Andrew Gallagher <> wrote:
    > The yubikey performs cryptography on the device, but does have a small
    > amount of flash memory to store the private key material. The yubikey
    > does not provide any method to copy the private key material back off
    > that storage, it can only be overwritten or used by the yubikey’s own
    > processor.

So I can generate the key on laptop, copy it to multiple yubikey, and do the
crypto on the device, and the yubikey won't let the private key out again.
Once I destroy the copy on my laptop, them I'm good.

Attachment: signature.asc
Description: PGP signature

Gnupg-users mailing list

Reply via email to