Yubico Forum
https://forum.yubico.com/

[QUESTION] how do I reset the admin pin retry counter?
https://forum.yubico.com/viewtopic.php?f=26&t=1281
Page 1 of 1

Author:  rynofinn [ Fri Jan 10, 2014 1:54 am ]
Post subject:  [QUESTION] how do I reset the admin pin retry counter?

I'm using a yubikey neo on Fedora 20 with OpenGPG. It works well except I've been unable to change the admin PIN from the default.
My retry counter looks like this:

Code:
PIN retry counter : 3 3 0


Does the zero in the above line indicate that my admin pin is now locked forever? Is it possible to reset the counter so I can try again to reset the admin PIN?

For reference, here is what happened on my last attempt to change the PIN and admin PIN:

Code:
$ gpg --card-edit

Application ID ...: D2760001240102000000000000010000
Version ..........: 2.0

<snip>

gpg/card> admin
Admin commands are allowed

gpg/card> passwd
gpg: OpenPGP card no. D2760001240102000000000000010000 detected

1 - change PIN
2 - unblock PIN
3 - change Admin PIN
4 - set the Reset Code
Q - quit

Your selection? 1
PIN changed.
1 - change PIN
2 - unblock PIN
3 - change Admin PIN
4 - set the Reset Code
Q - quit

Your selection? 3
gpg: sending command `SCD PASSWD' to agent failed: ec=6.131
Error changing the PIN: general error

Author:  Tom [ Fri Jan 10, 2014 12:09 pm ]
Post subject:  Re: [QUESTION] how do I reset the admin pin retry counter?

Hi, yeah the 0 means that it is blocked.

I would recommend you to install the latest version of the openpgp applet (which will overwrite everything and destroy everything you currently have in you openpgp applet)

get the applet from opensource.yubico.com

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/