Questions on code signing

2019-08-26 Thread muredanta via Gnupg-users
I've been working on a scheme for signing binary images that we ship out to various remote systems. The remote system expects the file to be both encrypted and signed, but there seem to be some corner cases: (1) If a file is signed but the signature is incorrect, 'gpg2 -d' returns a non-zero st

Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Stefan Claas via Gnupg-users
Wiktor Kwapisiewicz via Gnupg-users wrote: > W.r.t. NFC there is this minor detail: > https://lists.gnupg.org/pipermail/gnupg-users/2018-December/061375.html Interesting. Well, for important and very short messages one could additionally use the modern ElsieFour handcypher, by Prof. Kaminsky.,

Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Wiktor Kwapisiewicz via Gnupg-users
On 26.08.2019 19:37, Andrew Gallagher wrote: Tangentially related - I've seen docs recommending having your portable keychain have a subkey for signing, and that keychain to lack the master secret key entirely ( and putting that one in an undisclosed secure location), with a different passphra

Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Andrew Gallagher
> On 26 Aug 2019, at 18:17, Daniel Clery wrote: > > Tangentially related - I've seen docs recommending having your portable > keychain have a subkey for signing, and that keychain to lack the master > secret key entirely ( and putting that one in an undisclosed secure > location), with a diff

Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Daniel Clery
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Tangentially related - I've seen docs recommending having your portable keychain have a subkey for signing, and that keychain to lack the master secret key entirely ( and putting that one in an undisclosed secure location), with a different passphras

Re: Slightly OT - mobile OpenPGP usage

2019-08-26 Thread Michael Kesper
Hi Chris, On 25.08.19 21:22, Chris Narkiewicz via Gnupg-users wrote: > Shortly, I know only one combination that provides reasonable > use experience on mobile. > > Android + K-9 Mail + OpenKeychain + YubiKey with NFC. Do you know a good guide for setting this up? Best wishes Michael signatu