Matt's Musings

August 17, 2014

GPG Key Transition

Filed under: General — Matt Brown @ 2:45 pm NZST

Firstly, thanks to all who responded to my previous rant. It turns out exactly what I wanted does exist in the form of a ID-000 format smartcard combined with a USB reader. Perfect. No idea why I couldn’t find that on my own prior to ranting, but very happy to have found it now.

Secondly, now that I’ve got my keys and management practices in order, it is time to begin transitioning to my new key.

Click this link to find the properly signed, full transition statement.

I’m not going to paste the full statement into this post, but my new key is:

pub   4096R/A48F065A 2014-07-27 [expires: 2016-07-26]
      Key fingerprint = DBB7 64A1 797D 2E21 C799  3CD7 A628 CB5F A48F 065A
uid                  Matthew Brown <matt @mattb.net.nz>
uid                  Matthew Brown <mattb @debian.org>
sub   4096R/1937883F 2014-07-27 [expires: 2016-07-26]

If you signed my old key, I’d very much appreciate a signature on my new key, details and instructions in the transition statement. I’m happy to reciprocate if you have a similarly signed transition statement to present.

4 Comments

  1. I looked at the web of the ID-000 format smartcard, but couldnt figure out how it works

    Are you supposed to hold on your house a key generator (id0) that can generate usb sticks for your everyday use… or… Im too interested

    Thanks

    Comment by aL — August 20, 2014 @ 1:31 am

  2. http://www.cryptoshop.com/open-pgp-smartcard-v2-id-000.html
    http://www.cryptoshop.com/gemalto-idbridge-k50.html

    are the two components I purchased. Snap out the ID-000 format card, insert it into the USB reader, put the case on, voila. you’re done.

    Comment by Matt Brown — August 20, 2014 @ 3:31 pm

  3. Are you aware of any shops selling the cards & reader (ideally the K50/USB Shell Token v3 rather than the K30/USB Shell Token v2) with non-exorbitant shipping to the US?

    Comment by Steve — August 22, 2014 @ 1:38 pm

  4. I’ve never looked into shipping to the US sorry. Cryptoshop linked in the previous comment is actually the only place I’ve seen this combo sold myself. They have both the K30 and the K50.

    Comment by Matt Brown — August 22, 2014 @ 1:40 pm

RSS feed for comments on this post.

Sorry, the comment form is closed at this time.

Powered by WordPress