<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=26&amp;t=2449" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2016-10-07T09:20:15+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=26&amp;t=2449</id>
<entry>
<author><name><![CDATA[gert45]]></name></author>
<updated>2016-10-07T09:20:15+01:00</updated>
<published>2016-10-07T09:20:15+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2449&amp;p=9074#p9074</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2449&amp;p=9074#p9074"/>
<title type="html"><![CDATA[Unable to transfer keys to card]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2449&amp;p=9074#p9074"><![CDATA[
<strong>UPDATE: <span style="text-decoration: underline">Query Canceled.</span></strong><br /><br />___<br />ORIGINAL QUERY FOLLOWS<br />___<br /><br />I have recently purchased my first Yubikey (neo) and I am trying to transfer a PGP key to it.  I have followed two different Yubico guides, both of which result in a failure to transfer the keys to the card.<br /><br />When I follow <a href="https://developers.yubico.com/PGP/Importing_keys.html" class="postlink">this</a> guide, here is the terminal output:<br /><em>(note I hid my name &amp; email address with **** to stop it being picked up by SPAM bots but I entered a valid address at the time.)</em><br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">gpg&gt; toggle<br /><br />sec  2048R/18B46FF0  created: 2016-10-06  expires: never     <br />ssb  2048R/A03FF247  created: 2016-10-06  expires: never     <br />ssb  2048R/0228F762  created: 2016-10-06  expires: never     <br />(1)  myname &lt;****&gt;<br /><br />gpg&gt; keytocard<br />Really move the primary key? (y/N) y<br />Signature key ....: 272B 33FB 85E6 C761 1BE1  05D5 FC93 402A B134 3CF6<br />Encryption key....: &#91;none&#93;<br />Authentication key: 033C BB29 D5FE 6B7A DD28  73C8 9A5A 6C1B 8FA3 FADA<br /><br />Please select where to store the key:<br />   (1) Signature key<br />   (3) Authentication key<br />Your selection? 1<br />Key does not match the card's capability.<br />Your selection? <br /></div><br /><br />I also followed another guide, <a href="https://www.yubico.com/2012/12/yubikey-neo-openpgp/" class="postlink">this</a>, and I received a related error about transferring the keys to the card.<br /><br />One thing I've noticed which may be relevant is a difference in my cardedit output compared to those I've seen in the guides.<br /><br />If I type <div class="codetitle"><b>Code:</b></div><div class="codecontent">gpg --card-edit</div> I get the following:<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">Application ID ...: D2760001240102000006048708320000<br />Version ..........: 2.0<br />Manufacturer .....: unknown<br />Serial number ....: 04870832<br />Name of cardholder: &#91;not set&#93;<br />Language prefs ...: &#91;not set&#93;<br />Sex ..............: unspecified<br />URL of public key : &#91;not set&#93;<br />Login data .......: &#91;not set&#93;<br />Signature PIN ....: forced<br />Key attributes ...: 0R 0R 0R<br />Max. PIN lengths .: 127 127 127<br />PIN retry counter : 3 3 3<br />Signature counter : 3<br />Signature key ....: 272B 33FB 85E6 C761 1BE1  05D5 FC93 402A B134 3CF6<br />      created ....: 2016-10-07 07:51:12<br />Encryption key....: &#91;none&#93;<br />Authentication key: 033C BB29 D5FE 6B7A DD28  73C8 9A5A 6C1B 8FA3 FADA<br />      created ....: 2016-10-07 07:51:29<br />General key info..: &#91;none&#93;<br /></div><br /><br />The piece of information that stands out to me is the key attributes <div class="codetitle"><b>Code:</b></div><div class="codecontent">0R 0R 0R</div>.  In the guides I've seen these attributes set to <div class="codetitle"><b>Code:</b></div><div class="codecontent">2048R 2048R 2048R</div>.  Is this relevant to my key transfer failure? If so, how can I solve it?<br /><br />Does anyone have other advice about how I can resolve this problem? I have followed the guides to the letter and unfortunately I end up with these key transfer errors.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4472">gert45</a> — Fri Oct 07, 2016 9:20 am</p><hr />
]]></content>
</entry>
</feed>