Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Remove trailing whitespace in README.md | Justus Perlwitz | 2024-07-20 | 1 | -2/+2 |
| | |||||
* | Document how to test NixOS build with QEMU | Justus Perlwitz | 2024-07-20 | 1 | -0/+13 |
| | |||||
* | Corrected small typo in README.md | denis-roy | 2024-07-06 | 1 | -1/+1 |
| | | | maintenace -> maintenance | ||||
* | Should only have one identity loaded when renewing | drduh | 2024-06-30 | 1 | -1/+1 |
| | |||||
* | Renew expired subkeys, fix #442 | drduh | 2024-06-30 | 1 | -1/+2 |
| | |||||
* | Fix secret function | drduh | 2024-06-30 | 1 | -2/+2 |
| | |||||
* | Export variables throughout | drduh | 2024-06-30 | 1 | -22/+23 |
| | |||||
* | Move networking section to Optional hardening | straysheep-dev | 2024-05-05 | 1 | -67/+64 |
| | |||||
* | Merge branch 'drduh:master' into patch-1 | straysheep-dev | 2024-05-05 | 1 | -1/+1 |
|\ | |||||
| * | Export the `GNUPGHOME` variable | Manuel Thalmann | 2024-05-03 | 1 | -1/+1 |
| | | | | | | | | Merging this PR will fix #434 | ||||
* | | Add networking section to README.md | straysheep-dev | 2024-04-18 | 1 | -2/+67 |
|/ | |||||
* | Tidy style and formatting | drduh | 2024-03-29 | 1 | -15/+14 |
| | |||||
* | Fix broken 'SSH agent forwarding' internal links | Will Stephenson | 2024-03-25 | 1 | -3/+3 |
| | |||||
* | Remove NEO (discontinued in 2018), sort troubleshooting | drduh | 2024-03-24 | 1 | -9/+7 |
| | |||||
* | Update LUKS link, make commands consistent, more passphrase guidance | drduh | 2024-03-24 | 1 | -49/+67 |
| | |||||
* | Optional hardening section, additional validation steps | drduh | 2024-03-24 | 1 | -159/+160 |
| | |||||
* | Fix typo in date command | Will Stephenson | 2024-03-19 | 1 | -1/+1 |
| | |||||
* | Add command-line passphrase template | drduh | 2024-03-17 | 1 | -1/+9 |
| | |||||
* | Replace mkdir commands | drduh | 2024-03-17 | 1 | -1/+17 |
| | |||||
* | Install yubikey-manager directly on Debian | drduh | 2024-03-17 | 1 | -39/+5 |
| | |||||
* | Simplify and automate fdisk commands | drduh | 2024-03-17 | 1 | -112/+92 |
| | |||||
* | Stick with 6/8 digit PINs | drduh | 2024-03-17 | 1 | -17/+12 |
| | |||||
* | Remove obsolete stuff, clean up intro | drduh | 2024-03-17 | 1 | -19/+11 |
| | |||||
* | Move keyserver instructions to later, more batch commands | drduh | 2024-03-17 | 1 | -82/+74 |
| | |||||
* | Automate PIN and card operations | drduh | 2024-03-16 | 1 | -120/+88 |
| | |||||
* | Simplify instructions, reduce manual labor | drduh | 2024-03-16 | 1 | -1137/+548 |
| | |||||
* | Merge pull request #423 from Xronophobe/fix/quick-add-key-with-fpr | drduh | 2024-03-11 | 1 | -4/+5 |
|\ | | | | | update gpg --quick-add-key commands | ||||
| * | update gpg --quick-add-key commands | Csanad Beres | 2024-03-07 | 1 | -4/+5 |
| | | | | | | | | it seems to be only accepting fingerprints and rejecting key ID-s | ||||
* | | formatting fix | drduh | 2024-03-10 | 1 | -2/+2 |
| | | |||||
* | | Workaround for Authenticate key issue | drduh | 2024-03-10 | 1 | -8/+8 |
|/ | |||||
* | few more standard terms | drduh | 2024-02-12 | 1 | -5/+5 |
| | |||||
* | typo | drduh | 2024-02-12 | 1 | -1/+1 |
| | |||||
* | few more style nits | drduh | 2024-02-12 | 1 | -15/+9 |
| | |||||
* | explicit keytocard instructions | drduh | 2024-02-12 | 1 | -34/+13 |
| | |||||
* | simplify batch instructions | drduh | 2024-02-12 | 1 | -30/+12 |
| | |||||
* | standard names for subkeys | drduh | 2024-02-12 | 1 | -51/+56 |
| | |||||
* | remove yubikey as rng | drduh | 2024-02-12 | 1 | -11/+0 |
| | |||||
* | remove multiple hosts | drduh | 2024-02-12 | 1 | -102/+39 |
| | |||||
* | more grammar | drduh | 2024-02-11 | 1 | -45/+19 |
| | |||||
* | few more cleanups | drduh | 2024-02-11 | 1 | -42/+112 |
| | |||||
* | simplify console output, use generic info | drduh | 2024-02-11 | 1 | -477/+203 |
| | |||||
* | more grammar and formatting | drduh | 2024-02-11 | 1 | -127/+118 |
| | |||||
* | grammar and style | drduh | 2024-02-11 | 1 | -195/+149 |
| | |||||
* | grammar and standardize storage terminology | drduh | 2024-02-11 | 1 | -141/+156 |
| | |||||
* | standardize Certify/Subkeys, easier command copy, organize links | drduh | 2024-02-11 | 1 | -424/+409 |
| | |||||
* | Merge pull request #416 from Paraphraser/20240210-disable-ccid-master | drduh | 2024-02-11 | 1 | -1/+21 |
|\ | | | | | add step to set `disable-ccid` in `scdaemon.conf` | ||||
| * | fix rookie mistake | Phill Kelley | 2024-02-11 | 1 | -1/+1 |
| | | | | | | | | | | | | | | | | | | | | Add a one-liner that works. Then think about the context and decide to recommend a rearrangement. And then muck up the consequential adjustment of the original one-liner. I think I got a badge for that in the scouts. Well spotted. Sorry. Signed-off-by: Phill Kelley <34226495+Paraphraser@users.noreply.github.com> | ||||
| * | add step to set `disable-ccid` in `scdaemon.conf` | Phill Kelley | 2024-02-10 | 1 | -1/+21 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Issue #404 reports "GPG acts like my YubiKey isn't plugged in". With GnuPG 2.3 and later, the system can get into a loop where it prompts for insertion of a YubiKey even though that YubiKey is already connected. The solution for this is to set `disable-ccid` in `~/.gnupg/scdaemon.conf`. Testing suggests setting `disable-ccid` does not interfere with earlier versions of GnuPG (eg 2.2.27 on Debian Bullseye or 2.2.40 on Debian Bookworm). This problem has also been mentioned in #277 and #256. Including a step in the Guide to set `disable-ccid` may help minimise recurrence. Also takes the opportunity to ensure `~/.gnupg` directory exists on a new system before downloading `gpg.conf`. References: * Ludovic Rousseau - [GnuPG and PC/SC conflicts](https://ludovicrousseau.blogspot.com/2019/06/gnupg-and-pcsc-conflicts.html) * GnuPG.org: - [Scdaemon Options](https://www.gnupg.org/documentation/manuals/gnupg/Scdaemon-Options.html#index-disable_002dccid) * YubiCo: - [Resolving GPG's CCID conflicts](https://support.yubico.com/hc/en-us/articles/4819584884124-Resolving-GPG-s-CCID-conflicts) - [Troubleshooting Issues with GPG](https://support.yubico.com/hc/en-us/articles/360013714479-Troubleshooting-Issues-with-GPG) * Closed issues: - [277 pcscd: Error Reader Exclusive](https://github.com/drduh/YubiKey-Guide/issues/277) - [256 Update scdaemon.conf for gnupg 2.3 with MacOS (and possibly others)](https://github.com/drduh/YubiKey-Guide/issues/256) Fixes #404 Signed-off-by: Phill Kelley <34226495+Paraphraser@users.noreply.github.com> | ||||
* | | Merge pull request #408 from jpickwell/patch-1 | drduh | 2024-02-10 | 1 | -3/+3 |
|\ \ | | | | | | | Quote Debian Live ISO URL, and add $ to AWK RegExp. | ||||
| * | | Update README.md | Jordan Pickwell | 2024-01-04 | 1 | -3/+3 |
| |/ | | | | | | | | | Quote ISO URL, and add `$` RegExp end-of-string anchor to return only the ISO file and none of the other entries that contain `xfce.iso`. This avoids unnecessary cURL errors. |