GPG agent and gpg from command line: cannot update my keys over http: HTTP fetch error 7

Hi, I am getting a strange error when trying to retrive gpg keys over the terminal or within kgpg. In the terminal the error goes:

user@localhost:~> gpg --recv-keys 00411886
gpg: requesting key 00411886 from hkp server wwwkeys.pgp.eu.net
: can't connect to `wwwkeys.pgp.eu.net': host not found
gpgkeys: HTTP fetch error 7: couldn't connect: Not found
gpg: Non sono stati trovati dati OpenPGP validi.
gpg: Numero totale esaminato: 0

But also when I am running the search for keys in kgpg I get:
KGPG error window:

gpg: requesting key 4F1A70FD from hkp server wwwkeys.pgp.eu.net
: can't connect to `wwwkeys.pgp.eu.net': host not found
gpgkeys: HTTP fetch error 7: couldn't connect: Not found
gpg: Non sono stati trovati dati OpenPGP validi.
[GNUPG:] NODATA 1
gpg: Numero totale esaminato: 0
[GNUPG:] IMPORT_RES 0 0 0 0 0 0 0 0 0 0 0 0 0 0

As you see the error is the same (no matter what key you choose).

I have a normal Internet connect and can in the meanwhile do everything…but use this feature. As usual thank you in advance for your help and suggestions. Every contribution is very appreciated.

On 10/07/2011 03:36 PM, stakanov wrote:
>
> : can’t connect to `wwwkeys.pgp.eu.net’: host not found

yep, i can’t connect to it either, and neither can anyone else:

you need a better address…where did you get that one from??


DD
openSUSE®, the “German Automobiles” of operating systems

well it is the default address server of kde3.5. I did not any changes in them. Do you have a different default server in kgpg?

hkp://wwwkeys.pgp.eu.net
I double checked. It is perfectly this one the default server and it did work well before.

On 10/07/2011 04:16 PM, stakanov wrote:
>
> well it is the default address server of kde3.5. I did not any changes
> in them. Do you have a different default server in kgpg?
>
>
i had gpg set up on KDE3.5 also, but have not gone to the trouble in
KDE4.6…

what version of kgpg are you using?

well…hmmmmm, google on wwwkeys.pgp.eu.net and i get a wide variety
of variations…i have no idea which one, if any, might work for you:

wwwkeys.at.pgp.net
wwwkeys.ch.pgp.net
wwwkeys.cz.pgp.net
wwwkeys.de.pgp.net
wwwkeys.es.pgp.net
wwwkeys.eu.pgp.net
wwwkeys.nl.pgp.net
wwwkeys.pgp.net
wwwkeys.uk.pgp.net
wwwkeys.us.pgp.net
pgpkeys.pca.dfn.de
keyring.debian.org
keys.iif.hu
keys.pgpi.net
keys.se.linux.org
keyserver.aarg.net
keyserver.bu.edu
keyserver.kjsl.com
keyserver.linux.it
keyserver.noreply.org
keyserver.topnet.de

http://www.pgp.net/pgpnet/wwwkeys.html


DD
openSUSE®, the “German Automobiles” of operating systems

Well, the host wwwkeys.pgp.eu.net can not be resolved by DNS. Thus end of story. No matter if it worked before.

There is a “wwwkeys.pgp.net.eu” but there does not appear to be a “wwwkeys.pgp.eu.net”.

Ah, thank you. But how does one export the public signature on a signature server then? And is this functionality in 11.4 now not present any more? I.e. these servers did serve me to update my signature lists. So I am puzzeled, I tried other hkp servers present but non of them seem to work any more. Does anybody know if there has been a change in paradigm of the service?

KGPG 1.2.2 with KDE3.5.10 rel 21.13.1

And, update, one particularity that I can see is, that in the window of KGPG, whenever I define a whatsoever address being the default server this entry is then represented twice. (and twice marked as default). I am using exclusively email with encryption and would like to have this nice functionality to update my addresses from the key-server back. So any help is highly appreciated.

On 2011-10-08 00:16, stakanov wrote:
> Ah, thank you. But how does one export the public signature on a
> signature server then?

By configuring proper servers.


Cheers / Saludos,

Carlos E. R.
(from 11.4 x86_64 “Celadon” at Telcontar)

I have no idea, but even I can see that when you use a hostname that can not be solved by DNS, whatever you want is not going to work.

And @nrickert gave you a suggestion about a misunderstanding about that host’s domain name. And I guess that @robin_listas points to the same phenomenon. Using an unsolvable hostname will lead to no IP address available and thus to no connection whatever. Being it for an HTTP web page, an FTP server, an NTP server, a CA server, you name it.

@nrickert: I tried that variation of the host name, but same result.
@hcvv: argument taken, without any doubt. That is why I asked which default server appear in you kpgp 4.x installation. There the update works? Nobody does ever use KGPG for mail?
The issue is I am not sure it is a KGPG problem. Maybe it is a problem or a change in the politics of the GPG network. What I do not understand is then, why there has not been an official announcement of this. As I did not do any alteration in the structure or the programme of KGPG and beforehand it did work, this would point to a change in politics. So I try to find out about this.
The only thing I found on google is that apparently there are similar requests like mine in Debian, Ubuntu and Ark forums and others still that talk about a bug…
It is just that I do not belief it is a bug.
BTW: none of the named addresses of the hkp servers work for me. Not a single one. Is this plausible?

Update (edit) apparently yes. Since 18 of January??? http://old.nabble.com/Problem-with-“hkp-server-wwwkeys.eu.pgp.net”-td31860993.html and http://forum.froxlor.org/index.php?/topic/634-solved-gpg-keyserverde-unreachable/
People are using apparently workarounds. Curious that no info about is available. :\

That is why I asked which default server appear in you kpgp 4.x installation.

I do not have a package with that name installed, nor is it in the standard repos. I do have *kgpg 4.6.0-3.4 *installed. Is that what yo mean?

When yes, the description says it is a “simple GUI for gpg”.

That said, I find the file* .kde4/share/config/kpgprc *in my home directory. Very confusing. What is pgp and what is gpg and what is the connection?

henk@boven:~/.kde4> cat share/config/kpgprc
encryptToSelf$d]
showEncryptionResult$d]
showKeysForApproval$d]

$Version]
update_info=kpgp.upd:preKDE3_a,kpgp.upd:3.1-1,kmail.upd:5,kmail.upd:3.3-aegypten-kpgprc-to-kmailrc,kmail.upd:3.3-aegypten-kpgprc-to-libkleopatrarc

[General]
addressEntries=0
henk@boven:~/.kde4>

if that is something that helps you.

When you want the contents of other configuration files, plesea name them and I am willing to post them. But I guess not very many people can give you that from KDE 3.5.

Also I have the idea that the real information is in the configuration the product itself, not in the GUI program’s configuration.

I don’t normally use Kgpg. But, after your post, I started it.

It looks to me that Kgpg is getting its default keyserver gpg settings ($HOME/.gnupg/gpg.conf or $HOME/.gnupg/options). It lists several keyservers, but the one set as default is from my options file.

I suggest you edit the “keyserver” line in your gpg.conf (or options, depending on which you use).

Try this web page for a list of suggested keyservers:
David Ross – PGP Public Key Servers

On 2011-10-08 11:36, hcvv wrote:
> What is -pgp- and what is -gpg- and what is
> the connection?

Pgp is the original, more or less commercial, version. Gpg is the gnu
version. In linux we use the second.

Currently I have defined hkp://wwwkeys.eu.pgp.net on the CLI. Thunderbird
enigmail uses “pool.sks-keyservers.net”. Other posibilities are
subkeys.pgp.net, pgp.mit.edu, ldap://certserver.pgp.com.


Cheers / Saludos,

Carlos E. R.
(from 11.4 x86_64 “Celadon” at Telcontar)

On 2011-10-08 11:36, hcvv wrote:
> But I guess not very many people can
> give you that from KDE 3.5.

No, I understand he wants the configuration of kde 4 in order to update his
kde 3 config.


Cheers / Saludos,

Carlos E. R.
(from 11.4 x86_64 “Celadon” at Telcontar)

De hecho he buscado esto. Eres muy listo “robin_listas”. Gracias. This was effectively what I was searching for. Will update you if the new servers work or if there might be another problem. Hasta pronto.

I have now eliminated the old KDE3 server list and substituted with the following hkp servers:

Where I did set the hkp://keys.gnupg.net as default server. And…works flawlessly now. Thank you everybody who contributed. Solved.

PS. For everybody who does not use kgpg or enigmail: you should really consider to create your signature, make it sign by your friends and upload it on a keyserver. The web of trust allows for encrypted and safer email correspondence lowers spam (because nobody can read your contents therefore cannot joint address, contents and interests in spam databases) and I think it is a piece of freedom to have privacy.

Congrats you solved it.

And tanks for posting the soution.

And yes, I endorse “I think it is a piece of freedom to have privacy”. But most of us are to lazy ;(