Re: gpgkey2ssh

2010-10-22 Thread Alex Mauer
a way to put it into gpg-agent. If you use smartcards then there is no need for this because gpg-agent does that of its own. Why does it not do this on its own for non-smartcard authentication keys? Shouldn’t they already be in gpg-agent? —Alex Mauer “hawke

Re: gpg-agent ssh authentication sees non-existent key?

2010-09-15 Thread Alex Mauer
don’t think it’s a good idea especially when adding a key from removable media, but that’s the way it is. —Alex Mauer “hawke” ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: gpg-agent ssh authentication sees non-existent key?

2010-09-14 Thread Alex Mauer
On 09/14/2010 03:34 PM, Grant Olson wrote: Did gpg-agent stash a copy of the private key? How do I delete that copy? I believe it’s one of the files in ~/.gnupg/private-keys-v1.d/ — at least, that’s where it is in Linux. —Alex Mauer “hawke

Re: Converting from PGP to GPG

2010-09-14 Thread Alex Mauer
On 09/14/2010 04:43 PM, Fletes, Raul wrote: In my old PGP I used to enter: PGP -seat myfile.dat XYZ abc -u Myschoolto encrypt transcripts and such before sending. How would I replicate that in GPG ??? gpg -sea myfile.dat -r XYZ abc -u Myschool Hope this helps. —Alex Mauer “hawke

Re: Problem with smartcards and scdaemon

2010-07-16 Thread Alex Mauer
unplug again, kill scdaemon, and then plug it back in. Do you definitely have to replug it, or is killing scdaemon sufficient? I’ve seen the same thing on Linux when suspending my laptop (with a traditional card reader); upon resuming, the smartcard isn’t available until I kill scdaemon. —Alex

local signatures: should they be importable by default in some cases?

2010-06-21 Thread Alex Mauer
was already available, and for this behavior to be the default. Does this seem like a good idea? —Alex Mauer “hawke” signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman

Scute: sec_error_pkcs11_function_failed (was Re: Crypto Stick released!)

2010-06-18 Thread Alex Mauer
we need to check this. This should really work. I can report that I also experience this problem with Ubuntu lucid i386 and Scute 1.2. Slightly related: is there a reason that Scute-1.4 is not listed on the download page at http://www.scute.org/download.xhtml ? Thanks —Alex Mauer “hawke

Re: Web of Trust itself is the problem

2010-01-07 Thread Alex Mauer
actually come from the same party you corresponded with last week. Many people have correspondence with people they never have and never will meet in person, and knowing that it’s always the same person is still helpful. -Alex Mauer “hawke” signature.asc Description: OpenPGP digital signature

Re: Possible bug: addkey can create certifying subkey

2009-09-01 Thread Alex Mauer
not restrict this. I think it may still be a problem that attempting to turn off all the flags has the actual effect of turning them all on instead... -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list

Re: gnupg as ssh-agent

2009-07-17 Thread Alex Mauer
expose an authentication-capable subkey from an OpenPGP smartcard via OpenSSH, but can't expose an authentication-capable subkey from its keyring? Or can it, but I'm doing something completely wrong? -Alex Mauer hawke signature.asc Description: OpenPGP digital signature

Re: GnuPG OpenSSH

2007-08-22 Thread Alex Mauer
to show up in 'ssh-add -l' (I use gpg-agent with ssh-agent support) ... but they don't. It would be very helpful to know: why this doesn't happen, and how to get it to work. Thanks -Alex Mauer hawke signature.asc Description: OpenPGP digital signature

Re: GnuPG OpenSSH

2007-08-21 Thread Alex Mauer
. The authentication key may be used for SSH. How can one generate this authentication key, other than via the OpenPGP smart card? -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org

Re: Smartcard expiring keys

2007-05-10 Thread Alex Mauer
, whatever) -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: using private key on removable media

2007-05-01 Thread Alex Mauer
. This will solve your problem - although in a way you may not like ;-) Let me guess -- I won't be able to keep the primary secret key offline any more? -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing

Re: using private key on removable media

2007-05-01 Thread Alex Mauer
doesn't look at all the information available to it before deciding whether an operation is possible. I hope it will help, and I look forward to the keybox format solving my complaint. -Alex Mauer hawke signature.asc Description: OpenPGP digital signature

Re: external pinpad, gnupg, SPR532 PinPad SmartCard Reader

2007-02-12 Thread Alex Mauer
-cdsa/2006/Jan/msg00107.html -Alex Mauer hawke ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: OpenPGP card and secret keys

2007-02-08 Thread Alex Mauer
Werner Koch wrote: Okay, so it is not a communication problem with teh card. Please run gpg --debug 64 --clearsign test.txt To see why gpg tries to use the primary key. aha! it does not. It's trying to use a different subkey instead. Surely missing secret key parts would be cause to

Re: Keyrings for websites

2007-02-08 Thread Alex Mauer
Peter Pentchev wrote: using PGP keys (or rather, uid's) with only names, no e-mail addresses. You could either use such keys with the hostname (or the full path to the web application) placed directly in the name part of the user ID, or develop some kind of machine-readable encoding to

Re: smartcard and ssh

2007-02-07 Thread Alex Mauer
fixed in feisty, though you do still need libpcsclite1 (and pcscd). -Alex Mauer hawke ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

OpenPGP card and secret keys

2007-02-07 Thread Alex Mauer
a pinentry dialog, and I was able to enter the PIN on the pinpad) What am I doing wrong? -Alex Mauer hawke ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: SCM SPR-332 pinpad

2006-12-21 Thread Alex Mauer
. -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: SCM SPR-332 pinpad

2006-12-20 Thread Alex Mauer
Werner Koch wrote: Note that it will only work with the OpenPGP card and only with the regular PIN and not with the Admin-PIN. Yes, I am using it with a FSFe OpenPGP card. to scdaemon.conf and setting an appropriate log file. Here are the results: 2006-12-20 10:21:48 scdaemon[7324] DBG:

Re: SCM SPR-332 pinpad

2006-12-20 Thread Alex Mauer
Werner Koch wrote: Well this log also ends here. What you should see next is the usual sign command. So where is the problem? Alright, I see: You tried to sign with the card. This has not been implemented yet. I forgot about this because I tested only the authntication as this is what

SCM SPR-332 pinpad

2006-12-19 Thread Alex Mauer
I assume gpg isn't reading the PIN, or the reader isn't using it (not sure how that works) Is this something that should be working now? This is the gnupg 2.0.1 from Ubuntu (feisty) so if the pinpad is not supposed to be working at all, it's possible that a patch was applied to enable it. -Alex

Re: adding passphrases to gpg-agent

2006-12-05 Thread Alex Mauer
only on a USB disk, and not have them copied to any machine on which I happen to load them. -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo

Re: deleting signatures from uids

2006-11-02 Thread Alex Mauer
, are they not? -Alex Mauer hawke signature.asc Description: OpenPGP digital signature ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Re: ECC

2005-10-31 Thread Alex Mauer
Christoph Anton Mitterer wrote: Do you remember when, I think it was BBC, claimed they had a patent in the US which would cover hyperlinks? It was British Telecom. google:british telecom hyperlink patent -- Bad - You get pulled over for doing 90 in a school zone and you're drunk off your

Re: Delete key from keyserver

2005-10-27 Thread Alex Mauer
David Shaw wrote: You always have the option to not sign, of course. But you don't get to tell the keyholder what information he puts in his user ID string. You don't create that, and it must be signed completely or not signed at all. Of course it is not possible to tell the key holder what

Re: Delete key from keyserver

2005-10-26 Thread Alex Mauer
David Shaw wrote: Some people will not sign such a user ID though, It's not an issue of improving the trust, it's an issue of disambiguation. Right, so why is it any better to have a key with: 0x99242560 David Shaw [EMAIL PROTECTED] than to have 0x99242560 David Shaw 0x99242560 [EMAIL

Re: Delete key from keyserver

2005-10-25 Thread Alex Mauer
David Shaw wrote: On Mon, Oct 24, 2005 at 04:21:32PM -0500, Alex Mauer wrote: I don't agree with this. The user ID system in all OpenPGP products gives a regular UTF-8 string. Signatures simply bind that string to the primary key. The system says exactly Alex Mauer belongs with key

Re: Delete key from keyserver

2005-10-25 Thread Alex Mauer
, the point of this rather long-winded bit is that it should be possible to only sign the email if that's all that has been verified, or only sign the name if that's all that's been verified. -Alex Mauer hawke signature.asc Description: OpenPGP digital signature

Re: Delete key from keyserver

2005-10-24 Thread Alex Mauer
address for each UID. I think that this puts emphasis in a bad place, leading people to be signing the fact that e.g. Alex Mauer belongs with [EMAIL PROTECTED], rather than Alex Mauer belongs with key 0x51192ff2 and [EMAIL PROTECTED] belongs with key 0x51192ff2. The photo UID type fits much better

Re: imported smart-card keys

2005-08-10 Thread Alex Mauer
NOT be gpg: used in a production environment or with production keys! gpg: secret key parts are not available gpg: no default secret key: general error gpg: signing failed: general error What could be causing this? Thanks -Alex Mauer hawke -- Bad - You get pulled over for doing 90 in a school

imported smart-card keys

2005-07-05 Thread Alex Mauer
Werner Koch wrote: From what I can google, I should be able to (re)generate the stub keys by using 'gpg --card-status'. But, this seems not to work. I need to see what happens; will get back to you later. Had a chance to look at this yet? Also, I found some more .. stuff that strikes me

Re: pinpad cardreader; imported smart-card keys

2005-06-28 Thread Alex Mauer
Werner Koch wrote: As of now the may be means with software supporting it but not with GnuPG :-(. As I was afraid of; perhaps the howto could be updated to clarify that The longer answer is that I have worked on it and added code to the CCID driver to check this out. How about the SC

Re: IBM to Provide Security w/o Sacrificing Privacy Using Hash Functions

2005-05-26 Thread Alex Mauer
of false positives ... http://www.highprogrammer.com/alan/numbers/soundex.html explains how soundex works, and from that it should be obvious that soundex would be a *horrible* choice for this application. Which is not of course to say that it's an unlikely choice. :-D -Alex Mauer Hawke

Re: Help with Enigmail and other issues

2005-05-25 Thread Alex Mauer
=k3Rn= wrote: What does these options really have to do with Enigmail's work? Does this auto-key-retrieve have any effect on Enigmail? It allows Engimail to import the key used to sign a mail without prompting. -Alex Mauer Hawke signature.asc Description: OpenPGP digital signature

Re: 2 noob problems

2005-05-24 Thread Alex Mauer
. Incidentally, PGP prunes as well. It's the only way to keep keys to a rational size over a long period of time. Then I guess I hope this feature will come along at some point. -Alex Mauer Hawke signature.asc Description: OpenPGP digital signature