<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=26&amp;t=1637" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2014-12-02T19:29:20+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=26&amp;t=1637</id>
<entry>
<author><name><![CDATA[darco]]></name></author>
<updated>2014-12-02T19:27:51+01:00</updated>
<published>2014-12-02T19:27:51+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6431#p6431</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6431#p6431"/>
<title type="html"><![CDATA[Re: [question] Yubikey NEO capabilities]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6431#p6431"><![CDATA[
Thanks!<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3288">darco</a> — Tue Dec 02, 2014 7:27 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[hazza]]></name></author>
<updated>2014-12-02T02:59:35+01:00</updated>
<published>2014-12-02T02:59:35+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6427#p6427</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6427#p6427"/>
<title type="html"><![CDATA[Re: [question] Yubikey NEO capabilities]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6427#p6427"><![CDATA[
This has been elaborated on by Yubico staff <a href="http://forum.yubico.com/viewtopic.php?f=26&amp;t=1303" class="postlink">in this thread.</a><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3172">hazza</a> — Tue Dec 02, 2014 2:59 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[darco]]></name></author>
<updated>2014-12-02T19:29:20+01:00</updated>
<published>2014-12-01T21:47:55+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6421#p6421</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6421#p6421"/>
<title type="html"><![CDATA[[ANSWERED] Yubikey NEO capabilities]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1637&amp;p=6421#p6421"><![CDATA[
Just a bit curious... I did a &quot;list algorithms&quot; on my yubikey neo and got the following output:<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">$ opensc-tool --list-algorithms<br />Using reader with a card: Yubico Yubikey NEO OTP+U2F+CCID 00 00<br />Algorithm: rsa<br />Key length: 1024<br />Flags: onboard key generation padding ( none ) hashes ( )<br /><br />Algorithm: rsa<br />Key length: 2048<br />Flags: onboard key generation padding ( none ) hashes ( )<br /><br />Algorithm: rsa<br />Key length: 3072<br />Flags: onboard key generation padding ( none ) hashes ( )<br /><br />Algorithm: ec<br />Key length: 256<br />Flags: onboard key generation<br /><br />Algorithm: ec<br />Key length: 384<br />Flags: onboard key generation<br /><br /></div><br /><br />Does the Yubikey NEO really support 3072-bit RSA keys, and 384-bit EC keys? I don't see that capability exposed in the apps.<br /><br />Likewise, is the following list of supported pkcs11 mechanisms accurate?<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">$ pkcs11-tool --module /usr/lib/opensc-pkcs11.so --list-mechanisms<br />Using slot 1 with a present token (0x1)<br />Supported mechanisms:<br />  SHA-1, digest<br />  SHA256, digest<br />  SHA384, digest<br />  SHA512, digest<br />  MD5, digest<br />  RIPEMD160, digest<br />  ECDSA, keySize={256,384}, hw, sign, other flags=0x1800000<br />  ECDSA-SHA1, keySize={256,384}, hw, sign, other flags=0x1800000<br />  ECDSA-KEY-PAIR-GEN, keySize={256,384}, hw, generate_key_pair, other flags=0x1800000<br />  RSA-X-509, keySize={1024,3072}, hw, decrypt, sign, verify<br />  RSA-PKCS, keySize={1024,3072}, hw, decrypt, sign, verify<br />  SHA1-RSA-PKCS, keySize={1024,3072}, sign, verify<br />  SHA256-RSA-PKCS, keySize={1024,3072}, sign, verify<br />  MD5-RSA-PKCS, keySize={1024,3072}, sign, verify<br />  RIPEMD160-RSA-PKCS, keySize={1024,3072}, sign, verify<br />  RSA-PKCS-KEY-PAIR-GEN, keySize={1024,3072}, generate_key_pair<br /></div><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3288">darco</a> — Mon Dec 01, 2014 9:47 pm</p><hr />
]]></content>
</entry>
</feed>