<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=26&amp;t=1967" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2015-08-19T10:32:03+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=26&amp;t=1967</id>
<entry>
<author><name><![CDATA[zviratko]]></name></author>
<updated>2015-08-19T10:32:03+01:00</updated>
<published>2015-08-19T10:32:03+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7703#p7703</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7703#p7703"/>
<title type="html"><![CDATA[Re: Can't setup NEO to use SSH/GPG]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7703#p7703"><![CDATA[
Do you use gpgtools.org packages? If not then you probably should <img src="https://forum.yubico.com/images/smilies/icon_e_smile.gif" alt=":-)" title="Smile" /> Install, reboot, all should work <br /><br />I also suggest you reset the applet before tryting again:<br /><br /><!-- m --><a class="postlink" href="https://developers.yubico.com/ykneo-openpgp/ResetApplet.html">https://developers.yubico.com/ykneo-ope ... pplet.html</a><!-- m --><br /><br />P.S. if you have PIV tokend (or OpenSC tokend) installed then it will not work (randomly) because tokend locks the card completely. You need to disable tokend if you want to use openpgp.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3463">zviratko</a> — Wed Aug 19, 2015 10:32 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[smalldoorman]]></name></author>
<updated>2015-07-20T00:22:28+01:00</updated>
<published>2015-07-20T00:22:28+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7611#p7611</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7611#p7611"/>
<title type="html"><![CDATA[Can't setup NEO to use SSH/GPG]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1967&amp;p=7611#p7611"><![CDATA[
I'm in a bind and could use some help.<br /><br />Im on a Mac Pro using a Yubikey NEO. I was hoping to use the NEO as my 2 factor Auth and SSH Key.<br /><br />I followed a bunch of online documents on how to get this going and nothing has worked. I decided try and start from scratch but when it comes to generating a new Key Im hitting errors. All guidance would be appreciated.<br /><br />Environment:<br /><div class="quotetitle"><b>Quote:</b></div><div class="quotecontent"><br />gpg --version                                            2 <br />gpg (GnuPG) 1.4.19<br />Copyright (C) 2015 Free Software Foundation, Inc.<br />License GPLv3+: GNU GPL version 3 or later &lt;http://gnu.org/licenses/gpl.html&gt;<br />This is free software: you are free to change and redistribute it.<br />There is NO WARRANTY, to the extent permitted by law.<br /><br />Home: ~/.gnupg<br />Supported algorithms:<br />Pubkey: RSA, RSA-E, RSA-S, ELG-E, DSA<br />Cipher: IDEA, 3DES, CAST5, BLOWFISH, AES, AES192, AES256, TWOFISH,<br />        CAMELLIA128, CAMELLIA192, CAMELLIA256<br />Hash: MD5, SHA1, RIPEMD160, SHA256, SHA384, SHA512, SHA224<br />Compression: Uncompressed, ZIP, ZLIB, BZIP2<br /></div><br /><br /><br /><br />What I'm trying to do:<br /><div class="quotetitle"><b>Quote:</b></div><div class="quotecontent"><br /> nema.darban  ~  gpg --card-edit<br /><br />gpg: detected reader `Yubico Yubikey NEO OTP+U2F+CCID'<br />Application ID ...: D2760001240102000006036335900000<br />Version ..........: 2.0<br />Manufacturer .....: unknown<br />Serial number ....: 03633590<br />Name of cardholder: Nema Darban<br />Language prefs ...: en<br />Sex ..............: male<br />URL of public key : [not set]<br />Login data .......: [not set]<br />Signature PIN ....: not forced<br />Key attributes ...: 2048R 2048R 2048R<br />Max. PIN lengths .: 127 127 127<br />PIN retry counter : 3 3 3<br />Signature counter : 3<br />Signature key ....: E1C4 7B95 42D2 84DC F37F  C5B7 2DD9 A6FC 64C9 9ABE<br />      created ....: 2015-07-19 23:14:53<br />Encryption key....: [none]<br />Authentication key: ACAB 53B7 7C2D 917F 305E  C062 7365 F926 ECFE 1364<br />      created ....: 2015-07-19 23:14:53<br />General key info..: [none]<br /><br />gpg/card&gt; admin<br />Admin commands are allowed<br /><br />gpg/card&gt; generate<br />Make off-card backup of encryption key? (Y/n) y<br />                                               <br />gpg: NOTE: keys are already stored on the card!<br /><br />Replace existing keys? (y/N) y<br />gpg: gpg-agent is not available in this session<br /><br />Please enter the PIN<br />Please specify how long the key should be valid.<br />         0 = key does not expire<br />      &lt;n&gt;  = key expires in n days<br />      &lt;n&gt;w = key expires in n weeks<br />      &lt;n&gt;m = key expires in n months<br />      &lt;n&gt;y = key expires in n years<br />Key is valid for? (0) 2y<br />Key expires at Tue Jul 18 16:16:12 2017 PDT<br />Is this correct? (y/N) y<br />                        <br />You need a user ID to identify your key; the software constructs the user ID<br />from the Real Name, Comment and Email Address in this form:<br />    &quot;Heinrich Heine (Der Dichter) &lt;heinrichh@duesseldorf.de&gt;&quot;<br /><br />Real name: Nema Darban<br />Email address:        <br />Comment:       <br />You selected this USER-ID:<br />    &quot;Nema Darban&quot;<br /><br />Change (N)ame, (C)omment, (E)mail or (O)kay/(Q)uit? o<br />gpg: existing key will be replaced                   <br />gpg: 3 Admin PIN attempts remaining before card is permanently locked<br /><br />Please enter the Admin PIN<br />gpg: please wait while key is being generated ...<br />gpg: key generation completed (18 seconds)<br />gpg: signatures created so far: 0<br />gpg: existing key will be replaced<br />gpg: please wait while key is being generated ...<br />gpg: key generation completed (5 seconds)<br />gpg: signatures created so far: 1<br />gpg: signatures created so far: 2<br />You need a Passphrase to protect your secret key.<br /><br />+++++              <br />.....+++++<br />gpg: writing new key<br />gpg: storing key onto card failed: not supported<br />Key generation failed: not supported<br /><br />gpg/card&gt;<br /></div><br /><br /><br /><br /><br />Neither myself nor my coworker have been able to setup these NEOs so that we can hold our SSH keys on them and validate against them. I've only been able to use it to Authenticate against my Gmail account and LastPass.<br /><br /><br />Cheers!<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3828">smalldoorman</a> — Mon Jul 20, 2015 12:22 am</p><hr />
]]></content>
</entry>
</feed>