hotmail passwords so i can gain access to my hotmail inbox wihtout having to retype my password all over again

    How do I sync hotmail passwords so i can gain access to my hotmail inbox wihtout having to retype my password all over again

    Hi there,
    When you enter your username/password combination for the first time Firefox will ask you to remember it. Clicking yes will result in FF filling it in for you on your next visit. Please keep in mind that cookies must be enabled in order for this to work.
    Regards,
    Ziggy

  • Can't access my backup to store on new phone. i see that it was backed up yesterday at 1:39  got the new iPhone 6 my contacts came over but none of my pictures

    can't access my backup to store on new phone. i see that it was backed up yesterday at 1:39  got the new iPhone 6 my contacts came over but none of my pictures

    What photos are you referring to? Are these photos that are in the Camera Roll and Photo Stream albums on the device you backed up, or are they in different albums? Are you signed onto the new phone with the same iCloud ID? Are the Photo Stream photos ones that have been taken in the past 30 days?
    When you set up the new phone did you set it up using that backup?
    Cheers,
    GB

  • I don't know why my phone on lock screen then there is a unknown flying icon over there... What should I do? I can't access to my call and unlock my iPhone...

    I don't know why my phone on lock screen then there is a unknown flying icon over there... What should I do? I can't access to my call and unlock my iPhone...

    Flying Icon? Like a plane?
    If so, the phone is in Airplane mode
    Swipe up to get the control panel, tap the airplane
    See photo for reference
    http://cdn1.appleinsider.com/78348734-2.png

  • After Mac OS X 10.6.3 upgrade can't access Yahoo mail and repeatedly get message ""Sorry, we are over capacity. Please wait a moment and try again." Help, please,

    After Mac OS X 10.6.3 upgrade can't access Yahoo mail and repeatedly get message ""Sorry, we are over capacity. Please wait a moment and try again." Help, please.

    Did you run all the software updates after the 10.6.3 update, especially this one which will bring you up to 10.6.8.
    Mac OSX 10.6.8 V1.1 Combo update
    Run software update, starting with the one above.
    Then call your provider and ask them what is going on. They have probably changed POP to IMAP, 10.6.8 supports IMAP

Maybe you are looking for

  • Enterprise App on Multiple Devices

    Hi, I'm making my first enterprise app intended for both iPad and iPhone. In terms of distribution is it possible to download on just one device and have it sync to the other on the same Apple ID or is this only for apps distributed through the App S

  • How can use all vcenter feature such as HA and drs without shared storage

    Hi i have 2 esxi host dl 380g8 but i don't have any shared storage or san now i want use vcenter feature like ha and drs now for use this features do i have to run VSAN? i readed for for use vsan we have to buy ATLEAST ONE ssd disk is this trure? ssd

  • Vpn connection droppes Windows 8.1 Enterprise

    Hi. I've an issue related VPN connection. I've setup PPTP connection like this: Windows 8.1 Ent. ->Wi-Fi -> Dlink DIR-300 -> Ericsson GPON -> FC -> ISP -> Ericsson GPON -> Dlink DSR 500N After few minutes i connect to the DSR 500N over VPN PPTP, the

  • Have latest Camera Raw 8.7, cant open D700 NEFs

    I updated to the latest version of Camera Raw for Photoshop, but it wont open NEFs from my nikon D700 despite the fact that the D700 requires 4.6 or 5.1 or later to open... Am I doing something wrong? Does the D700 require an EARLIER version of Camer

  • Imort songs

    I cant figure out how to import more songs from my library onto my ipod mini? HELP!   Windows XP