Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
| * | annotate passphrase templates | drduh | 2024-03-29 | 2 | -0/+4 | |
|/ | ||||||
* | Merge pull request #430 from wstephenson/master | drduh | 2024-03-25 | 1 | -3/+3 | |
|\ | | | | | Fix broken 'SSH agent forwarding' internal links | |||||
| * | Fix broken 'SSH agent forwarding' internal links | Will Stephenson | 2024-03-25 | 1 | -3/+3 | |
|/ | ||||||
* | Merge remote-tracking branch 'origin' | drduh | 2024-03-24 | 0 | -0/+0 | |
|\ | ||||||
| * | Merge pull request #428 from drduh/wip-24mar24 | drduh | 2024-03-24 | 1 | -205/+222 | |
| |\ | | | | | | | Optional hardening section, additional validation steps | |||||
* | | | Replace reset PIN with date, keyid, serial fields in passphrase templates | drduh | 2024-03-24 | 2 | -446/+386 | |
| |/ |/| | ||||||
* | | Remove NEO (discontinued in 2018), sort troubleshooting | drduh | 2024-03-24 | 1 | -9/+7 | |
| | | ||||||
* | | Update LUKS link, make commands consistent, more passphrase guidance | drduh | 2024-03-24 | 1 | -49/+67 | |
| | | ||||||
* | | Optional hardening section, additional validation steps | drduh | 2024-03-24 | 1 | -159/+160 | |
|/ | ||||||
* | Merge pull request #427 from wstephenson/master | drduh | 2024-03-20 | 1 | -1/+1 | |
|\ | | | | | Fix typo in date command | |||||
| * | Fix typo in date command | Will Stephenson | 2024-03-19 | 1 | -1/+1 | |
|/ | ||||||
* | Merge pull request #426 from drduh/wip-17mar24 | drduh | 2024-03-18 | 3 | -1/+453 | |
|\ | | | | | Add plaintext passphrase template | |||||
| * | Add command-line passphrase template | drduh | 2024-03-17 | 3 | -1/+453 | |
|/ | ||||||
* | Merge pull request #425 from drduh/wip-16mar24 | drduh | 2024-03-18 | 6 | -1475/+1933 | |
|\ | | | | | Simplify instructions, reduce manual labor | |||||
| * | Replace mkdir commands | drduh | 2024-03-17 | 1 | -1/+17 | |
| | | ||||||
| * | Install yubikey-manager directly on Debian | drduh | 2024-03-17 | 1 | -39/+5 | |
| | | ||||||
| * | Simplify and automate fdisk commands | drduh | 2024-03-17 | 1 | -112/+92 | |
| | | ||||||
| * | Stick with 6/8 digit PINs | drduh | 2024-03-17 | 1 | -17/+12 | |
| | | ||||||
| * | Remove obsolete stuff, clean up intro | drduh | 2024-03-17 | 1 | -19/+11 | |
| | | ||||||
| * | Move keyserver instructions to later, more batch commands | drduh | 2024-03-17 | 2 | -82/+88 | |
| | | ||||||
| * | Automate PIN and card operations | drduh | 2024-03-16 | 1 | -120/+88 | |
| | | ||||||
| * | Simplify instructions, reduce manual labor | drduh | 2024-03-16 | 5 | -1200/+1735 | |
|/ | ||||||
* | Merge pull request #423 from Xronophobe/fix/quick-add-key-with-fpr | drduh | 2024-03-11 | 1 | -4/+5 | |
|\ | | | | | update gpg --quick-add-key commands | |||||
| * | update gpg --quick-add-key commands | Csanad Beres | 2024-03-07 | 1 | -4/+5 | |
| | | | | | | | | it seems to be only accepting fingerprints and rejecting key ID-s | |||||
* | | Merge pull request #424 from drduh/wip-10mar24 | drduh | 2024-03-10 | 1 | -8/+8 | |
|\ \ | |/ |/| | Address restriction on subkey | |||||
| * | formatting fix | drduh | 2024-03-10 | 1 | -2/+2 | |
| | | ||||||
| * | Workaround for Authenticate key issue | drduh | 2024-03-10 | 1 | -8/+8 | |
|/ | ||||||
* | Merge pull request #420 from drduh/fix-metadata | drduh | 2024-02-12 | 2 | -5/+5 | |
|\ | | | | | fix batch metadata | |||||
| * | fix batch metadata | drduh | 2024-02-12 | 2 | -5/+5 | |
|/ | ||||||
* | Merge pull request #419 from drduh/wip-12feb24 | drduh | 2024-02-12 | 1 | -122/+82 | |
|\ | | | | | 12feb24 | |||||
| * | few more standard terms | drduh | 2024-02-12 | 1 | -5/+5 | |
| | | ||||||
| * | typo | drduh | 2024-02-12 | 1 | -1/+1 | |
| | | ||||||
| * | few more style nits | drduh | 2024-02-12 | 1 | -15/+9 | |
| | | ||||||
| * | explicit keytocard instructions | drduh | 2024-02-12 | 1 | -34/+13 | |
| | | ||||||
| * | simplify batch instructions | drduh | 2024-02-12 | 1 | -30/+12 | |
| | | ||||||
| * | standard names for subkeys | drduh | 2024-02-12 | 1 | -51/+56 | |
| | | ||||||
* | | Merge pull request #418 from drduh/wip-12feb24 | drduh | 2024-02-12 | 1 | -11/+0 | |
|\| | | | | | remove yubikey as rng | |||||
| * | remove yubikey as rng | drduh | 2024-02-12 | 1 | -11/+0 | |
|/ | ||||||
* | Merge pull request #417 from drduh/wip-11feb24 | drduh | 2024-02-12 | 1 | -1202/+854 | |
|\ | | | | | 11feb24 | |||||
| * | remove multiple hosts | drduh | 2024-02-12 | 1 | -102/+39 | |
| | | ||||||
| * | more grammar | drduh | 2024-02-11 | 1 | -45/+19 | |
| | | ||||||
| * | few more cleanups | drduh | 2024-02-11 | 1 | -42/+112 | |
| | | ||||||
| * | simplify console output, use generic info | drduh | 2024-02-11 | 1 | -477/+203 | |
| | | ||||||
| * | more grammar and formatting | drduh | 2024-02-11 | 1 | -127/+118 | |
| | | ||||||
| * | grammar and style | drduh | 2024-02-11 | 1 | -195/+149 | |
| | | ||||||
| * | grammar and standardize storage terminology | drduh | 2024-02-11 | 1 | -141/+156 | |
| | | ||||||
| * | standardize Certify/Subkeys, easier command copy, organize links | drduh | 2024-02-11 | 1 | -424/+409 | |
|/ | ||||||
* | Merge pull request #416 from Paraphraser/20240210-disable-ccid-master | drduh | 2024-02-11 | 1 | -1/+21 | |
|\ | | | | | add step to set `disable-ccid` in `scdaemon.conf` | |||||
| * | fix rookie mistake | Phill Kelley | 2024-02-11 | 1 | -1/+1 | |
| | | | | | | | | | | | | | | | | | | | | Add a one-liner that works. Then think about the context and decide to recommend a rearrangement. And then muck up the consequential adjustment of the original one-liner. I think I got a badge for that in the scouts. Well spotted. Sorry. Signed-off-by: Phill Kelley <34226495+Paraphraser@users.noreply.github.com> | |||||
| * | add step to set `disable-ccid` in `scdaemon.conf` | Phill Kelley | 2024-02-10 | 1 | -1/+21 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Issue #404 reports "GPG acts like my YubiKey isn't plugged in". With GnuPG 2.3 and later, the system can get into a loop where it prompts for insertion of a YubiKey even though that YubiKey is already connected. The solution for this is to set `disable-ccid` in `~/.gnupg/scdaemon.conf`. Testing suggests setting `disable-ccid` does not interfere with earlier versions of GnuPG (eg 2.2.27 on Debian Bullseye or 2.2.40 on Debian Bookworm). This problem has also been mentioned in #277 and #256. Including a step in the Guide to set `disable-ccid` may help minimise recurrence. Also takes the opportunity to ensure `~/.gnupg` directory exists on a new system before downloading `gpg.conf`. References: * Ludovic Rousseau - [GnuPG and PC/SC conflicts](https://ludovicrousseau.blogspot.com/2019/06/gnupg-and-pcsc-conflicts.html) * GnuPG.org: - [Scdaemon Options](https://www.gnupg.org/documentation/manuals/gnupg/Scdaemon-Options.html#index-disable_002dccid) * YubiCo: - [Resolving GPG's CCID conflicts](https://support.yubico.com/hc/en-us/articles/4819584884124-Resolving-GPG-s-CCID-conflicts) - [Troubleshooting Issues with GPG](https://support.yubico.com/hc/en-us/articles/360013714479-Troubleshooting-Issues-with-GPG) * Closed issues: - [277 pcscd: Error Reader Exclusive](https://github.com/drduh/YubiKey-Guide/issues/277) - [256 Update scdaemon.conf for gnupg 2.3 with MacOS (and possibly others)](https://github.com/drduh/YubiKey-Guide/issues/256) Fixes #404 Signed-off-by: Phill Kelley <34226495+Paraphraser@users.noreply.github.com> |