Friday, November 21, 2014

[oiqhiqrl] gpg passphrase hint

GnuPG needs an additional field in private keys in which to store a passphrase hint.

While usable in the standard way (possibly weakening encryption), the way I would like to use it is to store the parameters to an external PBKDF algorithm (e.g., scrypt) which can exceed the 65 million iteration limit that standard GnuPG imposes in its S2K key stretching algorithm.

No comments :