Yubico Forum
https://forum.yubico.com/

Backing up private key? (PGP)
https://forum.yubico.com/viewtopic.php?f=26&t=1270
Page 1 of 1

Author:  Josasp [ Mon Dec 30, 2013 8:12 am ]
Post subject:  Backing up private key? (PGP)

Hi!

Im using my NEO with Slot 1 as OTP and Slot 2 as Static password.

I've been thinking about starting with PGP and though i might be able to put my NEO to use in that as well.

From what i understand the shipped OpenPGP applet does not support backing up the private key, i don't like the feeling of that. Loosing the NEO on my keychain is way too easy. I understand the importance of security, but i want backups.

Is there some OpenPGP applet that supports backup? or maybe in development?

Author:  xychix [ Sun Jan 05, 2014 11:25 am ]
Post subject:  Re: Backing up private key? (PGP)

Josasp wrote:
Hi!

Im using my NEO with Slot 1 as OTP and Slot 2 as Static password.

I've been thinking about starting with PGP and though i might be able to put my NEO to use in that as well.

From what i understand the shipped OpenPGP applet does not support backing up the private key, i don't like the feeling of that. Loosing the NEO on my keychain is way too easy. I understand the importance of security, but i want backups.

Is there some OpenPGP applet that supports backup? or maybe in development?



I'm affraid not, that would compromise the concept of an 'on token' private key.
It would be great though if the yubikey NEO applet would get a 'import privatekey' function.

I could then generate a keypair offline, store it offline an upload 1 instance to the key.

Author:  FastJack [ Mon Jan 06, 2014 6:09 pm ]
Post subject:  Re: Backing up private key? (PGP)

Josasp wrote:
It would be great though if the yubikey NEO applet would get a 'import privatekey' function.

I could then generate a keypair offline, store it offline an upload 1 instance to the key.


The current version of the openpgp applet can do that. But building and installing a new applet on the Neo is not for the faint of heart. Also be aware that installing the new applet will most certainly wipe the currently stored pgp key from the Neo! You have been warned!

Author:  Tom [ Wed Jan 08, 2014 10:57 am ]
Post subject:  Re: Backing up private key? (PGP)

Yes, installing the new applet will wipe everything.

Author:  Josasp [ Thu Jan 16, 2014 5:06 pm ]
Post subject:  Re: Backing up private key? (PGP)

I can install the new applet, thats not an issue really.
Will the new applet affect my current yubikey slots in any way?

Author:  Tom [ Fri Jan 17, 2014 9:06 am ]
Post subject:  Re: Backing up private key? (PGP)

Configuration SLOT 1 & 2 or other applets will not be affected

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/