#28 ✓invalid
C Fraire

Dodgy keyserver?

Reported by C Fraire | February 15th, 2012 @ 07:30 PM | in 0.7 (closed)

Hello. I was looking to upload a key to a keyserver. Looking at my GPG Keychain Access preferences, I see that my keyserver was set to hkp://keys.gnupg.net.

OpenDNS shows four results for keys.gnupg.net:

131.155.141.70
188.40.65.201
195.113.19.83
209.234.253.170

As a sanity check, I looked for web servers at these addresses, and found this weirdness:

http://131.155.141.70 -> redirects to http://mud.stack.nl/, a "Sci-Fi MUD"
http://188.40.65.201 does not respond
http://195.113.19.83 does not respond
http://209.234.253.170 -> responds with "SKS OpenPGP Keyserver @zimmermann.mayfirst.org"

This seems dodgy to me. Please advise.

Comments and changes to this ticket

  • Luke Le

    Luke Le February 16th, 2012 @ 10:07 AM

    • Assigned user set to “Mento”

    Hi,

    I don't think there's anything wrong with that.
    It's strange that the HTTP for the first IP is used for a strange Sci-Fi site, but nevertheless if you telnet it on port 11371 which is the SKS OpenPGP port it responds correctly.

    Also if you upload your public key it's forwarded to many other keyservers, so I don't think there's a chance that this could pose a problem.

    If you've installed GPGPreferences you can change the keyserver to use in your System Preferences -> GPGPreferences.
    I'm using the pgp.uni-mainz.de since it seems to be more reliable.
    pgp.mit.edu also works very well.

  • C Fraire

    C Fraire February 16th, 2012 @ 01:44 PM

    Thank you. A follow-up issue: there is a line in my gpg.conf which is not modified when I change keyservers:

    auto-key-locate cert pka ldap hkp://keys.gnupg.net

    Might this be managed as well by GPGPreferences and GPG Keychain Access?

    Thanks.

  • Luke Le

    Luke Le February 16th, 2012 @ 01:48 PM

    This could indeed be a bug. We'll have to look into this.
    I'll let you know once we find something out.
    Thanks for bringing this to our attention!

  • Alex (via GPGTools)
  • Mento

    Mento April 25th, 2012 @ 01:27 PM

    Zusammenfassung für mich: GPGDefaults keyserver sollte auch auto-key-locate anpassen.

  • steve

    steve April 20th, 2013 @ 08:33 PM

    • Assigned user cleared.
  • steve

    steve March 24th, 2016 @ 04:41 PM

    • State changed from “new” to “invalid”
    • Milestone set to 0.7
    • Importance set to “Low”

    hkps is the default key server by now.

Please Sign in or create a free account to add a new ticket.

With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.

New-ticket Create new ticket

Create your profile

Help contribute to this project by taking a few moments to create your personal profile. Create your profile ยป

Shared Ticket Bins

People watching this ticket

Pages