Re: Debian two-factor auth, GSoC?

On Thu, Apr 11, 2013 at 03:35:35PM -0400, Paul Tagliamonte wrote:
> I really hate the idea of "loosing" an unencrypted copy of my GPG
> private half. I misplace everything, I don't need someone finding a copy
> of my GPG key and abusing it :)

You write the private key to the token.  You can't read it back.

You then send stuff through the token to be encrypted / signed.

And you still need your passphrase.

At least that's how I understand it.

Luca Filipozzi

