Re: gpg-agent does not authenticate ssh connections

2015-02-19 Thread Rainer Keller
to move the key over. But unfortunately it does not work out ouf the box afterwards. gpg --card-status Application ID ...: Version ..: 2.0 Manufacturer .: ZeitControl Serial number : Name of cardholder: Rainer Keller Language prefs ...: de Sex ..: male URL of public

Re: gpg-agent does not authenticate ssh connections

2015-02-20 Thread Rainer Keller
Hi, thanks very much for your help, it works now. > It is not possible for OpenPGP card to have user's PIN with length of > less than 6. Your user's PIN would be the factory default still. You were right, my PIN had a length of 5 and was still set to factory default. After changing it all proble

How to reset the PIN counter

2015-02-07 Thread Rainer Keller
gpg --card-edit Application ID ...: D276 Version ..: 2.0 Manufacturer .....: ZeitControl Name of cardholder: Rainer Keller Language prefs ...: de Sex ..: male URL of public key : [not set] Login data ...: [not set] Signature PIN : forced Key attributes ...: 2048R 2048R 40

Re: How to reset the PIN counter

2015-02-07 Thread Rainer Keller
> I save the reset code block to a text file ("reset.txt") and then run " > gpg-connect-agent < reset.txt". Remove and reinsert the card and it should > be back to factory defaults. Unfortunatly this seemed to brick the card. "gpg: OpenPGP card not available: Not supported" Gnupg does not detect th

Re: How to reset the PIN counter

2015-02-08 Thread Rainer Keller
> What version was your card? It should work fine on a 2.0 smart card, > but, it's by design made to brick 1.X cards. It should be a 2.0 card. At least I bought is as such. > Also, if it was a 2.0 smart card, what key was it? What do you mean with "key"? I had a 4096bit authentication key on the c

Re: How to reset the PIN counter

2015-02-08 Thread Rainer Keller
> This gpg-connect-agent script ought to get your card back on its feet. Thanks very much. It worked and my card seems to operate again. Just out of curiosity is there a way to reset the PIN user counter without resetting the card? ___ Gnupg-users mai

gpg-agent does not authenticate ssh connections

2015-02-08 Thread Rainer Keller
.0 Manufacturer .: ZeitControl Serial number ....: XXX Name of cardholder: Rainer Keller Language prefs ...: de Sex ..: male URL of public key : [not set] Login data ...: [not set] Signature PIN : forced Key attributes ...: 2048R 2048R 4096R Max. PIN lengths .: 32 32 32 PIN re

Re: gpg-agent does not authenticate ssh connections

2015-02-16 Thread Rainer Keller
> According to the error message gpg-agent is unable to sign using the card: > > ssh user@server > > Agent admitted failure to sign using the key. > > Permission denied (publickey,keyboard-interactive). I had a look on the card with pksc15-tool (removed irrelevant parts): PKCS#15 Card [OpenPGP C