Password Decript GPG public key

vedaal at nym.hush.com vedaal at nym.hush.com
Mon Aug 24 21:28:33 CEST 2020



On 8/24/2020 at 8:36 AM, "Guille De La Torre via Gnupg-users" <gnupg-users at gnupg.org> wrote:
>
is it possible to create a key for symmetric encryption
>in such a way that the person who has my public key does not need 
>to enter a password? to decrypt.

=====
  No. and Yes.    8^)

It is not possible that the person does not have to enter 'anything' to decrypt.

But is it possible for you both to have a secret symmetric passphrase you share by sending your public key, if you create a public key,
and don't post it anywhere or encrypt or sign anything with it, and send that public key, encrypted, to the intended receiver's public key.

Now, use the key name and long fingerprint as the password for the symmetric encryption.

Example:

Here is a key created for this purpose:

-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: GnuPG v2
Comment: Acts of Kindness better the World, and protect the Soul
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=tAGm
-----END PGP PUBLIC KEY BLOCK-----


Importing the key gives the following information:
User-ID:
mxtzphu.klemauj (non-publicized key) <mxtzphu.klemauj at qwejidnalldiopxz.wdb>
Validity:
from 2020-08-24 15:10 until forever
Certificate type:
2,048-bit RSA
Certificate usage:
Signing EMails and Files, Encrypting EMails and Files, Certifying other Certificates
Key-ID:
DFD35F5D
Fingerprint:
9D7ECA9BEDF40F804EB26A3C25FF072DDFD35F5D

The user id and email address were done by typing semi-randomly at the keyboard.

Now use the userid and the long fingerprint as the passphrase for your symmetric encryption:

mxtzphu.klemauj at qwejidnalldiopxz.wdb9D7ECA9BEDF40F804EB26A3C25FF072DDFD35F5D

Only you and the person you send this key to, will be able to decrypt your symmetrically encrypted messages.


vedaal







More information about the Gnupg-users mailing list