How important are Admin PIN and Passphrase in this scenario?

2015-11-29 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, I'm thinking about the following scenario: There is a smartcard with subkeys for encryption, signing and authentication. The secret primary key is stored encrypted (eg. a truecrypt container) and only used on an airgapped, offline machine when si

Re: General brute force attack question

2015-06-17 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Am 17.06.2015 um 01:45 schrieb Robert J. Hansen: >> Is this a correct interpretation? > > Pretty close. > >> My understanding of en-/decryption is that there is no >> indication of progress toward finding a successful key match of a >> given encryp

Re: [Announce] GnuPG 2.1.5 released

2015-06-12 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Am 12.06.2015 um 02:34 schrieb NIIBE Yutaka: > And please follow the link "OpenPGP Card version 3.0", then you > can get the specification. > > http://www.g10code.com/docs/openpgp-card-3.0.pdf > > That's all I know of. Thanks for pointing me ther

Re: [Announce] GnuPG 2.1.5 released

2015-06-11 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Thanks for the new release, > * Support for the forthcoming version 3 OpenPGP smartcard. Is there any further information you can provide regarding version 3 of the smartcard? Searching the web didn't give me any useful results. Thanks DK -BE

Re: Incorrect general key info, for key on Yubikey NEO

2015-05-05 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 > This made me notice that my --card-status does the same thing, it > shows my signing subkey at "General key info" (although I thought > at some point it used to show the master...). That said, everything > works fine and my card is usable (v2.1.3).

Re: What is 'CA fingerprint 1' on Smartcard

2015-04-27 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Am 03.04.2015 um 13:14 schrieb Werner Koch: > Back in 2005 the idea was to setup our own OpenPGP "CA" and the > FSFE prepared the cards for this (this is also one of the the > reasons for the PIN letter). However, the folks responsible for > the

Re: What is 'CA fingerprint 1' on Smartcard

2015-04-02 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Am 02.04.2015 um 04:40 schrieb NIIBE Yutaka: > It seems that it's intended to be hold a fingerprint of OpenPGP, > but it is not clear what/how this fingerprint is used for. > > From a view point of scdaemon developer, I don't have any > experience

What is 'CA fingerprint 1' on Smartcard

2015-03-31 Thread Daniel Krebs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, Hope this question is OK on this list. What is the CA fingerprint on FSFE-Smartcard? A gpg2 --car-status gave the information: CA fingerprint 1 .: C485 A6CD 7EC6 6E9E EC33 65F2 70F2 75E4 C32F 6CA5 This is a smartcard issued by the FSFE. After

Re: Analogien um das Prinzip von PGP zu erklären

2014-07-04 Thread Daniel Krebs
of using the terms "key, lock, seal and imprint". They differentiate between signing & encryption but are rather intuitive if you are not familiar with the technical details of PKI. -- kind regards daniel krebs ___ Gnupg-users m

Re: Analogies to explain the basic principles of encryption as used by OpenPGP

2014-07-03 Thread Daniel Krebs
t must "do something" BEFORE anyone can send anything (secured by that means) to him. Everyone knows what happens if you snap the lever into the lock - you're only able to unlock it if you have the key (or a big tool, OK). But how would you explain signing from that point of v

This time in English: How to explain the principles of PGP, looking for metaphors

2014-07-03 Thread Daniel Krebs
imprint. https://freedom-to-tinker.com/blog/randomwalker/why-king-george-iii-can-encrypt/ -- kind regards daniel krebs ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users

Analogien um das Prinzip von PGP zu erklären

2014-07-03 Thread Daniel Krebs
ln: Jemand verschließt mit meinem öffentlichen Schlüssel, ich öffne mit meinem geheimen. Signieren: Ich signiere mit meinem privaten Schlüssel, jemand anders überprüft mit meinem öffentlichen. Anregungen, Meinungen? -- kind regards daniel krebs ___ Gnupg-use

Re: Mascot_p

2014-06-19 Thread Daniel Krebs
ht be more attracting to new users that a rather 'cold' robot. unless you can crate a really cute robot of course! something like wall-e from that disney (?) picture. -- kind regards daniel krebs ___ Gnupg-users mailing list Gnupg-users

Re: Docs central, with 'Email Self-Defence'

2014-06-12 Thread Daniel Krebs
>please add a link or a comment. Does the column "language" imply, that you are also looking for links to non-english sites? -- kind regards daniel krebs ___ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users