Re: Kmail and smime
Vojtěch Zeisek <[email protected]> Fri, 27 Feb 2026 12:25:35 +0100
| Newsgroups | gmane.comp.kde.users.pim |
|---|---|
| Organization | openSUSE GNU/Linux |
| Message-ID | <23952139.vTCxPXJkl2@svarog> |
--nextPart73844919.0thIPus4bt Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="utf-8"; protected-headers="v1" From: =?UTF-8?B?Vm9qdMSbY2g=?= Zeisek <[email protected]> To: [email protected] Subject: Re: Kmail and smime Date: Fri, 27 Feb 2026 12:25:35 +0100 Message-ID: <23952139.vTCxPXJkl2@svarog> Organization: openSUSE GNU/Linux MIME-Version: 1.0 Hello Dne p=C3=A1tek 27. =C3=BAnora 2026 11:46:12, st=C5=99edoevropsk=C3=BD stand= ardn=C3=AD =C4=8Das, Sebastian=20 G=C3=B6decke napsal(a): > Hi, > i've a smime cert and try to use it with Kontakt/Kmail. It is > imported in Kleopatra and there is everything okay. > So i set it up in kmail to use this cert and when i try to write > an email, my email will be added with this smime.p7s and > has the signitar. So i send my mail, have to type my password > for this cert and then it will be sent. So i try it now to send > it to me and then it's a red sign, and it says: The signature > is invalid: Incorrect signature > So i try my smime with outlook in windows and in betterbird > here on my Manjaro KDE and with both apps it's working. > Only with kmail there is this problem. > Any idea where i could have a look in my settings? The smime setting > in kmail is filled with my smime-cert and this is "green", any other > option i could check maybe "default-domain" (i changed it now to > our real domain but this didn't work) or anything else? > Many thanks for some responses. KMail/Kleopatra is internally relying GnuPG, while default settings in=20 ~/.gnupg/dirmngr.conf and ~/.gnupg/gpgsm.conf are often more in favor of GP= G=20 keys, and not S/MIME certificates, so I'd check if You have there disable-h= ttp=20 and/or disable-ldap (to be deleted), or missing allow-ocsp (to be added) in= =20 dirmngr.conf. In gpgsm.conf I'd ensure there is no disable-crl-checks, and= =20 possibly add enable-crl-checks and enable-ocsp. Restart with "gpgconf =E2= =80=93kill=20 dirmngr && gpgconf =E2=80=93launch dirmngr". It can be pretty tricky to get= everything=20 set correctly... :-/ and what does it mean " to send it to me"? If the mail returned via e-mail= =20 conference or so, the failed check can be because of added [XXX] into subje= ct,=20 some added footer or so... =2D-=20 Vojt=C4=9Bch Zeisek https://trapa.cz/ Komunita openSUSE GNU/Linuxu Community of the openSUSE GNU/Linux https://www.opensuse.org/ --nextPart73844919.0thIPus4bt Content-Type: application/pgp-signature; name="signature.asc" Content-Description: This is a digitally signed message part. Content-Transfer-Encoding: 7Bit -----BEGIN PGP SIGNATURE----- iQJPBAABCAA5FiEES97LYVdqIgW2UhmwtBndlZHSOVEFAmmhfzAbFIAAAAAABAAO bWFudTIsMi41KzEuMTIsMiwyAAoJELQZ3ZWR0jlRTeYP/1IYj1ucX+4dMPDkFx9s lCUnkZlXowy1yZNHMevljz9iuO4eXn8bRoQA1wikAkdkQgN87DZqQ3Fw5j7pSkCh DBosZ7GDUJgizN37yhfsIzCQEnew29cIvQz67rv0jnwL+n3Lpvhv36YBLL/TzfHe izdB/kDSdYitwuoY8YKQlYjVCS2uqchlubOlSdLydZOt4yPxF44+JswC2VhguPsi WiOFB5M76vbyN2RRdA68wGexe+921PEVs3Px70gHhCp10YeY8/+1N/dEwNty7FrN PcHcAoi6bu6WMD6rqOpckq5YIveTXHzK+jdidygDhy4c+Iu24rEqUgyZ8lFlzxY/ x5cFdKdSOeO65+AR2tf5RJRH23Ph9KQAqb4FlscB6mPL+zZIT9AD6x+zjfhFm960 X7sUJ0FYUKcQnkWT2E16aq+slZ/H4VReyn/TGL4SIgUA0UXpb2gKJY+/jCHLuyaV GvrmFaw+RTcc/ddA5iptLFKhHEv2xKsyhJQMZAqU5U90lzkdOW1l01Rf0nTA8kYf HbpPTjeMT67GgY4pfCWpbgPLfT67bb2abXn6xkk9dki3TzHBhQ26TuGYiczljndu o3SpOj2LsUT/EfIcFvJN/qJH4Ui3WlQIXVRa2CLOD+Zd7tmuk3ehlcbTsVHE6zUC a0i7tdw9vb7l2cGdX/c7oRgl =gOVe -----END PGP SIGNATURE----- --nextPart73844919.0thIPus4bt--