Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 26 May 2017 11:08:26 +0200
From:      Matthias Apitz <guru@unixarea.de>
To:        freebsd-usb@freebsd.org
Subject:   GnuPG card && re-attach of USB stick (was: GnuPG && card readers)
Message-ID:  <20170526090826.GA82944@c720-r314251>
In-Reply-To: <20170510073903.GA2836@c720-r314251>
References:  <20170509094729.GA3668@c720-r314251> <20170509213637.Horde.u9PInhb6UaNmyy2nhXlnMGr@webmail.leidinger.net> <20170510073903.GA2836@c720-r314251>

next in thread | previous in thread | raw e-mail | index | archive | help

--dDRMvlgZJXvWKvBx
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

El d=C3=ADa mi=C3=A9rcoles, mayo 10, 2017 a las 09:39:03a. m. +0200, Matthi=
as Apitz escribi=C3=B3:

> Alexander,
>=20
> Thanks for your explanations. I will opt for the Omnikey 6121 Mobile USB
> and see what I can do with it. It sells for around 20 euro, shipping
> to .de included.

Hello,

Since some time I'm using now the above mentioned GnuPG CCID card in the
Omnikey 6121 Mobile USB stick to held my private key for SSH and signing
of mail. This works very fine con two remaining issues:

1)
the USB stick is sometimes not detected on power-on boot and on plug-in
into an already running FreeBSD (12-CURRENT, amd64); when it is detected
on boot or later plug-in, it is always detected; when it is not, only a
reboot solves it; this seems to be some timing issue of the FreeBSD USB
driver and I'm testing the different 'hw.usb.timings' values, to find a
solution;

2)
due to the unreliable of 1) I can not launch the daemon /usr/local/sbin/pcs=
cd
at boot time, because the system would hang while the daemon is trying
to get to the USB card device; so I have to launch it after boot as
'root' when the USB card device is seen (if not, I have to reboot); the
problem now is, that normaly the /usr/local/sbin/pcscd is hot-plugable,
i.e. one can withdraw the USB stick, move away from the computer and
re-attach it later again; the re-attach is seen by the daemon as I can
see in its debug messages, but the background processes gpg-agent and scdae=
mon
can not use the card correctly again for, for example, access to the
private key for SSH. I have to restart the /usr/local/sbin/pcscd again
after attach and all is fine.

Any hints on this?

	matthias

--=20
Matthias Apitz, =E2=9C=89 guru@unixarea.de, =E2=8C=82 http://www.unixarea.d=
e/  =E2=98=8E +49-176-38902045

--dDRMvlgZJXvWKvBx
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=4BUX
-----END PGP SIGNATURE-----

--dDRMvlgZJXvWKvBx--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20170526090826.GA82944>