bkuptocard additionally imports the key locally
Closed, ResolvedPublic

Assigned To
Authored By
ebo
Jun 26 2026, 1:37 PM

Description

If you use the command "bkuptocard " with gpg --edit-key the key from the "sk" backup file is not only copied to the connected smart card, it is copied to the private-key folder in the GNUPGHOME, too (protected-private-key instead of shadowed-private-key).

This makes it necessary to manually delete the corresponding key file after using the command, which is not user-friendly and could easily be forgotten.

In the gpg 2.5 branch (tested with gpd 5.0.2), bkuptocard moves the key to the card without a local copy left behind in the keyring.

Details

Version
gnupg2.2 branch only, tested with vsd 3.3.7

Event Timeline

ebo created this object with edit policy "Contributor (Project)".
pl13 mentioned this in Unknown Object (Maniphest Task).Jul 6 2026, 9:01 AM
pl13 changed the task status from Open to Testing.Jul 6 2026, 3:21 PM
pl13 mentioned this in Unknown Object (Maniphest Task).Jul 13 2026, 9:15 AM
werner mentioned this in Unknown Object (Maniphest Task).Thu, Aug 27, 11:56 AM

Looks good to me on vsd-3.4.0-beta1344, gpg 2.2.55 @ win10:

timegrid edited projects, added vsd34 (vsd-3.4.0); removed vsd34.
timegrid claimed this task.
timegrid moved this task from WiP to gnupg-2.2.55 on the gnupg22 board.
timegrid edited projects, added gnupg22 (gnupg-2.2.55); removed gnupg22.