<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=35&amp;t=2416" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2016-09-12T03:06:20+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=35&amp;t=2416</id>
<entry>
<author><name><![CDATA[linsam]]></name></author>
<updated>2016-09-12T03:06:20+01:00</updated>
<published>2016-09-12T03:06:20+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8985#p8985</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8985#p8985"/>
<title type="html"><![CDATA[Re: [QUESTION] - hardware error on decryption]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8985#p8985"><![CDATA[
I just tried putting the private key onto a different Yubikey by restoring from the backup (a Yubikey4-nano this time. note: not the one I messed up in another thread) and am seeing the same issue with that unit. Every file I try to decrypt a file that was encrypted with this pgp key works except for this one file that fails to decrypt with either Yubikey.<br /><br />However, I'm also now noticing that attempting to decrypt this one file results in the Yubikey not blinking prior to reporting the error, whereas the other files cause the Yubikey to blink. I <em>think</em> this means that gpg2 is reporting the error prior to even accessing the Yubikey, but I don't know what actually causes the blinking.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4452">linsam</a> — Mon Sep 12, 2016 3:06 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[linsam]]></name></author>
<updated>2016-09-07T05:37:44+01:00</updated>
<published>2016-09-07T05:37:44+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8972#p8972</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8972#p8972"/>
<title type="html"><![CDATA[[QUESTION] - hardware error on decryption]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2416&amp;p=8972#p8972"><![CDATA[
I'm using pass to store passwords, encrypted with my GPG key. Today I went to retrieve several passwords and one surprised me by not unlocking (the others decrypt just fine).<br /><br />After it failed, I examined the file itself in the storage. Using simply 'gpg2 -d thefile.gpg', I am prompted for my pin, then my Yubikey4 requests a touch (blinks until I touch it), then I get information about they keys the file was encrypted with (mine and a coworker), followed by this:<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">gpg: public key decryption failed: Hardware problem<br />gpg: decryption failed: No secret key<br /></div><br /><br />I found this quite odd, especially since the other files in the storage decrypt just fine with this Yubikey4.<br /><br />I tried a few things to get more information; I recovered the original private key from backup, not on the Yubikey4, and was able to decrypt the file with that. I re-encrypted the data with the same encryption keys, and the new file is able to be decrypted with both the yubikey4 and the software key. The only difference I can figure is that the Yubikey4 doesn't like the session key. Unfortunately, I can't figure out how to force gpg2 to use a particular session key for encryption; the --override-session-key flag seems to only affect decryption.<br /><br />I'm open to other suggestions on how to debug this. I'm hoping somehow its a bug in gpg2 and not in the Yubikey4 itself.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4452">linsam</a> — Wed Sep 07, 2016 5:37 am</p><hr />
]]></content>
</entry>
</feed>