Windows, GnuPG, ssh, github, ...

2015-06-25 Thread Marko Božiković
Hi all, Apologies for a long post :) I haven't used gpg in years and recently I've picked it up with renewed interest for many different reasons. My initial goal would be to use gpg for ssh and github authentication (currently covered by ssh keyfiles and putty pageant). The intermediate goal wou

Re: Windows, GnuPG, ssh, github, ...

2015-06-26 Thread Marko Božiković
On 26/06/2015 02:32, NIIBE Yutaka wrote: > > Please correct me if I'm wrong, I am not a user of Gpg4win. > And... since I'm promoting use of card/token, my major use case is > card/token. > > In GnuPG 2.0.x, yes, the steps are required. Well, I admit it's > complicated. When done, private key m

Re: Windows, GnuPG, ssh, github, ...

2015-06-26 Thread Marko Božiković
On 26/06/2015 10:41, Werner Koch wrote: > On Thu, 25 Jun 2015 15:36, bo...@kset.org said: > >> interop. ssh-pageant provides a "bridge" that enables OpenSSH to talk to >> gpg-agent on Windows. > > This reminds me of an idea we had some time ago: If there is a real user > base for OpenSSH/Cygwin o

gpg-agent and putty/ssh agent bug

2015-06-28 Thread Marko Božiković
Hi all, I think I've found a bug with gpg-agent acting as a putty pageant. System details == Windows 7 x64 Ultimate UAC disabled logged in as a member of Administrators GnuPG details = a primary 4096 bit RSA key, with SC capabilities 3 2048 bit RSA keys - one for each: S,

Re: gpg-agent and putty/ssh agent bug

2015-06-28 Thread Marko Božiković
On 28/06/2015 23:56, Marko Božiković wrote: > Hi all, > > I think I've found a bug with gpg-agent acting as a putty pageant. > -snip- Aaand... The gpg version is 2.1.5 :) -- Marko ___ Gnupg-users mailing list Gnupg-use

Adding a subkey notation

2015-06-29 Thread Marko Božiković
Hi, I've looked for a way to add some sort of comments on subkeys - I'd like to have multiple authentication subkeys and easily distinguish among them. >From what I've read, notations seem to be the way to go, but I was unable to find a way to set them on already existing subkeys... In general,

Re: gpg-agent and putty/ssh agent bug

2015-06-30 Thread Marko Božiković
On 30/06/2015 13:38, Werner Koch wrote: > On Mon, 29 Jun 2015 00:56, bo...@kset.org said: > >> I have attached gpg-agent's debug log (gpg-agent.log) > > Can you please add > > --8<---cut here---start->8--- > verbose > verbose > --8<---cut here-

Re: gpg-agent and putty/ssh agent bug

2015-06-30 Thread Marko Božiković
On 30/06/2015 13:38, Werner Koch wrote: > On Mon, 29 Jun 2015 00:56, bo...@kset.org said: > >> I have attached gpg-agent's debug log (gpg-agent.log) > > Can you please add > > --8<---cut here---start->8--- > verbose > verbose > --8<---cut here-

Re: gpg-agent and putty/ssh agent bug

2015-07-08 Thread Marko Božiković
On 08/07/2015 09:10, NIIBE Yutaka wrote: > On 07/01/2015 05:07 AM, Marko Božiković wrote: >> Here we go... > [...] >> 2015-06-30 20:28:26 gpg-agent[8912] DBG: chan_016C <- ERR 100663404 Card >> error >> 2015-06-30 20:28:26 gpg-agent[8912] no authentication ke

Re: gpg-agent and putty/ssh agent bug

2015-07-09 Thread Marko Božiković
On 09/07/2015 00:59, NIIBE Yutaka wrote: > Sorry, my understanding of private key retrieval was wrong. > > On 07/08/2015 05:51 PM, Marko Božiković wrote: >> Maybe gpg-agent thinks I am using a smartcard on the first try and then just >> gives up when it doesn't find on

Re: Optimal setup for corporate keys

2015-07-20 Thread Marko Božiković
On 18/07/2015 17:58, F Rafi wrote: > > We exchange sensitive files with multiple corporate partners and would like to > set our keys up so that a single private key compromise does not require > generating new keys for all partners. > > 1) Should we generate separate pub / priv key pairs for all

Re: Optimal setup for corporate keys

2015-07-20 Thread Marko Božiković
On 18/07/2015 17:58, F Rafi wrote: > > We exchange sensitive files with multiple corporate partners and would like to > set our keys up so that a single private key compromise does not require > generating new keys for all partners. > > 1) Should we generate separate pub / priv key pairs for all

gpg 2.1.6 toggle doesn't

2015-07-23 Thread Marko Božiković
Hi all, I've just noticed that the 'toggle' command in gpg 2.1.5/6 on Windows doesn't switch key display. It still seems to switch the keys, since I moved my authentication private key to a smartcard successfully. Thank you, -- Marko ___ Gnupg-users

Re: gpg 2.1.6 toggle doesn't

2015-07-27 Thread Marko Božiković
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 25/07/2015 13:26, MFPA wrote: > Hi > > > On Thursday 23 July 2015 at 3:30:27 PM, in , > Marko Božikovic wrote: > > >> Hi all, > >> I've just noticed that the 'toggle' command in gpg 2.1.5/6 on Windows >> doesn't switch key display. It still s

Re: gpg 2.1.6 toggle doesn't

2015-07-27 Thread Marko Božiković
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 27/07/2015 10:14, Kristian Fiskerstrand wrote: > On 07/27/2015 11:03 AM, Kristian Fiskerstrand wrote: >> On 07/27/2015 10:48 AM, Marko Božiković wrote: >>> On 25/07/2015 13:26, MFPA wrote: >>>> Hi > > >

Re: gpg 2.1.6 toggle doesn't

2015-07-27 Thread Marko Božiković
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 27/07/2015 14:31, MFPA wrote: > Hi > > > On Monday 27 July 2015 at 11:46:09 AM, in > , Marko Božikovic wrote: > > >> I know that, and I'm using 2.1 exclusively... Still, it would be nice >> to be able to see the state of private keys (e.g. pr

Re: gpg 2.1.6 toggle doesn't

2015-07-28 Thread Marko Božiković
On 28/07/2015 14:34, Werner Koch wrote: > On Mon, 27 Jul 2015 12:46, bo...@kset.org said: > >> I know that, and I'm using 2.1 exclusively... Still, it would be nice to be >> able to see the state of private keys (e.g. primary key not present in the >> keyring, private keys are on the card, etc) wh

Re: gpg 2.1.6 toggle doesn't

2015-07-29 Thread Marko Božiković
On 29/07/2015 08:57, Werner Koch wrote: > On Tue, 28 Jul 2015 18:27, w...@gnupg.org said: > >> Right. I'll check whether this can be done easily. > > Okay, with commit 8b2b988 it does now look this way: > > sec rsa1024/53B620D01CE0C630 > created: 2006-01-01 expired: 2011-06-30 usage: SC

Re: Single GPG key and multiple yubikeys

2016-02-26 Thread Marko Božiković
On 25/02/2016 14:58, Richard Genthner wrote: > Yeah, what I'm hoping to do is be able to carry my card with me and jump on a > terminal while traveling and sign and login to things. Maybe keep two separate gpg home dirs, one for each yubikey? -- Marko ICQ: 5990814 I'm not under the alkafluence

Extending expiration date and SSH

2017-09-18 Thread Marko Božiković
Hi all, I use my authentication GPG key for SSHing into different machines. My GPG keys are stored on a Yubikey and I use gpg-agent to interface with the Yubikey and use the keys for SSH authentication. My GPG keys have expired and while that doesn't have any effect on SSH authentication, I'd sti

Yubikeys and GnuPG 2.2/2.3

2022-01-07 Thread Marko Božiković via Gnupg-users
BG: chan_0x0308 <- RESTART 2022-01-07 15:48:46 scdaemon[15680] DBG: chan_0x0308 -> OK If I add "psc-shared" option to scdaemon.conf and use Yubikey 5, gpg --card-status works every time, but I still get "no supported card application found: Card error" for Yubikey NEO. Is there any way to get Yubikey NEO working with GnuPG 2.3? Thank you, -- Marko Božiković -- Marko Božiković ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Yubikeys and GnuPG 2.2/2.3

2022-01-07 Thread Marko Božiković via Gnupg-users
BG: chan_0x0308 <- RESTART 2022-01-07 15:48:46 scdaemon[15680] DBG: chan_0x0308 -> OK If I add "psc-shared" option to scdaemon.conf and use Yubikey 5, gpg --card-status works every time, but I still get "no supported card application found: Card error" for Yubikey NEO. Is there any way to get Yubikey NEO working with GnuPG 2.3? Thank you, -- Marko Božiković ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: Yubikeys and GnuPG 2.2/2.3

2022-01-10 Thread Marko Božiković via Gnupg-users
On 10/01/2022 14:05, Werner Koch wrote: > On Fri, 7 Jan 2022 16:23, Marko Božiković said: > >> My scdaemon.conf has a single line: >> >> card-timeout 1 > > Please remove this at least for testing. > >> log-file >> debug-level basic >>

Re: Yubikeys and GnuPG 2.2/2.3

2023-02-10 Thread Marko Božiković via Gnupg-users
6 on the first response, but my 2.4 log shows only 6D00 responses (as did 2.3 logs). Kind regards, -- Marko Božiković 2023-02-10 10:50:41 scdaemon[4580] listening on socket 'F:\\Users\\bozho\\AppData\\Local\\gnupg\\d.3b7nddgeibkoou7f\\S.scdaemon' 2023-02-10 10:50:41 scdaemon[4580] h