this post was submitted on 01 Oct 2024
18 points (90.9% liked)

Linux

48287 readers
651 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

Hi,

I've seen some tutorial to create EdDSA key with Gnupg

gpg --full-gen-key

and it's supposed to allow me to create ECC key, but I see only

Please select what kind of key you want:
(1) RSA and RSA (default)
(2) DSA and Elgamal
(3) DSA (sign only)
(4) RSA (sign only)
(14) Existing key from card
Your selection?\

gpg --version show:

...
gpg (GnuPG) 2.2.27
Supported algorithms:
Pubkey: RSA, ELG, DSA, ECDH, ECDSA, EDDSA
...

Any idea what's wrong ?

top 8 comments
sorted by: hot top controversial new old
[–] Anafabula@discuss.tchncs.de 11 points 1 month ago (1 children)

I remember on some distros I had to add --expert, never checked why. Maybe was an old version.

gpg --expert --full-gen-key

[–] Gordon_F@lemmy.ml 1 points 1 month ago

Thank you @Anafabula@discuss.tchncs.de ! it works !

Please select what kind of key you want:
(1) RSA and RSA (default)
(2) DSA and Elgamal
(3) DSA (sign only)
(4) RSA (sign only)
(7) DSA (set your own capabilities)
(8) RSA (set your own capabilities)
(9) ECC and ECC
(10) ECC (sign only)
(11) ECC (set your own capabilities)
(13) Existing key
(14) Existing key from card\

I'm wondering whats is the option: (9) ECC and ECC ?? I found nothing in their documentation :/

[–] Rogue@feddit.uk 1 points 1 month ago

I had the same issue so wrote this down when I figured it out

Generate ultimate key

gpg2 --quick-generate-key hello@example.com ed25519 default 0 

Add sub key

gpg2 --quick-add-key <FINGERPRINT> ed25519

List keys in long format

gpg2 --list-keys --with-subkey-fingerprint --keyid-format long 
[–] conorab@lemmy.conorab.com 0 points 1 month ago

What distro and version of that distro are you using? Did you install gpg from the repository or elsewhere? What version of gpg are you running?

[–] delirious_owl@discuss.online -3 points 1 month ago (1 children)

Unless you're working with embedded chips with very small storage space, I'd recommend 4098-bit RSA

[–] possiblylinux127@lemmy.zip 1 points 1 month ago* (last edited 1 month ago) (1 children)

~~8096 bit is safer long term as it should remain uncrackable for a longer time.~~

I was thinking you were talking about 2048

[–] delirious_owl@discuss.online 1 points 1 month ago (1 children)
[–] possiblylinux127@lemmy.zip 1 points 1 month ago* (last edited 1 month ago)

Isn't it the default?

Edit: I was mixing up 2048 with 4096