Long Term Key Management With Hardware Tokens

Werner Koch wk at gnupg.org
Tue Jun 22 11:00:48 CEST 2021


On Mon, 21 Jun 2021 23:47, Brandon Anderson said:

> the PIV functions only support 2048 RSA and NIST curves. The only card

That's per PIV specs.

> What would it take to add support for retirement key slots into the
> GPG smartcard specification? If retirement slots were added to the
> smartcard spec, then after several years, other smartcard

Frankly, I am not convinced about the retirement slots on the card.
They are of course useful if you rotate you key.  But the question is
why you want to do this given that the keys are anyway securely stored
on a card.


Shalom-Salam,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <https://lists.gnupg.org/pipermail/gnupg-users/attachments/20210622/bde02e2b/attachment.sig>


More information about the Gnupg-users mailing list