Re: Ask for passphrase once, but require confirmation each time a key is used?

2020-11-21 Thread Franck Routier (perso)
You could use a Yubikey: correctly configured, it will required you to touch the yubikey capacitor button to allow the use of the gpg key (once the passphrade is cached of course) Franck Le jeudi 19 novembre 2020 à 22:08 +0100, dalz via Gnupg-users a écrit : > The motivation is that I'd like to

Re: Which keyserver

2020-09-18 Thread Franck Routier (perso)
Le jeudi 17 septembre 2020 à 18:13 -0400, Phil Pennock via Gnupg-users a écrit : > If publishing keys, I do recommend setting up WKD for your > domain, which helps a little. What is the status of WKD now, and is it to superseed centralized key servers ? Franck

Re: Traveling without a secret key

2020-07-09 Thread Franck Routier (perso)
Le jeudi 09 juillet 2020 à 14:58 +0200, Stefan Claas a écrit : > Juergen Bruckner via Gnupg-users wrote: > > Hi Juergen > > > It's a good question what to do if you lose your SC or token. > > Basically, it has to be said that you should definitely have a > > backup of > > your key. And you have

Re: Traveling without a secret key

2020-07-09 Thread Franck Routier (perso)
Le jeudi 09 juillet 2020 à 14:58 +0200, Stefan Claas a écrit : > Juergen Bruckner via Gnupg-users wrote: > > Hi Juergen > > > It's a good question what to do if you lose your SC or token. > > Basically, it has to be said that you should definitely have a > > backup of > > your key. And you have

Re: What are some threats against which OpenPGP smartcards are useful?

2020-01-08 Thread Franck Routier (perso)
Notice that some features, like the metal contact toggle on some yubikey can mitigate the problem of having an attacker with full local access. You then have to touch the key each time you want to use it, so illegitimate access would be noticed. Le 8 janvier 2020 13:51:58 GMT+01:00, Andrew

Re: What are some threats against which OpenPGP smartcards are useful?

2020-01-08 Thread Franck Routier (perso)
I think this can be configured: ykman openpgp touch enc on ykman openpgp touch sig on Franck Le 8 janvier 2020 18:35:20 GMT+01:00, Andrew Gallagher a écrit : >On 2020/01/08 17:29, Franck Routier (perso) wrote: >> Notice that some features, like the metal contact toggle on some >yu

Re: Smartcard not seen when reinserted

2017-10-04 Thread Franck Routier
Le 02/10/2017 à 16:37, Matthias Apitz a écrit : > El día lunes, octubre 02, 2017 a las 01:35:16p. m. +0200, Franck Routier > escribió: > >> My problem, in addition to the pin being cached "forever" (as long as >> the card is inserted, with no time limit), is tha

Re: Smartcard not seen when reinserted

2017-10-02 Thread Franck Routier
Le 01/10/2017 à 20:33, Matthias Apitz a écrit : > El día domingo, octubre 01, 2017 a las 06:37:46p. m. +0200, Franck Routier > escribió: > >> Hi, >> >> I have a problem where my OpenPGP smartcard is not recognized when I >> remove it from the reader and r

Smartcard not seen when reinserted

2017-10-01 Thread Franck Routier
Hi, I have a problem where my OpenPGP smartcard is not recognized when I remove it from the reader and reinsert it. Moreover I like to remove the card and reinsert it when needed, as when used for authentication with Poldi, I'm only asked for the PIN once, and then the PIN is cached (at the

Re: OT: Which smartphone would you use

2017-09-22 Thread Franck Routier
Hi, Jolla did an official port of SailfishOS to Sony Xperia X hardware. It's about one year old, but you still can get one in Europe for around 300€. Then you'll have to buy (49€) a Sailfish for Xperia license, and install it. The only point is the the image is not yet available for purchase,

Re: Poldi example usage of gpg-connect-agent fails

2017-09-08 Thread Franck Routier (perso)
he upstram doc writer seem to think I should use gpg-agent... So, anyone has an idea about why this fails: $ gpg-connect-agent "/datafile myfile" "SCD READKEY --advanced OPENPGP.3" /bye ERR 100663414 Identifiant incorrect Regards, Franck Kind regards Alex On 09/06

Poldi example usage of gpg-connect-agent fails

2017-09-06 Thread Franck Routier (perso)
Hi, I am trying to get into smartcard usage, and would want to allow Authentication on my system with an OpenPGP Card (FSFE Fellowship smartcard). As I understand it (I might be wrong), the right pam module is Poldi. According to the Texinfo page (info poldi), current version is 0.4, and