Uploaded image for project: 'SignServer'
  1. SignServer
  2. DSS-1963

PGP revocation certificate support

    Details

    • Type: Task
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 5.2.0.Alpha1, 5.1.0.Final
    • Component/s: None
    • Labels:
      None
    • Epic Link:
    • Sprint:
      SignServer-Sprint 99, SignServer-Sprint 100

      Description

      Broken out of DSS-976:

      • Add revocation certificate support. See also DSS-1962 for support for specifying algorithms (if relevant).

      From SoW:

      • Revocation certificate can be generated by setting a worker property, then perform the CSR process and then unset the worker property again.
      • The revocation certificate, if generated, should be stored securely.

       

       To Do in this ticket:

      • Check if there is already a revocation certificate worker property in the signer. If not create such worker property.
      • Implement support for generating and returning a PGP revocation certificate from the getCertificateRequest method of the PGP signer if that worker property is specified.
      • [✔] File extension: .rev
      • [✔] Make commented out as GPG does. See file similar to /home/user/.gnupg/openpgp-revocs.d/B52A1FF772B3601A02B62CFFBC3CD08756D8D2EF.rev
      • [✔] Add comment in signature (see file)
      • [✔] Add comment text before header (see file)
      • [] Compliance test

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              marcus.lundblad@primekey.se Marcus Lundblad
              Reporter:
              markus Markus Kilås
              Verified by:
              Markus Kilås, Vinay Singh (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Time Tracking

                  Estimated:
                  Original Estimate - 5 hours Original Estimate - 5 hours
                  5h
                  Remaining:
                  Remaining Estimate - 0 minutes
                  0m
                  Logged:
                  Time Spent - 1 day, 7 hours, 31 minutes
                  1d 7h 31m