Yubico Forum
https://forum.yubico.com/

[QUESTION] - How to reset an OpenGPG smartcard on NEO?
https://forum.yubico.com/viewtopic.php?f=26&t=1692
Page 1 of 1

Author:  ivom [ Thu Jan 01, 2015 4:17 pm ]
Post subject:  [QUESTION] - How to reset an OpenGPG smartcard on NEO?

Since I had locked myself out because of forgetting the ADMIN pin and trying too many times, I considered resetting the OpenGPG applet appropriately as described in:
https://developers.yubico.com/ykneo-ope ... pplet.html

After executing the statements I think I am left with an inaccessible opengpg smartcard config. Under Ubunut 14.04 with a plugged in yubikey (usb functionality works for OTPs) and the OpenGPG applet activeatd, I was able to retrieve the following:

Code:
$ opensc-tool -i  -l   
opensc 0.13.0 [gcc  4.8.2]
Enabled features: zlib readline openssl pcsc(libpcsclite.so.1)
# Detected readers (pcsc)
Nr.  Card  Features  Name
0    Yes             Yubico Yubikey NEO OTP+CCID 00 00
$ gpg --card-status
gpg: detected reader `Yubico Yubikey NEO OTP+CCID 00 00'
Please insert the card and hit return or enter 'c' to cancel: c
gpg: selecting openpgp failed: general error
gpg: OpenPGP card not available: general error

$ gpg-connect-agent --hex "scd apdu 00 f1 00 00" /bye
ERR 100663406 Card removed <SCD>

N.B.: In the Yubikey NEO Manager (1.1.0) the only applet that doesn't show it's version under 'Status' happens to be the OpenGPG applet. I just noticed this, maybe that is no hint at that level things are broken.

Author:  Tom2 [ Fri Jan 02, 2015 12:02 pm ]
Post subject:  Re: [QUESTION] - How to reset an OpenGPG smartcard on NEO?

firmware version of your neo?

Author:  ivom [ Fri Jan 02, 2015 5:14 pm ]
Post subject:  Re: [QUESTION] - How to reset an OpenGPG smartcard on NEO?

Firmware version of the yubikey: 3.3.0

Author:  Tom2 [ Mon Jan 05, 2015 11:40 am ]
Post subject:  Re: [QUESTION] - How to reset an OpenGPG smartcard on NEO?

If
gpg-connect-agent --hex "scd apdu 00 f1 00 00" /bye
fails,

i believe you may have one of the 3.3.0 with a bugged version of the applet where the reset command it is not working properly.

Please contact yubi.co/support and ask for a warranty replacement.

Best Regards,
Tom.

Author:  ivom [ Mon Jan 05, 2015 4:27 pm ]
Post subject:  Re: [QUESTION] - How to reset an OpenGPG smartcard on NEO?

It says
Code:
$ gpg-connect-agent --hex "scd apdu 00 f1 00 00" /bye
ERR 100663427 Aan voorwaarden voor gebruik wordt niet voldaan <SCD>

The error code translates from dutch english via:
Code:
$ /usr/bin/gpg-error 100663427
100663427 = (6, 131) = (GPG_ERR_SOURCE_SCD, GPG_ERR_USE_CONDITIONS) = (SCD, Conditions of use not satisfied)

I have filed a replacement request as you suggested. I'll close this post as soon as I get the request granted.

Thanks and for following this up!

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/