<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=35&amp;t=2724" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2017-09-30T21:12:03+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=35&amp;t=2724</id>
<entry>
<author><name><![CDATA[Morthawt]]></name></author>
<updated>2017-09-30T21:12:03+01:00</updated>
<published>2017-09-30T21:12:03+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9800#p9800</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9800#p9800"/>
<title type="html"><![CDATA[Re: master key and subkey for slot2]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9800#p9800"><![CDATA[
That, I do not know. (this is my old name I got control back over). If it is not too complicated I would like to use my Yubikey to login to my linux VPS server via SSH using Putty. But from what I have come across, I think it is too much messing around for me. Unless I am wrong.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=1739">Morthawt</a> — Sat Sep 30, 2017 9:12 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[valgenova]]></name></author>
<updated>2017-09-30T03:30:42+01:00</updated>
<published>2017-09-30T03:30:42+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9797#p9797</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9797#p9797"/>
<title type="html"><![CDATA[Re: master key and subkey for slot2]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9797#p9797"><![CDATA[
Hi,<br /><br />Thank you for the reply, I have stored the master and subkey in the yubikey.<br />I have this information in my yubikey when I run the --card-status<br /><br /><div class="quotetitle"><b>Quote:</b></div><div class="quotecontent"><br />Authentication key: 1234 567Y 098U GH99 OM76  XXXX XXXX XXX1 XXX2 XXX3<br />      created ....: 2017-09-28 10:33:58<br />General key info..: sub  rsa4096/123456789 2017-09-28 valgenova (test) &lt;myaddres@mydomain.com&gt;<br />sec   rsa4096/123456UI  created: 2017-09-28  expires: 2019-09-28<br />ssb&gt;  rsa4096/098765YU  created: 2017-09-28  expires: 2019-09-28<br /></div><br /><br />I also have generated my rsa_id.pub, with the output of the cardno in the id_rsa.pub,<br />and uploaded it in the remote machine where I will be connecting to, when I uploaded the id_rsa.pub <br />I change the cardno to myemail address as said in the forum. I then connect to that remote machine.<br />I was able to connect with 2 steps authentication, as Yubikey for root login as the first authentication,<br />and then ssh root login as the secondary authentication.<br /><br />My question is on the authentication, how can I make the Yubikey for root login the only step to login on the remote server? with my id_rsa.pub already uploaded on the remote machine .<br /><br />Thank you in advance<br /><br />valgenova<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4877">valgenova</a> — Sat Sep 30, 2017 3:30 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[techwg]]></name></author>
<updated>2017-09-28T12:07:50+01:00</updated>
<published>2017-09-28T12:07:50+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9783#p9783</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9783#p9783"/>
<title type="html"><![CDATA[Re: master key and subkey for slot2]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9783#p9783"><![CDATA[
The OpenPGP system does not use slots. It uses the smartcard feature. I have Yubico OTP in slot 1, challenge-response in slot 2, my OpenPGP key, all the certificates listed on the PIV manager that are possible to add and I have added about 6 of the, I think they are OATH? The ones where normally I would open up my phone's Google authenticator app to get the 6 digit code to do the 2-factor for a service that I am logging in. All that is on a single Yubikey. Although I know how to use the OpenPGP, I added all the certificates that the PIV manager can make and I have not a single clue on how to make use of them haha.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4910">techwg</a> — Thu Sep 28, 2017 12:07 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[valgenova]]></name></author>
<updated>2017-09-28T10:05:22+01:00</updated>
<published>2017-09-28T10:05:22+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9782#p9782</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9782#p9782"/>
<title type="html"><![CDATA[master key and subkey for slot2]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2724&amp;p=9782#p9782"><![CDATA[
Hi,<br /><br />Im trying to configure my yubikey 4 with a new master key and subkey, so that I can use the subkey for ssh authentication.  Based on the docs, I need to run the command gpg --expert --gen-key. But first I need to know<br />what configuration slots Im setting up. The gpg2 --card-status doesnt say which configuration slot im setting up.<br />The personalization tool doesnt show settings for sub-key.<br /><br /><br />My question is, how do I know which configuration slot Im setting up, or is there a command to specifically say<br />that im configuring up slot2. <br /><br />Hope you can help me.<br /><br />Thanks in advance<br />valgenova<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4877">valgenova</a> — Thu Sep 28, 2017 10:05 am</p><hr />
]]></content>
</entry>
</feed>