OpenPGP smartcard: addcardkey fails

Lionel Elie Mamane lionel at mamane.lu
Thu Feb 16 09:59:40 CET 2006


On Thu, Feb 16, 2006 at 01:59:57PM +1030, Alphax wrote:
> Lionel Elie Mamane wrote:

>> I'm trying to generate an authentication subkey (tied to my main
>> OpenPGP key) in my OpenPGP (FSFE Fellowship) smartcard (for poldi /
>> SSH use), but can't get it to work. gpg --edit-card and
>> --card-status works like a charm.

>> Command> addcardkey
>> gpg: detected reader `SCM SCR 335 (60600ad9) 00 00'
>>    (3) Authentication key
>> Your selection? 3
>> gpg: 3 Admin PIN attempts remaining before card is permanently locked

>> Admin PIN

>> PIN
>> Key is protected.
>> gpg: secret key parts are not available
>> gpg: Key generation failed: general error

>> Any clue? Thanks in advance.

> Is the secret part of the primary key available in your local
> keyring?

<brown paper bag> No. I was so intent on looking at the smartcard side
of things that I missed this. I took the "secret key parts are not
available" to refer to the _new_ key and thought "duh, obviously it
isn't available: it is locked away on the smartcard".

Thanks.

-- 
Lionel



More information about the Gnupg-users mailing list