Hacking off-card backup to be on-disk key (was: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID")

2017-10-31 Thread Peter Lebbing
Hi Ralf, On 25/10/17 23:29, Ralf wrote: > I was hoping for something simple and I think eventually this should be > simple; nevertheless I would make use of such a workaround / would be > thankful for such an example :) I fiddled around with a test card. Prepare for a wall of text. I created a

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread Ralf
Hi Peter, looking for difficult workarounds :-). If I'm wrong about that, just say so and I'll give an example. I'll whip out a blank OpenPGP card, create a test key and do it, posting the results on the list. I was hoping for something simple and I think eventually this should be simple;

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread Peter Lebbing
On 25/10/17 16:15, Ralf wrote: > I was hoping for a simpler workaround to make GnuPG import the key. There is a pretty difficult workaround, using gpgsplit and standard Linux command-line tools. However, I get the sense you're not really looking for difficult workarounds :-). If I'm wrong about

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread Ralf
Hi, If you want to know the detail, this means that the encryption key is generated on the host and it is imported to the card. Generating on card and extracting is not possible. I was wondering about that, because on of the reasons that convinced me to buy a Nitrokey was the "the key

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread Ralf
There is no tool yet to do this. Let's track this at https://dev.gnupg.org/T3466 thanks, good to know I wasn't missing something obvious here. An option for "--import" sounds great, that was what I was looking for intuitively, something that would allow me to specify the user id / the hash

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread NIIBE Yutaka
Hello, Ralf wrote: > I generated keys on a Nitrokey and have chosen the option to make an > off-card backup of the encryption key: > > gpg: NOTE: backup of card key saved to > `/home/archi/.gnupg/sk_26D728A8F09033F1.gpg' If you want to know the detail, this means that

Re: Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-25 Thread Werner Koch
On Tue, 24 Oct 2017 21:23, sourcel...@mailbox.org said: > but I had hoped that it is possible to use the backup key without a > card. Any hints here, is this possible? There is no tool yet to do this. Let's track this at https://dev.gnupg.org/T3466 Salam-Shalom, Werner -- Die Gedanken

Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-24 Thread Ralf
Hi, I generated keys on a Nitrokey and have chosen the option to make an off-card backup of the encryption key: gpg: NOTE: backup of card key saved to `/home/archi/.gnupg/sk_26D728A8F09033F1.gpg' as described in: https://gnupg.org/howtos/card-howto/en/smartcard-howto-single.html#id2506175

Importing an off-card backup of the encryption key of a Nitrokey fails with "no user ID"

2017-10-24 Thread sourcelime
Hi, I generated keys on a Nitrokey and have chosen the option to make an off-card backup of the encryption key: gpg: NOTE: backup of card key saved to `/home/archi/.gnupg/sk_26D728A8F09033F1.gpg' as described in: https://gnupg.org/howtos/card-howto/en/smartcard-howto-single.html#id2506175