Yubico Forum
https://forum.yubico.com/

Yubikey neo openpgp support
https://forum.yubico.com/viewtopic.php?f=26&t=1100
Page 1 of 1

Author:  TonyHoyle [ Sat Jun 29, 2013 2:46 am ]
Post subject:  Yubikey neo openpgp support

Hi,

I'm having some trouble with the openpgp support. Firstly, it doesn't seem to work on osx at all..

eric:~ tmh$ gpg --verbose --card-status
gpg: OpenPGP card not available: Not supported

Is there some driver software required? I couldn't find any for download.

On Windows it definately seems to work..

C:\Users\tmh>gpg --verbose --card-status
Application ID ...: D2760001240102000000000000010000
Version ..........: 2.0
Manufacturer .....: test card
Serial number ....: 00000001
Name of cardholder: [not set]
Language prefs ...: [not set]
Sex ..............: unspecified
URL of public key : [not set]
Login data .......: [not set]
Signature PIN ....: forced
Key attributes ...: 2048R 2048R 2048R
Max. PIN lengths .: 0 0 0
PIN retry counter : 0 0 0
Signature counter : 0
Signature key ....: [none]
Encryption key....: [none]
Authentication key: [none]
General key info..: [none]

Except I am unable to generate a key..

gpg/card> generate
gpg: error getting current key info: General error

This makes it a bit useless!

I'm sure I'm missing a step.. what have I done wrong?

Author:  TonyHoyle [ Sat Jun 29, 2013 3:33 am ]
Post subject:  Re: Yubikey neo openpgp support

Hmm.. I switched my box off for a few minutes and when I came back it worked? Wierd. A reboot wasn't enough to fix it.. Does the key need time to relax or something? :p

On the plus side (so it's not all negative) the NFC stuff is fantastic.. just swipe the dongle over the back of my phone and lastpass pops up ready and logged in.

Also, regarding importing pgp keys.. looking at the code there is some support for that but it's disabled - I presume you've tried it and it doesn't work.. Might have a go if I get time.

Author:  Klas [ Mon Jul 01, 2013 8:23 am ]
Post subject:  Re: Yubikey neo openpgp support

Hello,

Great that you got it working on windows!

For the mac part it should be enough to edit ~/.gnupg/scdaemon.conf and add "pcsc-driver /System/Library/Frameworks/PCSC.framework/PCSC"

For import, yes, the support for key import (that's disabled) in the applet is for RSA-CRT keys (pre-computed to make operations more efficient) and the support in gnupg is only for plain RSA keys. But we'll be happy for any help we can receive in that area!

/klas

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/