G4win

1 view
Skip to first unread message

Trinh Livingston

unread,
Aug 4, 2024, 10:59:46 PM8/4/24
to scaltacrota
Afterdownloading please verify the integrity of your Gpg4win package. Then double-click on the file you have downloaded and follow the instructions on the screen (or look at the documentation) and read the current README file.Gpg4win Compendium 3.0.0(Released: 2016-11-30)You find the current PDF and HTML version of the Gpg4win Compendiumhere:

In the change historyyou will find information about the most relevant changes and whichversion of the products each of the releases contained.Also, you will find direct download link for the old releases.


... zum Verschlsseln und Signieren von E-Mails, Dateien und Ordnern unter Windows. Gpg4win (GNU Privacy Guard for Windows) ist Freie Software und mit nur wenigen Mausklicks installiert.

Starten Sie durch - in eine freie und sichere Zukunft!


Gpg4win ist Freie Software. Nutzen Sie die Gemeinschaft und gestalten Sie mit!

Unsere Empfehlung: Abonnieren Sie die Gpg4win-Bekanntmachungs-Mailingliste, um automatisch ber neue Versionen informiert zu werden.


Smartcard Hints and InformationGenerating and loading subkeys from an offline computer (specifically, for the YubiKey NEO, but recipe can be easily adapted for any smartcard)CardReader/PinpadInputCardReader/GemaltoPCList of smartcard readers and tokens supported by the GnuPG's in-stock CCID driver.OpenPGP CardHow to use the Fellowship SmartcardOpenPGPcardECCSmartcards?GnuPG supports the use of hardware security tokens that come as smartcards (or USB devices that support this mode). The tokens are minicomputers that can hold the secret key material and perform crypto operations. Because you need to connect the physical "token" to your machine, the secret key material is well protected against attacks that try to steal it.Smartcards have to be compatible with GnuPG. Cards exist to either run OpenPGP or x509/CMS operations. In order to try this, see the howto links above or the description below, you may need to acquire a smartcard and a reader or an integrated combination of both (like an usb dongle).On Gpg4winWith a modern (e.g. >=4.2.x) Gpg4win, we recommend the following steps with Kleopatra for a fresh setup:Create a new keypair, and optionally for better performance (and less compatibility with elder systems) choose "ECDSA/EdDSA" in the extended options.choose a good passphrase (ideally generated randomly)decide if the private key should live only on the smartcard or if you want to do copies (like paperkey or additional smartcards or a backup file)If you decide for a file backup or printing a paper, do it. And secure the backup under the same or a higher security level than you aim for.export the public key as fileGo to the smartcard function (use F5 if you need to re-plugin the card)change the admin pin (and write it done somewhere safe)change the user pinoptionally change the reset pinchange name/label of the cardTransfer the key to the card. Use the right click context menu and select details on the certificate list.go to additional details and look at both subkeys you need to transfer to the cardselect the first subkey and transfer to cardselect the second subkey and transfer to cardyou shall see the keys in the smartcard section nowDelete the keys (as they are on the smartcard and optionally backuped) from the certificate list, right click delete and confirm the safety questions.Now import the public key that you had exported again. (Do not certify it at this step).If the certificate is printed in bold, the access to the private keypart has been established (use F5 to reload if you need to re-plugin the card)Now set the trust from the right click menu to "it is my own certificate". Two more hints:You need to do the last three steps once for each new computer where you want to use your smartcard.In almost all cases a smartcard can be resetted by using gpg --card-edit, see help for the commands admin and factory-reset.Use an existing CardBefore you can use your existing card, your should import the public key associated with the private key on the card.Known problems with Yubikey 4Windows and Linux-with-pcscdAfter a suspend/resume cycle the Yubikey requires a reset of the device. This is done automatically since GnuPG 2.2.6, so that the device does not need to be removed and plugged back in. Unfortunately, this reconnect does not happen until the error is triggered, so first a failing operation is required.Linux without pcscdWhen the Yubikey has been used before suspending, after a suspend/resume cycle scdaemon gets into a state where it can no longer successfully communicate with the card. RESETting scdaemon is not sufficient, but a 'gpgconf --kill scdaemon' does resolve the issue.Known Bug(s) of OpenPGPcardEncrypted message with 3DES can't be decrypted with OpenPGP Card (V2.1, V3.3 without fix)Due to the bug, it results: Missing item in object See: SmartCard (last edited 2023-09-21 14:22:55 by bernhard)


Gpg4win enables users to securely transport emails and files with the help of encryption and digital signatures. Encryption protects the contents against an unwanted party reading it. Digital signatures make sure that it was not modified and comes from a specific sender.


Gpg4win supports both relevant cryptography standards, OpenPGP and S/MIME (X.509), and is the official GnuPG distribution for Windows. It is maintained by the developers of GnuPG. Gpg4win and the software included with Gpg4win are Free Software (Open Source; among other things free of charge for all commercial and non-commercial purposes).


Product NameDownloadVersionNotesGNU Privacy Guard for Windows (GPG4Win)gpg4win-2.1.0.zip2.1.0GPG4Win is released under a free software license. This is a zipped installation file that contains plug-ins for e-mail clients and key management software. For more information and other versions go to


PGP Desktop Email is a commercial implementation of the PGP standard (compatible with OpenPGP). This is a trial version. For more information or to purchase, go to -email-encryption. (Note: neither NBC nor CAFIU have any relationship of any kind with Symantec.)

3a8082e126
Reply all
Reply to author
Forward
0 new messages