On Sun, Jul 09 2023, Renato Aguiar <[email protected]> wrote:
> I can't use OpenPGP card (Yubikey) after upgrading it to 2.4.3:
>
> $ gpg --card-status
> gpg: selecting card failed: Operation not supported by device
> gpg: OpenPGP card not available: Operation not supported by device
Indeed, it looks like there was some regression in scdaemon. Can you
please confirm that your yubikey was usable and useful with
gnupg-2.2.41?
With a borrowed and otherwise virgin (I think) Yubikey 5 NFC with
firmware version 5.1.2, I get:
shannon ~$ usbdevs -v
[...]
addr 04: 1050:0407 Yubico, YubiKey OTP+FIDO+CCID
full speed, power 30 mA, config 1, rev 5.12
[...]
shannon ~$ ykman info
WARNING: No OTP HID backend available. OTP protocols will not function.
ERROR: Unable to list devices for connection
Device type: YubiKey 5 NFC
Serial number: <REDACTED>
Firmware version: 5.1.2
Form factor: Keychain (USB-A)
Enabled USB interfaces: OTP, FIDO, CCID
NFC transport is enabled.
Applications USB NFC
OTP Enabled Enabled
FIDO U2F Enabled Enabled
FIDO2 Enabled Enabled
OATH Enabled Enabled
PIV Enabled Disabled
OpenPGP Enabled Enabled
YubiHSM Auth Not available Not available
shannon ~$ LC_ALL=C.UTF-8 gpg --card-status
Reader ...........: Yubico YubiKey OTP FIDO CCID 00 00
Application ID ...: <REDACTED>
Application type .: OpenPGP
Version ..........: 2.1
Manufacturer .....: Yubico
Serial number ....: <REDACTED>
Name of cardholder: [not set]
Language prefs ...: [not set]
Salutation .......:
URL of public key : [not set]
Login data .......: [not set]
Signature PIN ....: not forced
Key attributes ...: rsa2048 rsa2048 rsa2048
Max. PIN lengths .: 127 127 127
PIN retry counter : 3 0 3
Signature counter : 0
Signature key ....: [none]
Encryption key....: [none]
Authentication key: [none]
General key info..: [none]
--
jca | PGP : 0x1524E7EE / 5135 92C1 AD36 5293 2BDF DDCC 0DFA 74AE 1524 E7EE