Enforcing password complexity for private keys

David Milet david.milet at gmail.com
Tue Apr 30 12:55:07 CEST 2019


We’re considering rolling out GnuPG at work for developers to sign git commits.
How can we prevent developers from choosing a trivial password?

Is there a way for GnuPG to enforce some password complexity on the private keys?

Is that something that a Yubikey could do? 

