<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=26&amp;t=2070" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2015-10-27T22:59:08+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=26&amp;t=2070</id>
<entry>
<author><name><![CDATA[RBerg]]></name></author>
<updated>2015-10-27T22:59:08+01:00</updated>
<published>2015-10-27T22:59:08+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7933#p7933</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7933#p7933"/>
<title type="html"><![CDATA[Re: [Q] OpenPGP Public Key wont change/update with new Key..]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7933#p7933"><![CDATA[
*Update*<br /><br />I just went ahead and revoked the keys and started over again.<br /><br />Generating a new key, for Certify only and then 3 separate subkeys; 1 each for Encryption, Signing and Authentication, I was able to back them up to my offline storage and 'keytocard' them.<br /><br />I have tested these new keys and everything seems to be working.  Prior I was getting the 'Unusable Secret Key' error on doing ANY signing with the key on the Yubikey but these are now working as intended.<br /><br />Thanks for a great product!<br />~Richard<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3991">RBerg</a> — Tue Oct 27, 2015 10:59 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[RBerg]]></name></author>
<updated>2015-10-26T16:38:54+01:00</updated>
<published>2015-10-26T16:38:54+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7916#p7916</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7916#p7916"/>
<title type="html"><![CDATA[Re: OpenPGP Public Key wont change/update with new Key..]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7916#p7916"><![CDATA[
I have checked again and in fact, the key in the Public Info area of the key is actually the signature key ID of the Yubikey key.<br /><br />While this technically is *better* than using the old Public Key from the previous testing; I now have issues signing any files resulting in the error(s):<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">&gt;gpg -esa --default-key 9B5026D5 test.txt<br />gpg: no default secret key: Unusable secret key<br />gpg: test.txt: sign+encrypt failed: Unusable secret key<br /></div><br /><br />It seems I'm unable to sign anything with the Signing cert on the Yubikey.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3991">RBerg</a> — Mon Oct 26, 2015 4:38 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[RBerg]]></name></author>
<updated>2015-10-26T17:21:51+01:00</updated>
<published>2015-10-26T02:45:21+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7909#p7909</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7909#p7909"/>
<title type="html"><![CDATA[[Q] OpenPGP Public Key wont change/update with new Key..]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2070&amp;p=7909#p7909"><![CDATA[
Greetings!<br /><br />New Yubikey NEO owner here..<br /><br />So was testing a few things out using my new Yubikey and generated all 3 OpenPGP keys (E,S,A) off a GnuGPG base key.<br /><br />Everything went well but I messed up my keysize so I restarted without posting the key(s) to a keyserver.  <br /><br />After generating the base key offline I then created the 3 Yubikey key's and everything worked well however the old key ID didn't seem to update.  It's still in reference to the old key ID and no matter what URL I place in the Yubikey; it still tries to update the old key and never pulls in the new ID.<br /><br />Here is a snapshot of the key details:<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">Application ID ...: D2760001240102000006038127890000<br />Version ..........: 2.0<br />Manufacturer .....: Yubico<br />Serial number ....: &#91;REDCATED&#93;<br />Name of cardholder: Richard T. Berg<br />Language prefs ...: en<br />Sex ..............: male<br />URL of public key : http://keyserver.ubuntu.com/pks/lookup?op=get&amp;search=0x605501E49B5026D5<br />Login data .......: &#91;not set&#93;<br />Signature PIN ....: forced<br />Key attributes ...: 2048R 2048R 2048R<br />Max. PIN lengths .: 127 127 127<br />PIN retry counter : 3 3 3<br />Signature counter : 3<br />Signature key ....: &#91;REDACTED&#93;<br />      created ....: 2015-10-25 22:00:20<br />Encryption key....: &#91;REDACTED&#93;<br />      created ....: 2015-10-25 21:55:08<br />Authentication key: &#91;REDACTED&#93;<br />      created ....: 2015-10-25 22:01:12<br />General key info..:<br />pub  2048R/0x78F33417319EDF96 2015-10-25 Richard T. Berg &lt;rberg@neo.rr.com&gt;<br />sec#  3744R/0x605501E49B5026D5  created: 2015-10-25  expires: never<br />ssb&gt;  2048R/&#91;REDACTED&#93; created: 2015-10-25  expires: 2016-10-24<br />                      card-no: 0006 &#91;REDACTED&#93;<br />ssb&gt;  2048R/&#91;REDACTED&#93;  created: 2015-10-25  expires: 2016-10-24<br />                      card-no: 0006 &#91;REDACTED&#93;<br />ssb&gt;  2048R/&#91;REDACTED&#93;  created: 2015-10-25  expires: 2016-10-24<br />                      card-no: 0006 &#91;REDACTED&#93;<br /></div><br /><br />As you can see the public key ID should be 9B5026D5 however the public on the Yubikey is set to the old 319EDF96<br /><br />If I update the URL to a proper keyserver link to my new Key ID and issue a fetch, it comes back unchanged.  I've tried several dump URL's such as pastebin, my own webserver, everything and it still will NOT update the public key on the Yubikey to the one I generated second.<br /><br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">gpg/card&gt; fetch<br />gpg: requesting key 0x78F33417319EDF96 from http server keyserver.ubuntu.com<br />gpg: key 0x605501E49B5026D5: &quot;Richard T. Berg &lt;rberg@neo.rr.com&gt;&quot; not changed<br />gpg: Total number processed: 1<br />gpg:              unchanged: 1<br /></div><br /><br />What am I doing wrong here? <br />Help?  Sugguestions?<br /><br />Thanks!<br />~Richard<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=3991">RBerg</a> — Mon Oct 26, 2015 2:45 am</p><hr />
]]></content>
</entry>
</feed>