On-card key generation (was: Rotating encryption keys)

Peter Lebbing peter at digitalbrains.com
Thu Jan 21 14:42:03 CET 2016


On 21/01/16 13:34, Lachlan Gunn wrote:
> You can generate the key on-chip so that it is unable to ever leave the
> smartcard, which is obviously desirable from a security point of view.

I think I prefer off-card generation, with GnuPG's random number generator,
rather than some low-power, proprietary hardware random number generator on a
smartcard.

Peter.

-- 
I use the GNU Privacy Guard (GnuPG) in combination with Enigmail.
You can send me encrypted mail if you want some privacy.
My key is available at <http://digitalbrains.com/2012/openpgp-key-peter>



More information about the Gnupg-users mailing list