<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=35&amp;t=2205" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2016-02-09T09:47:39+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=35&amp;t=2205</id>
<entry>
<author><name><![CDATA[81971c34]]></name></author>
<updated>2016-02-09T09:47:39+01:00</updated>
<published>2016-02-09T09:47:39+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8287#p8287</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8287#p8287"/>
<title type="html"><![CDATA[Re: [RESOLVED] Yubikey 4 GPG key size - can't use 4096-bit k]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8287#p8287"><![CDATA[
Works fine with GPG ver. 2.1.11.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4182">81971c34</a> — Tue Feb 09, 2016 9:47 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[ryukafalz]]></name></author>
<updated>2016-02-06T18:21:18+01:00</updated>
<published>2016-02-06T18:21:18+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8277#p8277</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8277#p8277"/>
<title type="html"><![CDATA[[RESOLVED] Yubikey 4 GPG key size - can't use 4096-bit keys?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2205&amp;p=8277#p8277"><![CDATA[
Hey, so I just got my new Yubikey 4, and from what I've read it's supposed to support 4096-bit keys. However, gpg2 --card-status reports this:<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">Key attributes ...: rsa2048 rsa2048 rsa2048</div><br /><br />It seems like this is just a default value, and the card can be reconfigured to use 4096-bit keys, but there doesn't seem to be an option to do so directly.<br /><br />That said, attempting to generate a key on the card asks me for a key length, so I figured I might be able to do this to configure the card, then replace the generated keys with my own keys. But no luck:<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">What keysize do you want for the Signature key? (2048) 4096<br />The card will now be re-configured to generate a key of 4096 bits<br />Note: There is no guarantee that the card supports the requested size.<br />      If the key generation does not succeed, please check the<br />      documentation of your card to see what sizes are allowed.<br />gpg: error changing size of key 1 to 4096 bits: Invalid data</div><br /><br />Is there something I'm missing here? The Yubikey 4 does support 4096-bit PGP keys, right?<br /><br />EDIT: Never mind, this appears to be related to my GPG version, as mentioned here - I am in fact using 2.1.9: <!-- m --><a class="postlink" href="http://www.gossamer-threads.com/lists/gnupg/users/73716">http://www.gossamer-threads.com/lists/gnupg/users/73716</a><!-- m --><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4185">ryukafalz</a> — Sat Feb 06, 2016 6:21 pm</p><hr />
]]></content>
</entry>
</feed>