Re: Teaching GnuPG to noobs

2015-06-18 Thread Faramir
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 El 17-06-2015 a las 11:15, Robert J. Hansen escribió: ... > The most common one I've found is not understanding the material as > well as they think. This tends to come through most in the > metaphors an instructor uses. For instance, I frequently

Re: gpg-agent unable to see yubikey until manually re-running `gpg --card-status`

2015-06-18 Thread NIIBE Yutaka
Hello, Thank you for more information. On 06/19/2015 06:57 AM, Lance R. Vick wrote: > Another example I just had happen: > > 1. start gpg-agent > 2. populate SSH_AUTH_SOCK > 3. ssh successfully > 4. remove yubikey > 5. insert yubikey > 6. attempt to ssh -> "Permission Denied (Publickey)" > 7. `g

Re: gpg-agent unable to see yubikey until manually re-running `gpg --card-status`

2015-06-18 Thread Lance R. Vick
Another example I just had happen: 1. start gpg-agent 2. populate SSH_AUTH_SOCK 3. ssh successfully 4. remove yubikey 5. insert yubikey 6. attempt to ssh -> "Permission Denied (Publickey)" 7. `gpg --card status` -> "no card present" 8. `gpg --card status` -> "no card present" 9. `gpg --card status

gpg2 --card-status does not create key stubs

2015-06-18 Thread d...@ucore.info
Hi, It used to work just fine, and on a new machine, after importing publikey subkeys, `gpg --card-status` would just create secure stubs so that the gpg smartcard can be used. Now it is not happening. How to debug what is the issue? Regards, -- Dawid Ciężarkiewicz _

two-lock mailbox analogy

2015-06-18 Thread listo factor
FWIW, I use the following analogy: I have a secure steel mailbox, located on a street corner - just like the Post Office does - that I visit occasionally to collect the mail that my correspondents have deposited there. The only difference between my box and those owned and operated by the Post Of

Re: Teaching GnuPG to noobs

2015-06-18 Thread Chuck Peters
Stephan Beck said: > Am 16.06.2015 um 15:50 schrieb A.T. Leibson: > > > Lastly, what's your favorite noob-friendly guide, and why? > > I think that the guide available at (1) > > (1) https://emailselfdefense.fsf.org/en/ Potential instructors: please explain subkeys and how it might be best to

Re: gpg-agent unable to see yubikey until manually re-running `gpg --card-status`

2015-06-18 Thread Lance R. Vick
I only ever tried this on 2.0.0 as far as older versions go, and that was similarly broken. I didn't bother documenting as I saw there were some smartcard updates in 2.1.4 so I upgraded. Just now had another variation (on 2.1.4): 1. start gpg-agent 2. populate SSH_AUTH_SOCK 3. ssh successfully 4.

Re: Teaching GnuPG to noobs

2015-06-18 Thread Stephan Beck
Hi, Am 16.06.2015 um 15:50 schrieb A.T. Leibson: > Lastly, what's your favorite noob-friendly guide, and why? I think that the guide available at (1) (1) https://emailselfdefense.fsf.org/en/ is the most suitable for noobs (as far as I know), because it's straightforward and short. I would no

Re: gpg-agent unable to see yubikey until manually re-running `gpg --card-status`

2015-06-18 Thread Werner Koch
On Wed, 17 Jun 2015 18:17, si...@josefsson.org said: > I've seen the error many times, also when I used a g10code smartcard, > but lately things have been smooth. I think there have been a couple of Old versions of GnuPG assumed that there is a card reader which can tell you whether a card has b

Re: Teaching GnuPG to noobs

2015-06-18 Thread Werner Koch
On Thu, 18 Jun 2015 01:24, br...@minton.name said: > I've never heard of a spring lock, but I looked it up. It is a lock that > anyone can momentarily be unlocked by a key, but when it is not being held > open, shuts and locks itself. According to my translator the German term "Schappschloss" mean